-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
--------------------------------------------------------------------------
Turbolinux Security Advisory TLSA-2006-37
http://www.turbolinux.co.jp/security/
security-team@turbolinux.co.jp
--------------------------------------------------------------------------
Original released date: 07 Nov 2006
Last revised: 07 Nov 2006
Package: qt3
Summary: Integer overflow
More information:
Qt is a complete and well-designed multi-platform object-oriented
framework for developing graphical user interface (GUI) applications using C++.
Integer overflow vulnerabilities have been discovered in qt3.
Impact:
These vulnerabilities may allow remote attackers to execute arbitrary
code via malformed pixmap image files.
Affected Products:
- Turbolinux FUJI
<Turbolinux FUJI>
Source Packages
Size: MD5
qt3-3.3.4-14.src.rpm
14665418 ccceb014c4933eae8f81b9ceafc86d2c
Binary Packages
Size: MD5
qt3-3.3.4-14.i686.rpm
6468909 1132427bf1312d343f04ad53ead06509
qt3-devel-3.3.4-14.i686.rpm
3731218 6ccb10c73e8ca93254886f67ebf9288f
qt3-doc-3.3.4-14.i686.rpm
8072435 f60f2d8faf6b159f802930a8b30d80f8
qt3-examples-3.3.4-14.i686.rpm
4007289 119fb56251b0a19529260f6ce20a4328
qt3-sql-MySQL-3.3.4-14.i686.rpm
32244 5b30c6edb792476cd606ca60bd4ea0ed
qt3-sql-ODBC-3.3.4-14.i686.rpm
51181 d5f929d46ffdcec4994bd1025cd154e9
qt3-sql-postgresql-3.3.4-14.i686.rpm
39924 add862a2596fe599f569ba094651d77d
qt3-tools-3.3.4-14.i686.rpm
2120789 16498e6a9a7f53d2003e3556f4bcbb2b
CVE
[CVE-2006-4811]
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4811
--------------------------------------------------------------------------
Revision History
07 Nov 2006 Initial release
--------------------------------------------------------------------------
Copyright(C) 2006 Turbolinux, Inc. All rights reserved.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
iD8DBQFFUEvqK0LzjOqIJMwRAv12AJ0TIeDb8bUnINrpF1v76Fc03nvjAACgsoH7
X2cuA5E4miN7LK3BV71Psco=
=/0vl
-----END PGP SIGNATURE-----