texinfo 보안 업데이트
Web Browser 로는 FTP 접속이 불가능 합니다.
문서번호 : 1163054658
업데이트 : 2006.11.09
상세내용
CVE-2005-3011:
The sort_offline function for texindex in texinfo 4.8 and earlier allows local
users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-2006-4810:
Buffer overflow in the (1) texi2dvi and (2) texindex commands in texinfo 4.8
and earlier allows local users to execute arbitrary code via a crafted
Texinfo file.
Autoupdates 지원 : 지원
update 패키지
RPMS :
+ PHP5
. texinfo-4.7-5.i686.rpm
. info-4.7-5.i686.rpm
SRPMS :
. texinfo-4.7-5.src.rpm
참고 :
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3011
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4810
|