SciLinux: CVE-2005-3183 SL4 w3c-libwww i386/x86_64
Summary
Date: Wed, 9 May 2007 15:15:09 -0500Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for SL4 w3c-libwww i386/x86_64Comments: To: scientific Synopsis: Low: w3c-libwww security and bug fix updateIssue date: 2007-05-01CVE Names: CVE-2005-3183Several buffer overflow flaws in w3c-libwww were found. If a clientapplication that uses w3c-libwww connected to a malicious HTTP server, itcould trigger an out of bounds memory access, causing the clientapplication to crash (CVE-2005-3183).SRPMS: w3c-libwww-5.4.0-10.1.RHEL4.2.src.rpmi386: w3c-libwww-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-apps-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-devel-5.4.0-10.1.RHEL4.2.i386.rpmx86_64: w3c-libwww-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-5.4.0-10.1.RHEL4.2.x86_64.rpm w3c-libwww-apps-5.4.0-10.1.RHEL4.2.x86_64.rpm w3c-libwww-devel-5.4.0-10.1.RHEL4.2.x86_64.rpm-Connie Sieh-Troy Dawson