Family: Fedora Local Security Checks --> Category: infos
Fedora Core 2 2005-267: gtk2 Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the gtk2 package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory FEDORA-2005-267 (gtk2).
GTK+ is a multi-platform toolkit for creating graphical user
interfaces. Offering a complete set of widgets, GTK+ is suitable for
projects ranging from small one-off tools to complete application
David Costanzo found a bug in the way GTK+ processes BMP images.
It is possible that a specially crafted BMP image could cause a denial
of service attack in applications linked against GTK+.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CVE-2005-0891 to this issue.
Solution : http://www.fedoranews.org/blog/index.php?p=554
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.