Mandrake Linux Security Advisory : libwmf (MDKSA-2006:114-1)

critical Nessus Plugin ID 21776

Synopsis

The remote Mandrake Linux host is missing one or more security updates.

Description

Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function. (CVE-2004-0941)

Integer overflows were reported in the GD Graphics Library (libgd) 2.0.28, and possibly other versions. These overflows allow remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx() function.
Libwmf contains an embedded copy of the GD library code.
(CVE-2004-0990)

Update :

The previous update incorrectly attributed the advisory text to CVE-2004-0941, while it should have been CVE-2004-0990. Additional review of the code found fixes for CVE-2004-0941 were missing and have also been included in this update.

Solution

Update the affected packages.

Plugin Details

Severity: Critical

ID: 21776

File Name: mandrake_MDKSA-2006-114.nasl

Version: 1.17

Type: local

Published: 6/29/2006

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:lib64wmf0.2_7, p-cpe:/a:mandriva:linux:lib64wmf0.2_7-devel, p-cpe:/a:mandriva:linux:libwmf, p-cpe:/a:mandriva:linux:libwmf0.2_7, p-cpe:/a:mandriva:linux:libwmf0.2_7-devel, cpe:/o:mandriva:linux:2006, x-cpe:/o:mandrakesoft:mandrake_linux:le2005

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 6/29/2006

Reference Information

CVE: CVE-2004-0941, CVE-2004-0990

MDKSA: 2006:114-1