Secunia Logo
 
CVE Reference: CVE-2007-1006
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-1006

Description:
Multiple format string vulnerabilities in the gm_main_window_flash_message function in Ekiga before 2.0.5 allow attackers to cause a denial of service and possibly execute arbitrary code via a crafted Q.931 SETUP packet.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntu.com/usn/usn-426-1

SUSE
  http://www.novell.com/linux/security/advisories/2007_9_sr.html

ST
  1017673

SAID
  Secunia Advisory: SA24194
  Secunia Advisory: SA24228
  Secunia Advisory: SA24229
  Secunia Advisory: SA24271
  Secunia Advisory: SA24379
  Secunia Advisory: SA24680
  Secunia Advisory: SA25119

REDHAT
  http://www.redhat.com/support/errata/RHSA-2007-0087.html

OSVDB
  31939

MLIST
  http://mail.gnome.org/archives/ekiga-list/2007-February/msg00060.html

MISC
  http://labs.musecurity.com/advisories/MU-200702-01.txt

MANDRIVA
  http://www.mandriva.com/security/advisories?name=MDKSA-2007:044

GENTOO
  http://security.gentoo.org/glsa/glsa-200703-25.xml

FEDORA
  http://fedoranews.org/cms/node/2683
  http://fedoranews.org/cms/node/2682

DEBIAN
  http://www.debian.org/security/2007/dsa-1262

CONFIRM
  http://www.ekiga.org/index.php?rub=10&archive=1

BID
  22613


Return to the previous page.