Family: Mandrake Local Security Checks --> Category: infos
MDKSA-2005:080: xpm Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the xpm package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory MDKSA-2005:080 (xpm).
The XPM library which is part of the XFree86/XOrg project is used by several
GUI applications to process XPM image files.
An integer overflow flaw was found in libXPM, which is used by some
applications for loading of XPM images. A possible hacker could create a malicious
XPM file that would execute arbitrary code via a negative bitmap_unit value if
opened by a victim using an application linked to the vulnerable library.
Updated packages are patched to correct all these issues.
Solution : http://wwwnew.mandriva.com/security/advisories?name=MDKSA-2005:080
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.