------------------------------------------------------------
Arch Linux Security Warning ALSW 2007-#21
------------------------------------------------------------

Name: ekiga
Date: 2007-03-31
Severity: High
Warning #: 2007-#21

------------------------------------------------------------

Product Background
===================
Ekiga is an open source VoIP and video conferencing application.

Problem Background
===================
Mu Security has discovered that Ekiga fails to implement formatted
printing correctly.

Impact
=========
An attacker could exploit this vulnerability to crash Ekiga and
potentially execute arbitrary code by sending a specially crafted Q.931
SETUP packet to a victim.

Problem Packages
===================
Package: ekiga
Repo: extra
Group: network
Unsafe: < 2.0.7
Safe: >= 2.0.7


Package Fix
===================
Upgrade to 2.0.7.

===================

Unofficial ArchLinux Security Bug Tracker:
http://jjdanimoth.netsons.org/alsw.html

Reference(s)
===================
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1006

Contact
===================
JJDaNiMoTh <[EMAIL PROTECTED]>

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
arch mailing list
[email protected]
http://archlinux.org/mailman/listinfo/arch

Reply via email to