SciLinux: CVE-2007-4924 opal SL5.x i386/x86_64
Summary
Date: Mon, 8 Oct 2007 15:23:22 -0500Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for opal on SL5.x i386/x86_64Comments: To: scientific-linux-errata@fnal.govSynopsis: Moderate: opal security updateIssue date: 2007-10-08CVE Names: CVE-2007-4924In Scientific Linux 5, the Ekiga application uses opal.A flaw was discovered in the way opal handled certain Session InitiationProtocol (SIP) packets. An attacker could use this flaw to crash anapplication, such as Ekiga, which is linked with opal. (CVE-2007-4924)SL 5.x SRPMS:opal-2.2.2-1.1.0.1.src.rpm i386:opal-2.2.2-1.1.0.1.i386.rpmopal-devel-2.2.2-1.1.0.1.i386.rpm x86_64:opal-2.2.2-1.1.0.1.x86_64.rpmopal-devel-2.2.2-1.1.0.1.x86_64.rpm-Connie Sieh-Troy Dawson