Secunia Logo
 
Mandriva update for xine-lib
Secunia Advisory: SA24448
Release Date: 2007-03-13
Last Update: 2007-03-14
Popularity: 4,865 views

Critical:
Highly critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Mandriva Linux 2007.0

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-1246
CVE-2007-1387


Description:
Mandriva has issued an update for xine-lib. This fixes some vulnerabilities, which can potentially be exploited by malicious people to compromise a vulnerable system.

For more information:
SA24443

Solution:
Apply updated packages.

Mandriva Linux 2007

d2e289c13ea882d14f817ba71e41d336
2007.0/i586/libxine1-1.1.2-3.4mdv2007.0.i586.rpm
aa4fd726e47070a83a132850fa684d62
2007.0/i586/libxine1-devel-1.1.2-3.4mdv2007.0.i586.rpm
4feb666d7b2045248cffd66f8b9df0a0
2007.0/i586/xine-aa-1.1.2-3.4mdv2007.0.i586.rpm
207381458e062535033eaa0722c12274
2007.0/i586/xine-arts-1.1.2-3.4mdv2007.0.i586.rpm
19562b2d31db0847167c0ce4dfcd298a
2007.0/i586/xine-dxr3-1.1.2-3.4mdv2007.0.i586.rpm
e1e2f2b823e97816141bc01debc74815
2007.0/i586/xine-esd-1.1.2-3.4mdv2007.0.i586.rpm
29bd3e9f33a6baeb52f483bf6f4c4cbc
2007.0/i586/xine-flac-1.1.2-3.4mdv2007.0.i586.rpm
547d3973370af31d1d2150388047242e
2007.0/i586/xine-gnomevfs-1.1.2-3.4mdv2007.0.i586.rpm
9f5f6e832d6111b05d2a1d5252324556
2007.0/i586/xine-image-1.1.2-3.4mdv2007.0.i586.rpm
cdacc373a7c641de3399ac592bb7ce31
2007.0/i586/xine-plugins-1.1.2-3.4mdv2007.0.i586.rpm
65ca8caf2a8b6b04ca6329c8f2eb5fac
2007.0/i586/xine-sdl-1.1.2-3.4mdv2007.0.i586.rpm
0f1952c700b3f85ad0ee7ece6bd57924
2007.0/i586/xine-smb-1.1.2-3.4mdv2007.0.i586.rpm
93c875b4198b703e422d1476890fef45
2007.0/SRPMS/xine-lib-1.1.2-3.4mdv2007.0.src.rpm

Mandriva Linux 2007/X86_64

2a0bc2e8e573d5175c3f593369f38c6b
2007.0/x86_64/lib64xine1-1.1.2-3.4mdv2007.0.x86_64.rpm
82388a626d123e90c70ce277de200823
2007.0/x86_64/lib64xine1-devel-1.1.2-3.4mdv2007.0.x86_64.rpm
348919ec1de9625cd8bbd7e2d88522c7
2007.0/x86_64/xine-aa-1.1.2-3.4mdv2007.0.x86_64.rpm
2013b83608d6494fda52ffdca89009d0
2007.0/x86_64/xine-arts-1.1.2-3.4mdv2007.0.x86_64.rpm
03cc8705d3b75ae6225f1e8d0c0824be
2007.0/x86_64/xine-dxr3-1.1.2-3.4mdv2007.0.x86_64.rpm
859faa7710626d9dbb6f42db98372392
2007.0/x86_64/xine-esd-1.1.2-3.4mdv2007.0.x86_64.rpm
d74ee116ce6f7a97fa7d17ea88ef96f5
2007.0/x86_64/xine-flac-1.1.2-3.4mdv2007.0.x86_64.rpm
274fae23965408f6f2f7e34804688002
2007.0/x86_64/xine-gnomevfs-1.1.2-3.4mdv2007.0.x86_64.rpm
4e43ff21256efff199566263c61acce8
2007.0/x86_64/xine-image-1.1.2-3.4mdv2007.0.x86_64.rpm
97ebd01e9b799505b1f45405f766348c
2007.0/x86_64/xine-plugins-1.1.2-3.4mdv2007.0.x86_64.rpm
b2acd2f8fbbe8bdf611bd4ace8fbd5e9
2007.0/x86_64/xine-sdl-1.1.2-3.4mdv2007.0.x86_64.rpm
714dbb090940c603c04af2e5ee49a015
2007.0/x86_64/xine-smb-1.1.2-3.4mdv2007.0.x86_64.rpm
93c875b4198b703e422d1476890fef45
2007.0/SRPMS/xine-lib-1.1.2-3.4mdv2007.0.src.rpm

Changelog:
2007-03-14: Updated "Solution" section to reflect updated packages. Added CVE reference.

Original Advisory:
http://www.mandriva.com/security/advisories?name=MDKSA-2007:057
http://www.mandriva.com/security/advisories?name=MDKSA-2007:062

Other References:
SA24443:
http://secunia.com/advisories/24443/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Apple iPhone / iPod touch Multiple Vulnerabilities // 31 views
2. Sun Java JDK / JRE Multiple Vulnerabilities // 23 views
3. Adobe Flash Player Multiple Security Issues and Vulnerabilities // 22 views
4. Microsoft Word Smart Tag Invalid Length Processing Vulnerability // 22 views
5. vBulletin Visitor Messages Script Insertion Vulnerability // 20 views
6. xt:Commerce SQL Injection Vulnerability // 19 views
7. Fedora update for thunderbird // 19 views
8. Checkpoint VPN-1 Information Disclosure Vulnerability // 19 views
9. SemanticScuttle Cross-Site Scripting Vulnerabilities // 18 views
10. Easyedit CMS Multiple SQL Injection Vulnerabilities // 18 views