xfocus logo xfocus title
首页 焦点原创 安全文摘 安全工具 安全漏洞 焦点项目 焦点论坛 关于我们
English Version

xloadimage推出补丁程序


发布时间:2001-08-10
更新时间:2001-08-10
严重程度:
威胁程度:普通用户访问权限
错误类型:输入验证错误
利用方式:客户机模式

受影响系统
Debian GNU/Linux 2.2
详细描述
Debian GNU/Linux 2.2 的xloadimage在处理FACES格式图象文件时存在缓冲溢出,攻击者可以通过精心构早的图象文件格式来引导用户用xloadimage查看此文件时执行任意代码。

测试代码
请搜索以前帖子。

解决方案
下载升级程序:

Red Hat Linux 6.2:


SRPMS:
ftp://updates.redhat.com/6.2/en/os/SRPMS/openldap-1.2.12-3.src.rpm


alpha:
ftp://updates.redhat.com/6.2/en/os/alpha/openldap-1.2.12-3.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/openldap-clients-1.2.12-3.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/openldap-devel-1.2.12-3.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/openldap-servers-1.2.12-3.alpha.rpm


i386:
ftp://updates.redhat.com/6.2/en/os/i386/openldap-1.2.12-3.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/openldap-clients-1.2.12-3.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/openldap-devel-1.2.12-3.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/openldap-servers-1.2.12-3.i386.rpm


sparc:
ftp://updates.redhat.com/6.2/en/os/sparc/openldap-1.2.12-3.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/openldap-clients-1.2.12-3.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/openldap-devel-1.2.12-3.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/openldap-servers-1.2.12-3.sparc.rpm


Red Hat Linux 7.0:


SRPMS:
ftp://updates.redhat.com/7.0/en/os/SRPMS/openldap12-1.2.12-3.src.rpm
ftp://updates.redhat.com/7.0/en/os/SRPMS/openldap-2.0.11-8.src.rpm


alpha:
ftp://updates.redhat.com/7.0/en/os/alpha/openldap12-1.2.12-3.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/openldap-2.0.11-8.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/openldap-clients-2.0.11-8.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/openldap-devel-2.0.11-8.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/openldap-servers-2.0.11-8.alpha.rpm


i386:
ftp://updates.redhat.com/7.0/en/os/i386/openldap12-1.2.12-3.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/openldap-2.0.11-8.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/openldap-clients-2.0.11-8.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/openldap-devel-2.0.11-8.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/openldap-servers-2.0.11-8.i386.rpm


Red Hat Linux 7.1:


SRPMS:
ftp://updates.redhat.com/7.1/en/os/SRPMS/openldap12-1.2.12-3.src.rpm
ftp://updates.redhat.com/7.1/en/os/SRPMS/openldap-2.0.11-8.src.rpm


alpha:
ftp://updates.redhat.com/7.1/en/os/alpha/openldap12-1.2.12-3.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/openldap-2.0.11-8.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/openldap-clients-2.0.11-8.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/openldap-devel-2.0.11-8.alpha.rpm
ftp://updates.redhat.com/7.1/en/os/alpha/openldap-servers-2.0.11-8.alpha.rpm


i386:
ftp://updates.redhat.com/7.1/en/os/i386/openldap12-1.2.12-3.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/openldap-2.0.11-8.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/openldap-clients-2.0.11-8.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/openldap-devel-2.0.11-8.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/openldap-servers-2.0.11-8.i386.rpm


ia64:
ftp://updates.redhat.com/7.1/en/os/ia64/openldap12-1.2.12-3.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/openldap-2.0.11-8.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/openldap-clients-2.0.11-8.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/openldap-devel-2.0.11-8.ia64.rpm
ftp://updates.redhat.com/7.1/en/os/ia64/openldap-servers-2.0.11-8.ia64.rpm

相关信息