Contact | Site en Français               

 


 

Vulnerabilities & Threats

 
  VUPEN Security Advisories
  Linux Security Advisories

  Malware Advisories

  Security Research
  Threat Watch Blog
  Zero-Day Monitor
  Search Engine
  Mailing List & RSS
 
   

>> Fedora Security Update Fixes Qtpfsgui "readRadianceHeader()" Buffer Overflow

Title : Fedora Security Update Fixes Qtpfsgui "readRadianceHeader()" Buffer Overflow
VUPEN ID : VUPEN/ADV-2007-2887
CVE ID : CVE-2007-2956
Rated as : Moderate Risk 
Remotely Exploitable : Yes
Locally Exploitable : Yes
Release Date : 2007-08-16


Technical Description    Receive VUPEN Security alerts in a Text format  Receive VUPEN Security alerts in a PDF format  Receive VUPEN Security alerts in an XML format 

A vulnerability has been identified in Fedora, which could be exploited by remote attackers to cause a denial of service or compromise an affected system. This issue is caused by an error in Qtpfsgui. For additional information, see : VUPEN/ADV-2007-2855

Affected Products

Fedora 7

Solution

Upgrade the affected packages :

b648cecde99263d357c58d7d974ad730f4870688 qtpfsgui-debuginfo-1.8.12-1.fc7.ppc64.rpm
96cc3c8b4b6392218dfafb545bab677be483d622 qtpfsgui-1.8.12-1.fc7.ppc64.rpm
728258bf279106ef82e33f0e97a00e9dc93f8b1a qtpfsgui-debuginfo-1.8.12-1.fc7.i386.rpm
c91c6257a49519672b89eb95d468dcc56e590d47 qtpfsgui-1.8.12-1.fc7.i386.rpm
84088c53c4b12c96499487a1f3c3a548d5dc3e6a qtpfsgui-1.8.12-1.fc7.x86_64.rpm
1be4197b99c48ba703659d7f391e9e981fcd32e4 qtpfsgui-debuginfo-1.8.12-1.fc7.x86_64.rpm
1efcd9056e9467ea7c0ad673bf336fa8bab1a772 qtpfsgui-1.8.12-1.fc7.ppc.rpm
9b12262a560a101edf3385798b4d8d20a3ae7558 qtpfsgui-debuginfo-1.8.12-1.fc7.ppc.rpm
0382fed31a330ab579792e52f15967b8efad2ec6 qtpfsgui-1.8.12-1.fc7.src.rpm

References

http://www.vupen.com/english/advisories/2007/2887
https://www.redhat.com/archives/fedora-package-announce/2007-August/msg00179.html

ChangeLog

2007-08-16 : Initial release

Vulnerability Management

Subscribe to VUPEN VNS and receive real-time alerts when new advisories or patches relevant to your systems and network configurations are available.

Feedback

If you have additional information or corrections for this security advisory please submit them via our contact form.

 

Vulnerability Alerting

Free 14-Day Trial

 
  Latest News

 

  >> 2009-07-06

     

  Microsoft Windows 0-Day
  Flaw Exploited in the Wild


  >> 2009-06-10

     

  VUPEN Security Research
  Discovered Critical Flaws
  in Adobe Acrobat and MS

  Office Word


  >> 2009-06-02

     

  VUPEN Security Research
  Discovered Critical Flaws
  in ACDSee Products


  >> 2009-05-22

     

  VUPEN Discovered Two
  Critical Vulnerabilities in
  Novell GroupWise 8 / 7

 

 

More Informations    
    








Copyright 2003-2009 © VUPEN.COM - Privacy Policy