Oval Definition:oval:org.mitre.oval:def:1786
Revision Date:2011-05-09Version:19
Title:XPM Image Decoder Malicious Color String Vulnerability
Description:Stack-based buffer overflow in xpm_extract_color (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, may allow remote attackers to execute arbitrary code via a certain color string. NOTE: this identifier is ONLY for gtk+. It was incorrectly referenced in an advisory for a different issue (CVE-2004-0688).
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0783
Platform(s):Sun Solaris 8
Sun Solaris 9
Product(s):
Definition Synopsis
  • GNOME 2.0 Solaris 8 (SPARC) meets Sun Alert ID 101776 criteria.
  • Solaris 8 Installed
  • AND Installed architecture is sparc
  • AND Gnome 2.0.0 is installed
  • AND NOT Patch 114644-03 or later installed
  • OR GNOME 2.0 Solaris 8 (x86) meets Sun Alert ID 101776 criteria.
  • Solaris 8 Installed
  • AND ix86 architecture
  • AND Gnome 2.0.0 is installed
  • AND NOT Patch 114645-03 or later installed
  • OR GNOME 2.0 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.
  • Solaris 9 Installed
  • AND Installed architecture is sparc
  • AND Gnome 2.0.0 is installed
  • AND NOT Patch 114686-03 or later installed
  • OR GNOME 2.0.2 Solaris 9 (SPARC) meets Sun Alert ID 101776 criteria.
  • Solaris 9 Installed
  • AND Installed architecture is sparc
  • AND Gnome 2.0.2 is installed
  • AND NOT Patch 115738-04 or later installed
  • OR GNOME 2.0 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.
  • Solaris 9 Installed
  • AND ix86 architecture
  • AND Gnome 2.0.0 is installed
  • AND NOT Patch 114687-03 or later installed
  • OR GNOME 2.0.2 Solaris 9 (x86) meets Sun Alert ID 101776 criteria.
  • Solaris 9 Installed
  • AND ix86 architecture
  • AND Gnome 2.0.2 is installed
  • AND NOT Patch 115739-04 or later installed
  • OR Solaris 9 (x86) with JDS release 2 meets Sun Alert ID 101776 criteria.
  • Solaris 9 Installed
  • AND ix86 architecture
  • AND JDS release 2 is installed
  • AND NOT Patch 121092-01 or later installed
  • BACK