SuSE 10 Security Update : kdegraphics3 (ZYPP Patch Number 2301)

high Nessus Plugin ID 29478

Synopsis

The remote SuSE 10 host is missing a security-related patch.

Description

The KFILE JPEG plugin that is responsible for displaying meta-data of JPEG files was affected by some old common vulnerabilities in EXIF handling.

A JPEG file could be prepapred with an EXIF section with endless recursion that would overflow the stack and cause the plugin and so the image browser (konqueror, digikam or other kfile users) to crash.

Solution

Apply ZYPP patch number 2301.

Plugin Details

Severity: High

ID: 29478

File Name: suse_kdegraphics3-2301.nasl

Version: 1.13

Type: local

Agent: unix

Published: 12/13/2007

Updated: 1/14/2021

Supported Sensors: Nessus Agent, Nessus

Vulnerability Information

CPE: cpe:/o:suse:suse_linux

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 11/22/2006