|
|
|
| Top White Papers
Current Newswire:
SOT Linux Advisory: gdk-pixbufMar 12, 2004, 17:56 (0 Talkback[s])SOT Linux Security Advisory Subject: Updated gdk-pixbuf package for SOT Linux 2003 1. Problem description The gdk-pixbuf library is a toolkit for image loading and pixel buffer manipulation that you can use in conjunction with libart. Gdk-pixbuf also provides convenience functions for progressive image loading, animation, and rendering the libart image buffer to a GdkDrawable instance. A vulnerability in gdk-pixbuf versions before 0.20 exists that could allow a malicious BMP file to crash the Evolution mail client. The updated packages have been patched to use gdk-pixbuf 0.22.0's BMPhandling code. 2. Updated packages SOT Linux 2003 Desktop: i386: SRPMS: SOT Linux 2003 Server: i386: SRPMS: 3. Upgrading package Before applying this update, make sure all previously released errata relevant to your system have been applied. Use up2date to automatically upgrade the fixed packages. If you want to upgrade manually, download the updated package from the SOT Linux FTP site (use the links above) or from one of our mirrors. The list of mirrors can be obtained at www.sot.com/en/linux Update the package with the following command: rpm -Uvh <filename> 4. Verification All packages are PGP signed by SOT for security. You can verify each package with the following command: rpm --checksig <filename> If you wish to verify the integrity of the downloaded package, run "md5sum <filename>" and compare the output with data given below. Package Name MD5 sum /Desktop/i386/gdk-pixbuf-gnome-0.18.0-3.i386.rpm
54bf7ba90004c8decd2b51a1ffeb12ff 5. References http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0111 Copyright(c) 2001-2003 SOT 0 Talkback[s]
(click to add your comment)
|