French Security Incident Response Team

Termes et NomenclatureDéfinition des niveaux de risquesConfidentialité et Charte de confianceService FrSIRT VNS

FrSIRT   

      

   français Français   anglais English

 
Veille en vulnérabilités
FrSIRT VNS Publisher
Demande d'informations
Période d'essai gratuite
 

Bulletins et avis de vulnérabilités
Bulletins de sécurité et avis de vulnérabilités Linux
Virus & AlertesMenaces en temps réel / Blog Sécurité Informatique
Attaques Zero-day (0-jour)
Rechercher une vulnérabilité
 

Déclarer un incident de sécurité
Mailing liste Newsletter Sécurité informatique
 

A propos de FrSIRT / ADConsulting
Nos Clients & RéférencesFrSIRT Dans la presse
Espace Annonceurs
Offre d'emploi et stage Sécurité Informatique
Nous contacter

Fedora Security Update Fixes Exiv2 "setDataArea()" Integer Overflow


Date de Publication : 2007-12-21 © FrSIRT.COM
Titre : Fedora Security Update Fixes Exiv2 "setDataArea()" Integer Overflow
Identifiant : FrSIRT/AVIS-2007-4289
CVE ID : CVE-2007-6353
Risque : Modéré (2/4) -
Exploitable à distance : Oui
Exploitable en local : Oui
 

En savoir plus

 
  Description
  Produits affectés
  Solution
  Références
Description Technique    TXT (Plain Text)  PDF (Portable Document Format)  XML (Extensible Markup Language)  SMS (Short Message Service) 

Une vulnérabilité a été identifiée dans Fedora, elle pourrait être exploitée par des attaquants afin de causer un déni de service ou compromettre un système vulnérable [...]

Solution

Installer les mises à jour :

e7541bf8865d6fcc97e437326c9bdb7e3fa807ca exiv2-debuginfo-0.15-5.fc7.ppc64.rpm
f03e4a7e7ed2126ed69bb232662f6e026e7e3ef4 exiv2-devel-0.15-5.fc7.ppc64.rpm
a3b2fd7401068f4af95f967c88732e2cf22a8ce6 exiv2-0.15-5.fc7.ppc64.rpm
9ca9051be9c43f633b79070fd32e2fd9d8cf7828 exiv2-devel-0.15-5.fc7.i386.rpm
4b16abe5b275fc4dadb8d9e8b37c3f91de3ca012 exiv2-0.15-5.fc7.i386.rpm
27197ef023e19a773955b59a42719513211d3007 exiv2-debuginfo-0.15-5.fc7.i386.rpm
8716c8bb89f7bade3792afc73e2513fca91e6e79 exiv2-0.15-5.fc7.x86_64.rpm
e9abe03d4f5ce36bfcb589a8cdbc2ec2bf1775a4 exiv2-devel-0.15-5.fc7.x86_64.rpm
51a683e77bb97a656a5e9cb5657c70fb71e074ff exiv2-debuginfo-0.15-5.fc7.x86_64.rpm
7b22f635deb4d3acc0517ac57bfce4678f062520 exiv2-debuginfo-0.15-5.fc7.ppc.rpm
d8c9c3d900137104aa7d1d951de108231c42fd4c exiv2-devel-0.15-5.fc7.ppc.rpm
23ea23328a08589894aed6317645a3802c028980 exiv2-0.15-5.fc7.ppc.rpm
45e6ca55b0245ed32f64a2ed300a63aa03d0459e exiv2-0.15-5.fc7.src.rpm

e7541bf8865d6fcc97e437326c9bdb7e3fa807ca exiv2-debuginfo-0.15-5.fc7.ppc64.rpm
f03e4a7e7ed2126ed69bb232662f6e026e7e3ef4 exiv2-devel-0.15-5.fc7.ppc64.rpm
a3b2fd7401068f4af95f967c88732e2cf22a8ce6 exiv2-0.15-5.fc7.ppc64.rpm
9ca9051be9c43f633b79070fd32e2fd9d8cf7828 exiv2-devel-0.15-5.fc7.i386.rpm
4b16abe5b275fc4dadb8d9e8b37c3f91de3ca012 exiv2-0.15-5.fc7.i386.rpm
27197ef023e19a773955b59a42719513211d3007 exiv2-debuginfo-0.15-5.fc7.i386.rpm
8716c8bb89f7bade3792afc73e2513fca91e6e79 exiv2-0.15-5.fc7.x86_64.rpm
e9abe03d4f5ce36bfcb589a8cdbc2ec2bf1775a4 exiv2-devel-0.15-5.fc7.x86_64.rpm
51a683e77bb97a656a5e9cb5657c70fb71e074ff exiv2-debuginfo-0.15-5.fc7.x86_64.rpm
7b22f635deb4d3acc0517ac57bfce4678f062520 exiv2-debuginfo-0.15-5.fc7.ppc.rpm
d8c9c3d900137104aa7d1d951de108231c42fd4c exiv2-devel-0.15-5.fc7.ppc.rpm
23ea23328a08589894aed6317645a3802c028980 exiv2-0.15-5.fc7.ppc.rpm
45e6ca55b0245ed32f64a2ed300a63aa03d0459e exiv2-0.15-5.fc7.src.rpm

