thedark Second Lieutenant
Joined: 30 Jul 2005
Posts: 1074
|
Posted: Thu Aug 04, 2005 12:18 am Post subject: Gnome-gv |
|
|
| Zen-parse discovered a buffer overflow in gv, a PostScript and PDFviewer for X11. The same code is present in gnome-gv. This problemis triggered by scanning the PostScript file and can be exploited byan attacker sending a malformed PostScript or PDF file. The attackeris able to cause arbitrary code to be run with the privileges of thevictim.This problem has been fixed in version 1.1.96-3.1 for the currentstable distribution (woody), in version 0.82-2.1 for the old stabledistribution (potato) and version 1.99.7-9 for the unstabledistribution (sid).We recommend that you upgrade your gnome-gv package.wget url will fetch the file for youdpkg -i file.deb will install the referenced file.If you are using the apt-get package manager, use the line forsources.list as given below:apt-get update will update the internal databaseapt-get upgrade will install corrected packagesYou may use an automated update by adding the resources from thefooter to the proper configuration.Debian GNU/Linux 2.2 alias potato |
|