Git-Url: 
http://git.frugalware.org/gitweb/gitweb.cgi?p=homepage-ng.git;a=commitdiff;h=98adb928bbbeb2bd13cef3f9881e1b80b76aa358

commit 98adb928bbbeb2bd13cef3f9881e1b80b76aa358
Author: voroskoi <[EMAIL PROTECTED]>
Date:   Mon Oct 8 15:37:17 2007 +0200

FSA295-python

diff --git a/frugalware/xml/security.xml b/frugalware/xml/security.xml
index 1ad38fc..4d136fd 100644
--- a/frugalware/xml/security.xml
+++ b/frugalware/xml/security.xml
@@ -27,6 +27,19 @@

<fsas>
<fsa>
+               <id>295</id>
+               <date>2007-10-08</date>
+               <author>voroskoi</author>
+               <package>python</package>
+               <vulnerable>2.5-3terminus2</vulnerable>
+               <unaffected>2.5-3terminus3</unaffected>
+               <bts>http://bugs.frugalware.org/task/2428</bts>
+               
<cve>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4965</cve>
+               <desc>Slythers Bro has discovered a security issue in the 
imageop module for Python, which can be exploited by malicious people to cause 
a DoS (Denial of Service) and potentially compromise a vulnerable system.
+                       The security issue is caused due to an integer overflow 
error within the "tovideo()" function and can be exploited to cause a 
heap-based buffer overflow when specially crafted parameters are passed to the 
function.
+                       Successful exploitation may allow execution of 
arbitrary code.</desc>
+       </fsa>
+       <fsa>
<id>294</id>
<date>2007-10-08</date>
<author>voroskoi</author>
_______________________________________________
Frugalware-git mailing list
[email protected]
http://frugalware.org/mailman/listinfo/frugalware-git

Reply via email to