ソフト名:Apple Cups 1.1~1.4.3, Foolabs Xpdf 3.0~3.02, Poppler 0.1~0.8.7
回避策:アップデートにて対応
脆弱性:リモートコード実行, DoS攻撃, pdftopsのクラッシュ, アプリケーションのクラッシュ
ソース:http://www.cups.org/
http://poppler.freedesktop.org/
https://rhn.redhat.com/errata/RHSA-2010-0754.html
ftp://ftp.foolabs.com/pub/xpdf/xpdf-3.02pl4.patch
http://www.securityfocus.com/bid/43841
http://www.securityfocus.com/bid/43845
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3702
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3704
http://secunia.com/advisories/41596
http://secunia.com/advisories/41706
http://secunia.com/advisories/41709
CVE:CVE-2010-3702, CVE-2010-3704
危険性:High Risk
2010-10-12
2010-09-28
Poppler
ソフト名:Poppler 0.1~0.8.7
回避策:あり
脆弱性:DoS攻撃, アンイニシャライズメモリ使用, メモリリーク, インデックスアレイ使用, アプリケーションのクラッシュ
ソース:http://cgit.freedesktop.org/poppler/poppler/commit/?id=473de6f88a055bb03470b4af5fa584be8cb5fda4
http://poppler.freedesktop.org/
http://secunia.com/advisories/41596
危険性:Low Risk
回避策:あり
脆弱性:DoS攻撃, アンイニシャライズメモリ使用, メモリリーク, インデックスアレイ使用, アプリケーションのクラッシュ
ソース:http://cgit.freedesktop.org/poppler/poppler/commit/?id=473de6f88a055bb03470b4af5fa584be8cb5fda4
http://poppler.freedesktop.org/
http://secunia.com/advisories/41596
危険性:Low Risk
登録:
投稿 (Atom)