First published: Wed Apr 28 2010(Updated: )
An integer overflow was found in the way TeX text formatting system processed special commands. If a user was tricked into processing a specially-crafted typesetter-independent .dvi (DeVice Independent) file, it could lead to dvips executable crash or, potentially, to arbitrary code execution with the privileges of the user running dvips. Different vulnerability than <a href="https://access.redhat.com/security/cve/CVE-2010-0739">CVE-2010-0739</a>.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tug Tex Live | =2007 | |
Tug Tetex | ||
Tug Tex Live | =2008 | |
Tug Tex Live | =2004 | |
Tug Tex Live | <=2009 | |
Tug Tex Live | =2002 | |
Tug Tex Live | =1996 | |
Tug Tex Live | =2001 | |
Tug Tex Live | =1999 | |
Tug Tex Live | =2005 | |
Tug Tex Live | =1998 | |
Tug Tex Live | =2000 | |
Tug Tex Live | =2003 | |
redhat/tetex | <0:3.0-33.8.el5_5.5 | 0:3.0-33.8.el5_5.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)