4f4e4f586452f249f6aaf6d14cfa12e1c97b7543 exiv2-debuginfo-0.15-5.fc8.ppc64.rpm
4c03b201052f64a8cef0ba6da2dec6e6ab0782c8 exiv2-libs-0.15-5.fc8.ppc64.rpm
8a8a74af199893b7970b7faf20a7c8c966bc23f5 exiv2-devel-0.15-5.fc8.ppc64.rpm
ad66e8c66acc1b3966317c2bb4ca42ce68f13ce9 exiv2-0.15-5.fc8.ppc64.rpm
cc1259ddfaf2ebc9d4edab32787787685fbcaf7e exiv2-libs-0.15-5.fc8.i386.rpm
ee4496454c13c7bc7837d7c6fb65e56fb7ccb79f exiv2-debuginfo-0.15-5.fc8.i386.rpm
eb3d0eb72b783a4d728839fd3d61768fba61d4bf exiv2-devel-0.15-5.fc8.i386.rpm
24e636d1ebeb6ddb03ba5568b60b78b0ed9bde45 exiv2-0.15-5.fc8.i386.rpm
101afb823c0f5a55efef495eb844469b8000f5da exiv2-0.15-5.fc8.x86_64.rpm
6dd905990478f589113ad0446448053987a67e21 exiv2-libs-0.15-5.fc8.x86_64.rpm
d2e5fa4649e90cd78477f8de8291a99468004725 exiv2-debuginfo-0.15-5.fc8.x86_64.rpm
096c7ee1f644f5ea6989737101675e4d438ce982 exiv2-devel-0.15-5.fc8.x86_64.rpm
4671ffe4ceb1ed031b0ebc3cc3c243349f047d13 exiv2-debuginfo-0.15-5.fc8.ppc.rpm
46c3843491c4263b39b35d582cdb72f7864483e1 exiv2-libs-0.15-5.fc8.ppc.rpm
af35366546e03479b99845e955cd4bd742dca9ad exiv2-devel-0.15-5.fc8.ppc.rpm
74d1f5d9b19dc71d057d909079d79f3190440d0c exiv2-0.15-5.fc8.ppc.rpm
4d8300bf9cdf830941e60880178fb8c905fd5e93 exiv2-0.15-5.fc8.src.rpm

Historique

2007-12-21 : Version Initiale

Recevez les bulletins FrSIRT

Le service FrSIRT VNS permet aux professionnels de la sécurité (RSSI, DSI, administrateurs et consultants) de recevoir en temps-réel, par email, SMS et flux RSS/XML, des bulletins de vulnérabilités complets, détaillés et personnalisés.


 
 

Recherche    

      

Newsletter    

    
 

Oracle Products Multiple Code Execution Vulnerabilities

Oracle Products Command Execution and SQL Injection Vulnerabilities

Oracle Products Multiple Code Execution and SQL Injection Vulnerabilities

Oracle Database "PITRIG_DROPMETADATA" Buffer Overflow Vulnerability

Oracle Products Multiple Code Execution and SQL Injection Vulnerabilities

Oracle JInitiator ActiveX Control Multiple Remote Buffer Overflow Vulnerabilities

Oracle Products Multiple Remote Command Execution and SQL Injection Vulnerabilities

Apple Mac OS X Code Execution Vulnerabilities

Apple iPhone and iPod touch Multiple Code Execution Vulnerabilities

Apple Xcode Code Execution and Information Disclosure Vulnerabilities

Apple TV Data Processing Remote Code Execution Vulnerabilities

Apple Mac OS X Command Execution Vulnerabilities

Apple Safari for Mac OS X Remote Code Execution Vulnerability

Apple Mac OS X ARDAgent Local Privilege Escalation Vulnerability

IBM AIX "swcons" Insecure Permission Privilege Escalation Vulnerability

IBM WebSphere Application Server Cross Site Scripting Vulnerability

IBM DB2 CLR Stored Procedures Unspecified Vulnerability

IBM Lotus Quickr Multiple Cross Site Scripting Vulnerabilities

IBM WebSphere Portal Remote Authentication Bypass Vulnerability

IBM Rational ClearQuest Login Page Cross Site Scripting Vulnerability

IBM WebSphere Application Server Security Exposure Vulnerabilities

  FrSIRT.COM © Tous droits réservés 2003-2008 - Notice Légale  sécurité informatique