Jump to content

Advisories MDVSA-2010:182: kdegraphics


paul
 Share

Recommended Posts

A vulnerability has been found and corrected in kdegraphics (ksvg):

 

Use-after-free vulnerability in the garbage-collection implementation

in WebCore in WebKit in Apple Safari before 4.0 allows remote

attackers to execute arbitrary code or cause a denial of service

(heap corruption and application crash) via an SVG animation element,

related to SVG set objects, SVG marker elements, the targetElement

attribute, and unspecified caches. (CVE-2009-1709)

 

Packages for 2008.0 are provided as of the Extended Maintenance

Program. Please visit this link to learn more:

http://store.mandriva.com/product_info.php?cPath=149&products_id=490

 

The updated packages have been patched to correct this issue.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...