Title : Debian Security Update Fixes Qt Command Execution Vulnerabilities VUPEN ID : VUPEN/ADV-2007-4140 CVE ID : CVE-2007-3388 - CVE-2007-4137
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-12-10
Technical Description
Multiple vulnerabilities have been identified in Debian, which could be exploited by attackers to cause a denial of service or execute arbitrary code. These issues are caused by errors in qt-x11-free. For additional information, see : VUPEN/ADV-2007-2733 - VUPEN/ADV-2007-3144
Debian GNU/Linux sarge - Upgrade to qt-x11-free version 3:3.3.4-3sarge3
Debian GNU/Linux etch - Upgrade to qt-x11-free version 3:3.3.7-4etch1
Debian GNU/Linux sid - Upgrade to qt-x11-free version 3:3.3.7-8 References