Secunia - Stay Secure
Home Corporate Website Jobs  Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Ubuntu update for imlib2 Advisory Available in Danish  Advisory Available in German 

Secunia Advisory: SA22744  
Release Date: 2006-11-06
Last Update: 2006-11-07

Critical:
Highly critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Ubuntu Linux 5.10
Ubuntu Linux 6.06
Ubuntu Linux 6.10


CVE reference:CVE-2006-4806 (Secunia mirror)
CVE-2006-4807 (Secunia mirror)
CVE-2006-4808 (Secunia mirror)
CVE-2006-4809 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Ubuntu has issued an update for imlib2. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise an application using the library.

For more information:
SA22732

Solution:
Apply updated packages.

-- Ubuntu 5.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo...ib2/imlib2_1.2.0-2.2ubuntu2.2.diff.gz
Size/MD5: 100818 e8dff95caa549ea2fd1af7d2de9aee58
http://security.ubuntu.com/ubuntu/poo.../imlib2/imlib2_1.2.0-2.2ubuntu2.2.dsc
Size/MD5: 749 f9049d9ca97993d4cd056e6c2c86bb63
http://security.ubuntu.com/ubuntu/pool/main/i/imlib2/imlib2_1.2.0.orig.tar.gz
Size/MD5: 891164 dfc6d3cc270354af22ef9b5e3b312003

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...lib2-dev_1.2.0-2.2ubuntu2.2_amd64.deb
Size/MD5: 343112 3fb67561e36117ed6d99d7e8e42ac6aa
http://security.ubuntu.com/ubuntu/poo...ibimlib2_1.2.0-2.2ubuntu2.2_amd64.deb
Size/MD5: 206720 f88f40f4418e06026eccac8eca559548

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...mlib2-dev_1.2.0-2.2ubuntu2.2_i386.deb
Size/MD5: 300406 20d1688b9bbf22d33e5c6d77df6dca4e
http://security.ubuntu.com/ubuntu/poo...libimlib2_1.2.0-2.2ubuntu2.2_i386.deb
Size/MD5: 193222 17875024cb41610c963083e40646a0d2

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...b2-dev_1.2.0-2.2ubuntu2.2_powerpc.deb
Size/MD5: 341300 96cf4ecab8533b81e33f563ef278a06b
http://security.ubuntu.com/ubuntu/poo...imlib2_1.2.0-2.2ubuntu2.2_powerpc.deb
Size/MD5: 213404 7b70d0c52f571934d204859ee4d96d63

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...lib2-dev_1.2.0-2.2ubuntu2.2_sparc.deb
Size/MD5: 320952 f38291aa97591734498e2ba98a73c9d7
http://security.ubuntu.com/ubuntu/poo...ibimlib2_1.2.0-2.2ubuntu2.2_sparc.deb
Size/MD5: 197394 4005474dbfcdc9d4f44acc2a885c7e14

-- Ubuntu 6.06 LTS --

Source archives:

http://security.ubuntu.com/ubuntu/poo...mlib2/imlib2_1.2.1-2ubuntu0.2.diff.gz
Size/MD5: 104753 4e1e182e906e259dc9a2586fa0174f29
http://security.ubuntu.com/ubuntu/pool/main/i/imlib2/imlib2_1.2.1-2ubuntu0.2.dsc
Size/MD5: 745 fe3d81e99a36ed39794e503cdbdd10f3
http://security.ubuntu.com/ubuntu/pool/main/i/imlib2/imlib2_1.2.1.orig.tar.gz
Size/MD5: 911360 deb3c9713339fe9ca964e100cce42cd1

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...imlib2-dev_1.2.1-2ubuntu0.2_amd64.deb
Size/MD5: 351960 b5c0beb546499b2e514f4ad9c839c5c5
http://security.ubuntu.com/ubuntu/poo.../libimlib2_1.2.1-2ubuntu0.2_amd64.deb
Size/MD5: 214428 7d279f8b198dbb91dd7a12a1b00b9000

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...bimlib2-dev_1.2.1-2ubuntu0.2_i386.deb
Size/MD5: 302276 945559a74bcbbd2ebcf70b4f66a6d5ce
http://security.ubuntu.com/ubuntu/poo...2/libimlib2_1.2.1-2ubuntu0.2_i386.deb
Size/MD5: 193240 200c49dce9e76b1bda7a04dbc91feef0

