Package: mlterm
Version: 2.8.0.cvs20040403-2
Severity: grave
Tags: security
Justification: user security hole

According to Secunia the version of mlterm which is currently in testing
and unstable has a serious buffer overflow. See
http://secunia.com/advisories/14509/ for details.

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (990, 'testing'), (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i586)
Kernel: Linux 2.6.10-1-386
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968) (ignored: LC_ALL set to C)

Versions of packages mlterm depends on:
ii  libc6                2.3.2.ds1-20        GNU C Library: Shared libraries an
ii  libfontconfig1       2.2.3-4             generic font configuration library
ii  libfreetype6         2.1.7-2.3           FreeType 2 font engine, shared lib
ii  libfribidi0          0.10.4-6            Free Implementation of the Unicode
ii  libglib2.0-0         2.6.2-1             The GLib library of C routines
ii  libgtk2.0-0          2.6.2-3             The GTK+ graphical user interface 
ii  libice6              4.3.0.dfsg.1-10     Inter-Client Exchange library
ii  libsm6               4.3.0.dfsg.1-10     X Window System Session Management
ii  libx11-6             4.3.0.dfsg.1-10     X Window System protocol client li
ii  libxft2              2.1.2-6             FreeType-based font drawing librar
ii  libxrender1          0.8.3-7             X Rendering Extension client libra
ii  mlterm-common        2.8.0.cvs20040403-2 MultiLingual TERMinal, common file
ii  xlibs                4.3.0.dfsg.1-10     X Keyboard Extension (XKB) configu
ii  zlib1g               1:1.2.2-3           compression library - runtime

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to