Jump to content

Advisories (MDKSA-2006:117 ): libmms


 Share

Recommended Posts

Mandriva Advisories MDKSA-2006:117 : libmms

 

Updated libmms packages fix buffer overflow vulnerability

July 6th, 2006

 

Stack-based buffer overflow in MiMMS 0.0.9 allows remote attackers to cause

 

a denial of service (application crash) and possibly execute arbitrary code

 

via the (1) send_command, (2) string_utf16, (3) get_data, and (4)

 

get_media_packet functions, and possibly other functions. Libmms uses the

 

same vulnerable code.

 

 

 

The updated packages have been patched to correct this issue.

 

 

The released versions of Mandriva GNU/Linux affected are:

  • 2006.0

Full information about this advisory, including the updated packages, is available at:

www.mandriva.com/security/advisories?name=MDKSA-2006:117

 

Other references:

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2200

 

Posted automatically by aru (mdksec2mub v: mdksec2mub,v 1.3 2006/07/02 09:40:56 aru Exp $)

Link to comment
Share on other sites

 Share

×
×
  • Create New...