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...lib2-dev_1.2.1-2ubuntu0.2_powerpc.deb
Size/MD5: 341740 17c3a1a0df09b9adb1c0d96e72198139
http://security.ubuntu.com/ubuntu/poo...ibimlib2_1.2.1-2ubuntu0.2_powerpc.deb
Size/MD5: 212664 8725b495a363c158b0c0635bf62037e8

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...imlib2-dev_1.2.1-2ubuntu0.2_sparc.deb
Size/MD5: 317986 db59965eb6b628176cad489c36e65387
http://security.ubuntu.com/ubuntu/poo.../libimlib2_1.2.1-2ubuntu0.2_sparc.deb
Size/MD5: 193972 24e908087ce009babc6f09c5a674ee68

-- Ubuntu 6.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo...mlib2/imlib2_1.2.1-2ubuntu1.2.diff.gz
Size/MD5: 104781 90169057fab62f3b75a76b3c28448c85
http://security.ubuntu.com/ubuntu/pool/main/i/imlib2/imlib2_1.2.1-2ubuntu1.2.dsc
Size/MD5: 745 ec9d548c0b036b28e4dcd18befb6d85a
http://security.ubuntu.com/ubuntu/pool/main/i/imlib2/imlib2_1.2.1.orig.tar.gz
Size/MD5: 911360 deb3c9713339fe9ca964e100cce42cd1

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...imlib2-dev_1.2.1-2ubuntu1.2_amd64.deb
Size/MD5: 354252 847ee621197a9bf5d770ea3fb017bd80
http://security.ubuntu.com/ubuntu/poo.../libimlib2_1.2.1-2ubuntu1.2_amd64.deb
Size/MD5: 218454 f9d16f6228524c9d0f60e82a0e6b1a80

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...bimlib2-dev_1.2.1-2ubuntu1.2_i386.deb
Size/MD5: 318144 f6d02165ee217cb302ef5ff673eff5f6
http://security.ubuntu.com/ubuntu/poo...2/libimlib2_1.2.1-2ubuntu1.2_i386.deb
Size/MD5: 202868 1ce98d7ade3518e4bcb1fe39dc01a700

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...lib2-dev_1.2.1-2ubuntu1.2_powerpc.deb
Size/MD5: 345836 27a9c89433973b6087fd43c2810ca95b
http://security.ubuntu.com/ubuntu/poo...ibimlib2_1.2.1-2ubuntu1.2_powerpc.deb
Size/MD5: 218072 b0f9911799c1a06577a2f2dc4e0baa36

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...imlib2-dev_1.2.1-2ubuntu1.2_sparc.deb
Size/MD5: 324238 58c0100339f7439c1276e8855dce9dac
http://security.ubuntu.com/ubuntu/poo.../libimlib2_1.2.1-2ubuntu1.2_sparc.deb
Size/MD5: 198208 2d2cf4ba67afa01c918d90405589828a

Changelog:
2006-11-07: Previous fixes contained a regression. Updated "Solution" section. Link to additional advisory added.

Original Advisory:
http://www.ubuntu.com/usn/usn-376-1
http://www.ubuntu.com/usn/usn-376-2

Other References:
SA22732:
http://secunia.com/advisories/22732/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

373 Related Secunia Security Advisories, displaying 10

1. Ubuntu update for libxml2
2. Ubuntu update for tiff
3. Ubuntu update for kernel
4. Ubuntu update for postfix
5. Ubuntu update for xine-lib
6. Ubuntu update for python
7. Ubuntu update for OpenLDAP
8. Ubuntu update for libxslt
9. Ubuntu update for thunderbird
10. Ubuntu update for php

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
HP OpenView Select Identity Connectors Information Disclosure
2.
Gentoo update for yelp
3.
Gentoo update for dnsmasq
4.
rPath update for libtiff
5.
Gentoo update for mysql
6.
Gentoo update for realplayer
7.
Drupal Content Construction Kit Script Insertion Vulnerabilities
8.
Cisco ASA and PIX Security Appliances Multiple Vulnerabilities
9.
CS-Cart "cs_cookies" SQL Injection Vulnerability
10.
SUSE update for IBMJava5-JRE and java-1_5_0-ibm





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia