PT-2008-1114 · Xfce · Xfce+2
Daichi Kawahata
·
Publicado
2008-01-09
·
Atualizado
2011-03-08
·
CVE-2007-6532
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Xfce versions prior to 4.4.2
xfce4-panel versions prior to 4.4.2
Description
The issue is related to a double free vulnerability in the Widget Library (libxfcegui4) and multiple vulnerabilities in the xfce4-panel package. These vulnerabilities might allow remote attackers to execute arbitrary code or disrupt the confidentiality, integrity, and availability of protected information. The vulnerabilities can be exploited remotely.
Recommendations
For Xfce versions prior to 4.4.2, update to version 4.4.2 or later.
For xfce4-panel versions prior to 4.4.2, update to version 4.4.2 or later.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Xfce
Libxfcegui4
Xfce4-Panel