gdi/driver.c and gdi/printdrv.c in Wine 20050930, and other versions, implement the SETABORTPROC GDI Escape function call for Windows Metafile (WMF) files, which allows attackers to execute arbitrary code, the same vulnerability as CVE-2005-4560 but in a different codebase.
Link | Tags |
---|---|
http://lists.immunitysec.com/pipermail/dailydave/2006-January/002806.html | mailing list |
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=346197 | patch |
http://www.vupen.com/english/advisories/2006/0098 | vdb entry |
http://secunia.com/advisories/18578 | third party advisory |
http://secunia.com/advisories/18549 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/23846 | vdb entry |
http://www.securityfocus.com/archive/1/422128/100/0/threaded | mailing list |
http://www.mandriva.com/security/advisories?name=MDKSA-2006:014 | vendor advisory |
http://www.novell.com/linux/security/advisories/2006_02_sr.html | vendor advisory |
http://www.debian.org/security/2006/dsa-954 | vendor advisory |
http://secunia.com/advisories/18451 | third party advisory |
http://secunia.com/advisories/18323 | third party advisory patch vendor advisory |
http://www.gentoo.org/security/en/glsa/glsa-200601-09.xml | vendor advisory |