Login
Newsletter
Werbung

Sicherheit: Pufferüberlauf in Java
Aktuelle Meldungen Distributionen
Name: Pufferüberlauf in Java
ID: TLSA-2007-8
Distribution: TurboLinux
Plattformen: Turbolinux FUJI, Turbolinux 10 Server x64 Edition, Turbolinux 10 Desktop, Turbolinux 10 F..., Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
Datum: Do, 22. Februar 2007, 03:50
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0243
Applikationen: Java

Originalnachricht

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

--------------------------------------------------------------------------
Turbolinux Security Advisory TLSA-2007-8
http://www.turbolinux.co.jp/security/
security-team@turbolinux.co.jp
--------------------------------------------------------------------------

Original released date: 21 Feb 2007
Last revised: 21 Feb 2007

Package: Java

Summary: Heap Overflow

More information:
java-1.x.x-sun contains the Java Runtime Environment.
This package contains additional script and configuration files for
JDK version 1.*.* distributed by Sun Microsystems, Inc.

The heap overbuffer vulnerability exists in java.

Impact:
This vulnerability may allow remote attackers to execute arbitrary
code via malformed GIF image files.

Affected Products:
- Turbolinux FUJI
- Turbolinux 10 Server x64 Edition
- Turbolinux Home
- Turbolinux 10 F...
- Turbolinux 10 Desktop
- Turbolinux Multimedia
- Turbolinux Personal


<Turbolinux FUJI>

Source Packages
Size: MD5

j2sdk-addon-1.5.0_11-1.src.rpm
7243 fbb419af16cf817aac1855ec7ecb8b47

Binary Packages
Size: MD5

j2sdk-addon-1.5.0_11-1.i686.rpm
6844 caf67c005a6ba0459d8149d67e044081
jdk-1_5_0_11-linux-i586.rpm
48070314 b0915469b13b1465b458d5415f287f5a

<Turbolinux 10 Server x64 Edition>

Source Packages
Size: MD5

java-1.5.0-sun-1.5.0.11-1jppTL10.src.rpm
92142834 b81ac3dc44a1b260f6be0431447cc184

Binary Packages
Size: MD5

java-1.5.0-sun-1.5.0.11-1jppTL10.x86_64.rpm
22072271 5003c65a3e385ce8f7fff736d4fb9b4c
java-1.5.0-sun-alsa-1.5.0.11-1jppTL10.x86_64.rpm
33394 e662ee2575f23db35ccb2582a414ab75
java-1.5.0-sun-demo-1.5.0.11-1jppTL10.x86_64.rpm
4866996 3db2f24858e8940b6264898f37f48d38
java-1.5.0-sun-devel-1.5.0.11-1jppTL10.x86_64.rpm
4018983 5e6e65cb67537033368071024906df18
java-1.5.0-sun-jdbc-1.5.0.11-1jppTL10.x86_64.rpm
23034 d7a2d630054b0af34772b93301019359
java-1.5.0-sun-src-1.5.0.11-1jppTL10.x86_64.rpm
16476141 fcbfb4f200a53d30ed80b8d32006cb83

<Turbolinux 10 Desktop, Turbolinux 10 F..., Turbolinux Home, Turbolinux
Multimedia, Turbolinux Personal>

Source Packages
Size: MD5

j2sdk-addon-1.5.0_11-1.src.rpm
7243 13580b133fc60fe82b98960f5a00fcb5

Binary Packages
Size: MD5

j2sdk-addon-1.5.0_11-1.i586.rpm
6759 a4c82dacbf03d7ad35765db608567a09


References:

Sun Microsystems
[#102760]
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102760-1

CVE
[CVE-2007-0243]
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0243

--------------------------------------------------------------------------
Revision History
21 Feb 2007 Initial release
--------------------------------------------------------------------------

Copyright(C) 2007 Turbolinux, Inc. All rights reserved.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)

iD8DBQFF3DnLK0LzjOqIJMwRAiL2AJ0YD5r7TESTKTAiVoKav5OonnpDwwCffu42
z0Pn4UhNbWwZLAD3hvm+RiM=
=i8nh
-----END PGP SIGNATURE-----
Pro-Linux
Traut euch!
Neue Nachrichten
Werbung