Secunia Logo
Netsikker nu! 2008
 
Sun Solaris FreeType Multiple Vulnerabilities
Secunia Advisory: SA30766
Release Date: 2008-06-19
Last Update: 2008-08-13
Popularity: 3,894 views

Critical:
Moderately critical
Impact: DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Sun Solaris 10
Sun Solaris 8
Sun Solaris 9

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2008-1806
CVE-2008-1807
CVE-2008-1808


Description:
Sun has acknowledged some vulnerabilities in Solaris, which can potentially can be exploited by malicious people to compromise an application using the libfreetype library.

For more information:
SA30600

The vulnerabilities are reported in Solaris 8, 9, and 10 for both the SPARC and x86 platforms.

Solution:
Apply patches.

-- SPARC Platform --

Solaris 8:
Apply patch 124420-04 or later.

Solaris 9:
Apply patch 116105-09 or later.

Solaris 10:
Apply patch 119812-06 or later.

OpenSolaris:
Fixed in build snv_93 or later.

-- x86 Platform --

Solaris 8:
Apply patch 124421-04 or later.

Solaris 9:
Apply patch 116106-08 or later.

Solaris 10:
Apply patch 119813-08 or later.

OpenSolaris:
Fixed in build snv_93 or later.

Changelog:
2008-08-13: Updated "Solution" section.

Original Advisory:
http://sunsolve.sun.com/search/document.do?assetkey=1-66-239006-1

Other References:
SA30600:
http://secunia.com/advisories/30600/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. WinFTP "PASV" Denial of Service Vulnerability // 123 views
2. ScriptsEz Mini Hosting Panel "dir" File Disclosure // 100 views
3. Ayco Okul "linkid" SQL Injection Vulnerability // 95 views
4. NewLife Blogger "nlb3" SQL Injection Vulnerability // 92 views
5. Real Estates Classifieds "cat" SQL Injection Vulnerability // 59 views
6. Joomla Ignite Gallery Component "gallery" SQL Injection // 58 views
7. Apache Tomcat "RemoteFilterValve" Security Bypass Security Issue // 55 views
8. My PHP Indexer "d" File Disclosure Vulnerability // 54 views
9. Joomla Mad4Joomla Mailforms Component "jid" SQL Injection // 46 views
10. Joomla OwnBiblio Component "catid" SQL Injection // 43 views