Ranjivosti su povezane uz greške u dodacima PCX, BMP i PSP te filtrima slika Lightning, Sphere Designer i Gfig, a očituju se kao cjelobrojno prepisivanje i preljev međuspremnika.
Posljedica:
Ranjivosti se mogu iskoristiti udaljeno za napad uskraćivanjem usluga (DoS napad) i pokretanje proizvoljnog programskog koda.
Rješenje:
Svim korisnicima se preporuča korištenje odgovarajuće nadogradnje.
CentOS Errata and Security Advisory 2011:0838 Moderate
Upstream details at : https://rhn.redhat.com/errata/RHSA-2011-0838.html
The following updated files have been uploaded and are currently
syncing to the mirrors: ( md5sum Filename )
i386:
792c1e1451c5ffd44a1433468f5de4d1 gimp-2.2.13-2.0.7.el5_6.2.i386.rpm
b4714adce71949e2d8aab75faf3ddc95 gimp-devel-2.2.13-2.0.7.el5_6.2.i386.rpm
4dfb9adccc0df3e26de49268b4490338 gimp-libs-2.2.13-2.0.7.el5_6.2.i386.rpm
Source:
d798c046c91b96869fb9a180e1535ea6 gimp-2.2.13-2.0.7.el5_6.2.src.rpm
--
Karanbir Singh
CentOS Project { http://www.centos.org/ }
irc: z00dax, #Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
_______________________________________________
CentOS-announce mailing list
Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
http://lists.centos.org/mailman/listinfo/centos-announce
CentOS Errata and Security Advisory 2011:0838 Moderate
Upstream details at : https://rhn.redhat.com/errata/RHSA-2011-0838.html
The following updated files have been uploaded and are currently
syncing to the mirrors: ( md5sum Filename )
x86_64:
6a3f1279a505d09231328c91b6e50ca9 gimp-2.2.13-2.0.7.el5_6.2.x86_64.rpm
60653c1ba1a1c214b40cfa56a2c1ef1f gimp-devel-2.2.13-2.0.7.el5_6.2.i386.rpm
cb199d97c1c15748856b973f71915e25 gimp-devel-2.2.13-2.0.7.el5_6.2.x86_64.rpm
d4cd23be81a41d5326cd11802d68e70f gimp-libs-2.2.13-2.0.7.el5_6.2.i386.rpm
e205cb4f7040ccbba57a2b5ca84f7908 gimp-libs-2.2.13-2.0.7.el5_6.2.x86_64.rpm
Source:
d798c046c91b96869fb9a180e1535ea6 gimp-2.2.13-2.0.7.el5_6.2.src.rpm
--
Karanbir Singh
CentOS Project { http://www.centos.org/ }
irc: z00dax, #Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
_______________________________________________
CentOS-announce mailing list
Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
http://lists.centos.org/mailman/listinfo/centos-announce
Posljednje sigurnosne preporuke