AOH :: Linux :: General :: A6156.HTM

Eye of GNOME (EOG) arbitrary code execution

16th Apr 2003 [SBWID-6156]
COMMAND

	Eye of GNOME (EOG) arbitrary code execution

SYSTEMS AFFECTED

	version 2.2.0 and earlier

PROBLEM

	In Mandrake Linux Security Advisory:
	
	A vulnerability was discovered  in  the  Eye  of  GNOME  (EOG)  program,
	version 2.2.0 and earlier, that  is  used  for  displaying  graphics.  A
	carefully crafted filename passed to eog could lead to the execution  of
	arbitrary code as the user executing eog.

SOLUTION

	upgrade

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2009 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.