Wednesday, June 5, 2013

[USN-1863-1] libxrender vulnerability

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
Comment: Using GnuPG with undefined - http://www.enigmail.net/
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=Rvxj
-----END PGP SIGNATURE-----
==========================================================================
Ubuntu Security Notice USN-1863-1
June 05, 2013

libxrender vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 13.04
- Ubuntu 12.10
- Ubuntu 12.04 LTS
- Ubuntu 10.04 LTS

Summary:

Several security issues were fixed in libxrender.

Software Description:
- libxrender: X Rendering Extension client library

Details:

Ilja van Sprundel discovered multiple security issues in various X.org
libraries and components. An attacker could use these issues to cause
applications to crash, resulting in a denial of service, or possibly
execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 13.04:
libxrender1 1:0.9.7-1ubuntu0.13.04.1

Ubuntu 12.10:
libxrender1 1:0.9.7-1ubuntu0.12.10.1

Ubuntu 12.04 LTS:
libxrender1 1:0.9.6-2ubuntu0.1

Ubuntu 10.04 LTS:
libxrender1 1:0.9.5-1ubuntu0.1

After a standard system update you need to restart your session to make all
the necessary changes.

References:
http://www.ubuntu.com/usn/usn-1863-1
CVE-2013-1987

Package Information:
https://launchpad.net/ubuntu/+source/libxrender/1:0.9.7-1ubuntu0.13.04.1
https://launchpad.net/ubuntu/+source/libxrender/1:0.9.7-1ubuntu0.12.10.1
https://launchpad.net/ubuntu/+source/libxrender/1:0.9.6-2ubuntu0.1
https://launchpad.net/ubuntu/+source/libxrender/1:0.9.5-1ubuntu0.1

No comments:

Post a Comment