~ubuntu-branches/ubuntu/feisty/xfce4-panel/feisty-updates

Viewing all changes in revision 24.

  • Committer: Bazaar Package Importer
  • Author(s): Gauvain Pocentek
  • Date: 2008-06-27 22:32:38 UTC
  • Revision ID: james.westby@ubuntu.com-20080627223238-skz13ao8i2gxjzaa
Tags: 4.4.0-0ubuntu1.1
* SECURITY UPDATE: 
 + debian/patches/CVE-2007-6531.diff
  - Stack-based buffer overflow in the Panel (xfce4-panel) 
    component in Xfce before 4.4.2 might allow remote attackers to 
    execute arbitrary code via Launcher tooltips. NOTE: a second 
    buffer overflow (over-read) in the xfce_mkdirhier 
    function was also reported, but it might not be exploitable 
    for a crash or code execution, so it is not a vulnerability.
* References
 + http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2007-6531

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: