Oval Definition:oval:com.redhat.rhsa:def:20060280
Revision Date:2008-03-20Version:641
Title:RHSA-2006:0280: dia security update (Moderate)
Description:The Dia drawing program is designed to draw various types of diagrams.

  • infamous41md discovered three buffer overflow bugs in Dia's xfig file format importer. If an attacker is able to trick a Dia user into opening a carefully crafted xfig file, it may be possible to execute arbitrary code as the user running Dia. (CVE-2006-1550)

    Users of Dia should update to these erratum packages, which contain backported patches and are not vulnerable to these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2006-1550
    RHSA-2006:0280
    RHSA-2006:0280-01
    RHSA-2006:0280-01
    Platform(s):Red Hat Enterprise Linux 4
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND dia is earlier than 1:0.94-5.4
  • AND dia is signed with Red Hat redhatrelease2 key
  • BACK