USN-212-1: libgda2 vulnerability

Ubuntu Security Notice USN-212-1

28th October, 2005

libgda2 vulnerability

A security issue affects these releases of Ubuntu and its derivatives:

  • Ubuntu 5.10
  • Ubuntu 5.04
  • Ubuntu 4.10

Details

Steve Kemp discovered two format string vulnerabilities in the logging
handler of the Gnome database access library. Depending on the
application that uses the library, this could have been exploited to
execute arbitrary code with the permission of the user running the
application.

Update instructions

The problem can be corrected by updating your system to the following package version:

Ubuntu 5.10:
libgda2-3
libgda2-1
Ubuntu 5.04:
libgda2-3
libgda2-1
Ubuntu 4.10:
libgda2-3
libgda2-1

To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.

None

References

CVE-2005-2958