Personal tools
     DOCUMENTATION

Advisories:rPSA-2008-0054

From rPath Wiki

Jump to: navigation, search

rPath Security Advisory 2008-0054-1

Published: 2008-02-12

Products

  • rPath Linux 1

Rating

Minor

Exposure Level Classification

Indirect User Deterministic Unauthorized Access

Updated Versions

  • tk=conary.rpath.com@rpl:1/8.4.10-5.3-1

rPath Issue Tracking System

References

Description

Previous versions of the tk package are vulnerable to an Arbitrary Code
Execution attack in which an attacker may use a maliciously crafted GIF
file to trigger a buffer overflow in an application using libtk.

Copyright 2008 rPath, Inc. This file is distributed under the terms of the MIT License. A copy is available at http://www.rpath.com/permanent/mit-license.html