Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.56457
Category:Debian Local Security Checks
Title:Debian: Security Advisory (DSA-1008-1)
Summary:The remote host is missing an update for the Debian 'kdegraphics' package(s) announced via the DSA-1008-1 advisory.
Description:Summary:
The remote host is missing an update for the Debian 'kdegraphics' package(s) announced via the DSA-1008-1 advisory.

Vulnerability Insight:
Marcelo Ricardo Leitner noticed that the current patch in DSA 932 (CVE-2005-3627) for kpdf, the PDF viewer for KDE, does not fix all buffer overflows, still allowing an attacker to execute arbitrary code.

The old stable distribution (woody) does not contain kpdf packages.

For the stable distribution (sarge) this problem has been fixed in version 3.3.2-2sarge4.

The unstable distribution (sid) is not affected by this problem.

We recommend that you upgrade your kpdf package.

Affected Software/OS:
'kdegraphics' package(s) on Debian 3.1.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2006-0746
1015751
http://securitytracker.com/id?1015751
17039
http://www.securityfocus.com/bid/17039
19189
http://secunia.com/advisories/19189
19190
http://secunia.com/advisories/19190
19264
http://secunia.com/advisories/19264
20060310 [KDE Security Advisory] kpdf of KDE 3.3.x heap based buffer overflow
http://www.securityfocus.com/archive/1/427299/100/0/threaded
566
http://securityreason.com/securityalert/566
DSA-1008
http://www.debian.org/security/2006/dsa-1008
MDKSA-2006:054
http://www.mandriva.com/security/advisories?name=MDKSA-2006:054
RHSA-2006:0262
http://www.redhat.com/support/errata/RHSA-2006-0262.html
http://www.kde.org/info/security/advisory-20060202-1.txt
kde-kpdf-patch-bo(25146)
https://exchange.xforce.ibmcloud.com/vulnerabilities/25146
oval:org.mitre.oval:def:11441
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11441
CopyrightCopyright (C) 2008 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.