Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 93532 - media-video/gxine: Remote Hostname Format String Vulnerability (CAN-2005-1692)
Summary: media-video/gxine: Remote Hostname Format String Vulnerability (CAN-2005-1692)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High major
Assignee: Gentoo Security
URL: http://www.securityfocus.com/bid/13707
Whiteboard: A2 [glsa]
Keywords:
: 93939 (view as bug list)
Depends on:
Blocks:
 
Reported: 2005-05-22 03:29 UTC by Adir Abraham
Modified: 2005-05-26 04:30 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Adir Abraham 2005-05-22 03:29:11 UTC
From SecurityFocus.com:
Gxine is susceptible to a remote format string vulnerability. This issue is due
to a failure of the application to securely implement a formatted printing function.

Successful exploitation of this vulnerability allows remote attackers to execute
arbitrary machine code in the context of the affected application.

Vulnerable versions:
xine gxine 0.4.0
xine gxine 0.4.1
xine gxine 0.4.2
xine gxine 0.4.3
xine gxine 0.4.4

Reproducible: Always
Steps to Reproduce:
Comment 1 Matthias Geerdsen (RETIRED) gentoo-dev 2005-05-22 07:17:19 UTC
media-video, pls verify/advise
Comment 2 Thierry Carrez (RETIRED) gentoo-dev 2005-05-24 06:01:30 UTC
Upstream is aware of it :
http://sourceforge.net/mailarchive/forum.php?thread_id=7337157&forum_id=7131
Comment 3 Diego Elio Pettenò (RETIRED) gentoo-dev 2005-05-24 07:01:11 UTC
Also 0.3.3 is vulnerable. 
 
I've added new versions (0.3.3-r2, 0.4.1-r1 and 0.4.4) with a patch which 
should fix the problem. 
 
I also sent the patch to upstream author. 
 
Comment 4 Thierry Carrez (RETIRED) gentoo-dev 2005-05-24 12:22:47 UTC
sparc, x86, take your preferred fix version and stabilize it.
Comment 5 Thierry Carrez (RETIRED) gentoo-dev 2005-05-24 13:34:47 UTC
CAN number asked to MITRE
Comment 6 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-05-24 14:09:30 UTC
CVE id assigned. 
Comment 7 Diego Elio Pettenò (RETIRED) gentoo-dev 2005-05-25 07:35:40 UTC
*** Bug 93939 has been marked as a duplicate of this bug. ***
Comment 8 Jason Wever (RETIRED) gentoo-dev 2005-05-25 20:47:29 UTC
0.4.1-r1 stable on SPARC
Comment 9 Thierry Carrez (RETIRED) gentoo-dev 2005-05-26 03:04:52 UTC
GLSA is ready,
x86 testers / Diego: please test and mark stable on x86 (if stable)
Comment 10 Jan Brinkmann (RETIRED) gentoo-dev 2005-05-26 03:26:41 UTC
0.4.1-r1 stable on x86
Comment 11 Thierry Carrez (RETIRED) gentoo-dev 2005-05-26 04:30:04 UTC
GLSA 200505-19