Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Gentoo: 200302-04 Critical: Bladeenc Arbitrary Code Execution

gentoo
Calendar Grey February 5, 2003
Dist Gentoo Esm H88
The Gentoo team has issued a statement regarding the bladeenc arbitrary code execution vulnerability, outlining extensive information on mitigation strategies.
A wave file will let the attacker to execute all the code he wants on the victim.

Summary


- --------------------------------------------------------------------
GENTOO LINUX SECURITY ANNOUNCEMENT 200302-04
- --------------------------------------------------------------------
DATE    : 2003-02-05 12:55 UTC

- --------------------------------------------------------------------
From advisory:
"A wave file let the attacker to execute all the code he want on the victim"
Read the full advisory at:
SOLUTION
It is recommended that all Gentoo Linux users who are running media-sound/bladeenc upgrade to bladeenc-0.94.2-r1 as follows:
emerge sync emerge -u bladeenc emerge clean
- -------------------------------------------------------------------- aliz@gentoo.org - GnuPG key is available at styx@gentoo.org - --------------------------------------------------------------------

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
critical
Lowest
Low
Medium
High
Critical

PACKAGE : bladeenc
SUMMARY : arbitrary code execution
EXPLOIT : local

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here