Family: Ubuntu Local Security Checks --> Category: infos
USN266-1 : dia vulnerabilities Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
These remote packages are missing security patches :
Three buffer overflows were discovered in the Xfig file format
importer. By tricking a user into opening a specially crafted .fig
file with dia, a possible hacker could exploit this to execute arbitrary
code with the user's rights.
Upgrade to :
- dia-0.94.0-11ubuntu1.1 (Ubuntu 5.10)
- dia-common-0.94.0-11ubuntu1.1 (Ubuntu 5.10)
- dia-gnome-0.94.0-11ubuntu1.1 (Ubuntu 5.10)
- dia-libs-0.94.0-11ubuntu1.1 (Ubuntu 5.10)
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.