Title : Debian Security Update Fixes Xine-lib HTTP Response Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2006-2704 CVE ID : CVE-2006-2802
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-07-07
Technical Description
Debian has released updated packages to address a vulnerability identified in Xine-lib. This flaw could be exploited by attackers to crash a vulnerable application or execute arbitrary commands. For additional information, see : VUPEN/ADV-2006-2243
Debian GNU/Linux old-stable (woody) - Upgrade to version 0.9.8-2woody5
Debian GNU/Linux stable (sarge) - Upgrade to version 1.0.1-1sarge3
Debian GNU/Linux unstable (sid) - Upgrade to version 1.1.1-2 References