Stack-based buffer overflow

Bug #190020 reported by Lionel Le Folgoc
262
Affects Status Importance Assigned to Milestone
Xfce4 Panel
Fix Released
Unknown
xfce4-panel (Gentoo Linux)
Invalid
Medium
xfce4-panel (Ubuntu)
Fix Released
Undecided
Unassigned
Dapper
Fix Released
High
Gauvain Pocentek
Edgy
Fix Released
Undecided
Unassigned
Feisty
Fix Released
High
Gauvain Pocentek
Gutsy
Fix Released
High
Emanuele Gentili
Hardy
Fix Released
Undecided
Unassigned

Bug Description

Binary package hint: xfce4-panel

Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via Launcher tooltips.

http://svn.xfce.org/index.cgi/xfce/revision?rev=25792

CVE References

Changed in xfce4-panel:
status: New → Fix Released
Changed in xfce4-panel:
status: Unknown → Fix Released
Revision history for this message
Gauvain Pocentek (gpocentek) wrote :

Attaching a patch for xfce 4.4.1 which will probably work for 4.4.0 too.
(I don't have time to prepare and test packages for SRUs).

Changed in xfce4-panel:
assignee: nobody → emgent
importance: Undecided → High
status: New → Confirmed
Changed in xfce4-panel:
status: Unknown → Invalid
Changed in xfce4-panel:
status: Confirmed → In Progress
Revision history for this message
Emanuele Gentili (emgent) wrote :

patch tested in gutsy and work fine.

Revision history for this message
Emanuele Gentili (emgent) wrote :

@Cody A.W. Somerville: if you can please test it you too.

Thanks

Emanuele

Revision history for this message
Gauvain Pocentek (gpocentek) wrote :

Rejecting the Edgy task, it's not supported any more.

Changed in xfce4-panel:
status: New → Won't Fix
Changed in xfce4-panel:
assignee: nobody → gauvainpocentek
importance: Undecided → High
status: New → In Progress
assignee: nobody → gauvainpocentek
importance: Undecided → High
status: New → In Progress
Revision history for this message
Gauvain Pocentek (gpocentek) wrote :
Revision history for this message
Gauvain Pocentek (gpocentek) wrote :
Revision history for this message
Lionel Le Folgoc (mrpouit) wrote :

These 3 debdiffs build fine, and the resulting packages builds/upgrades/removes/purges fine too. I'll test them tomorrow.

For the gutsy debdiff, the debian/patches/series shouldn't be needed as xfce.mk includes simple-patchsys.mk.

Revision history for this message
Gauvain Pocentek (gpocentek) wrote :
Revision history for this message
Gauvain Pocentek (gpocentek) wrote :

Packages tested on dapper, feisty and gutsy, no problem found.

Revision history for this message
Lionel Le Folgoc (mrpouit) wrote :

Tested too, no problem.

Revision history for this message
Emanuele Gentili (emgent) wrote :

Thanks

@Kees/Jamie: can you add it in your todolist for upload?

E.

Changed in xfce4-panel:
status: In Progress → Fix Released
status: Won't Fix → Fix Released
status: In Progress → Fix Released
status: In Progress → Fix Released
Changed in xfce4-panel (Gentoo Linux):
importance: Unknown → Medium
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.