Launchpad has imported 5 comments from the remote bug at
https://bugzilla.redhat.com/show_bug.cgi?id=402871.

If you reply to an imported comment from within Launchpad, your comment
will be sent to the remote bug automatically. Read more about
Launchpad's inter-bugtracker facilities at
https://help.launchpad.net/InterBugTracking.

------------------------------------------------------------------------
On 2007-11-28T14:50:34+00:00 Tomas wrote:

Secunia advisory:

Chris Rohlf has reported a vulnerability in Ruby-GNOME2, which can potentially
be exploited by malicious people to compromise an application using the library.

The vulnerability is caused due to a format string error within the
"Gtk::MessageDialog.new()" method in gtk/src/rbgtkmessagedialog.c and can
potentially be exploited to execute arbitrary code when a specially crafted
string is passed to the affected function.

NOTE: Exploitation and impact of this vulnerability depend on how an application
uses the affected function of the vulnerable library.

The vulnerability is reported in version 0.16.0. Other versions may also be
affected.

References:
http://em386.blogspot.com/2007/11/your-favorite-better-than-c-scripting.html
http://secunia.com/advisories/27825/

Upstream SVN commit:
http://ruby-gnome2.svn.sourceforge.net/viewvc/ruby-gnome2?view=rev&revision=2720

Reply at: https://bugs.launchpad.net/ubuntu/+source/ruby-
gnome2/+bug/175827/comments/0

------------------------------------------------------------------------
On 2007-11-28T14:51:53+00:00 Tomas wrote:

Created attachment 271351
Reproducer extracted from Chris Rohlf's blog

Reply at: https://bugs.launchpad.net/ubuntu/+source/ruby-
gnome2/+bug/175827/comments/1

------------------------------------------------------------------------
On 2007-11-30T08:59:55+00:00 Tomas wrote:

CVE id CVE-2007-6183 was assigned to this issue.

Reply at: https://bugs.launchpad.net/ubuntu/+source/ruby-
gnome2/+bug/175827/comments/2

------------------------------------------------------------------------
On 2007-12-06T20:55:43+00:00 Fedora wrote:

ruby-gnome2-0.16.0-18.fc8 has been pushed to the Fedora 8 stable
repository.  If problems still persist, please make note of it in this
bug report.

Reply at: https://bugs.launchpad.net/ubuntu/+source/ruby-
gnome2/+bug/175827/comments/3

------------------------------------------------------------------------
On 2007-12-06T22:50:22+00:00 Fedora wrote:

ruby-gnome2-0.16.0-18.fc7 has been pushed to the Fedora 7 stable
repository.  If problems still persist, please make note of it in this
bug report.

Reply at: https://bugs.launchpad.net/ubuntu/+source/ruby-
gnome2/+bug/175827/comments/4


** Changed in: ruby-gnome2 (Fedora)
   Importance: Unknown => Medium

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/175827

Title:
  [ruby-gnome2] [CVE-2007-6183] improper input sanitizing / format
  string vulnerability

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ruby-gnome2/+bug/175827/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to