qt-4.6.2-26.AXS4
エラータID: AXSA:2013-282:01
リリース日:
2013/03/29 Friday - 12:38
題名:
qt-4.6.2-26.AXS4
影響のあるチャネル:
Asianux Server 4 for x86_64
Asianux Server 4 for x86
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- Qt の QSharedMemory クラスが共有メモリセグメントに誰にでも読み書き可能な権限を使用しており,X サーバに送信される pixmap を読み込むことで,ローカルのユーザが機密情報を読み込んだり,重要なプログラムデータを変更する脆弱性があります。(CVE-2013-0254)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2013-0254
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.
The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable and world-writable) for shared memory segments, which allows local users to read sensitive information or modify critical program data, as demonstrated by reading a pixmap being sent to an X server.
追加情報:
N/A
ダウンロード:
SRPMS
- qt-4.6.2-26.AXS4.src.rpm
MD5: 70e1ca0871dba47050a02b6088242957
SHA-256: aea47b533d0874e88bc68ac998f4926ddc69e9cfdc6b8de7948252fc2c5da5c4
Size: 152.85 MB
Asianux Server 4 for x86
- phonon-backend-gstreamer-4.6.2-26.AXS4.i686.rpm
MD5: de8c9847c453df767ca8b81be05071b5
SHA-256: 6d062c5097560579468f73e9d394c433949f26ae5b071600617c0f52fbe83601
Size: 125.57 kB - qt-4.6.2-26.AXS4.i686.rpm
MD5: f48a67c509e28cd0c8de48ab8929950c
SHA-256: 7f4feaf49078d939c1e2976baf1d8fadb955e770f0cdcf594c69d8fb02afa947
Size: 4.03 MB - qt-devel-4.6.2-26.AXS4.i686.rpm
MD5: a1c81dc28d4876383d02bca0eba8c04c
SHA-256: 6517827f3145f13f835688e83dcc718b6798861bb9c38a4de916ba9e93d9c494
Size: 9.87 MB - qt-doc-4.6.2-26.AXS4.noarch.rpm
MD5: 2dec78443d1db1f726d6d832154991bb
SHA-256: 35394f1d878aec7df049f41ab5ef3d145baf3283135d540255315b14f73c1f18
Size: 92.17 MB - qt-mysql-4.6.2-26.AXS4.i686.rpm
MD5: 5264565496500ebc3d9877ea22e825e3
SHA-256: 4bbb0222855baade128ff02ab5ccd0b4b5a325d9174707295f194cffcd2223d0
Size: 57.69 kB - qt-odbc-4.6.2-26.AXS4.i686.rpm
MD5: b78e6b84f7562bac85130d3dde63c5a8
SHA-256: b922ef0513a7eead2d0f0cf62d090616861604ac1f1bd62d2e86b0b0040a1ffa
Size: 73.16 kB - qt-postgresql-4.6.2-26.AXS4.i686.rpm
MD5: 5d856131cc8d713b3404f605536bdf59
SHA-256: 970cf0e5a22047393384b20a8baea036952e4ceae1c83f37ea6487feb0cdaa3b
Size: 60.38 kB - qt-sqlite-4.6.2-26.AXS4.i686.rpm
MD5: 3532123275af5181a2260c1df1d5c640
SHA-256: b37ead19b4630f2f951d2a96314d7b904159c2a4cef824eab47d9348095d8abb
Size: 50.58 kB - qt-x11-4.6.2-26.AXS4.i686.rpm
MD5: f647646b2ce7388d698d6e1b0cb1a313
SHA-256: 803bb602f1e4accca91f326e54832178e95b9ec53f20a0ddcfd240fdb6243259
Size: 12.27 MB
Asianux Server 4 for x86_64
- phonon-backend-gstreamer-4.6.2-26.AXS4.x86_64.rpm
MD5: c868d90b673c7d15ab18bbb49c247032
SHA-256: 1eada3292ef4bcb54a904f73550bd5c2147b3e8314544eb22c3b5cf73bc0ff1d
Size: 125.52 kB - qt-4.6.2-26.AXS4.x86_64.rpm
MD5: b74dc8eea16957d51f66a407f84bebaf
SHA-256: 024327cc204c8a17051ce5deaebab672b770bccce55da0dd5d112ef64bcec92a
Size: 3.95 MB - qt-devel-4.6.2-26.AXS4.x86_64.rpm
MD5: 79822713d80ebb3f09c40d55ece50d25
SHA-256: 8529fc1e7b64f6a8dc7549e2f942265d6d03cbe5a66f302af6b399c788dd81cc
Size: 9.84 MB - qt-doc-4.6.2-26.AXS4.noarch.rpm
MD5: da8f5c9f9889e03e15e255348f3d23e5
SHA-256: 6064e7a4e1543fb4c8bfd0e4401a832d2c47015ddcedf7604670c31766d6809f
Size: 92.16 MB - qt-mysql-4.6.2-26.AXS4.x86_64.rpm
MD5: d17e0f9916852f58bccc53a9cbd4782c
SHA-256: 27024b2c963dd5f0ca272a0eb5cac3da1440a3f5365af3fd14b8395f463ccff1
Size: 57.59 kB - qt-odbc-4.6.2-26.AXS4.x86_64.rpm
MD5: 3222b436cdd4ff8a73e413f40340d780
SHA-256: bbfe8ff4ef9368e4ffe9d5fe807c084845fe60bcb5c8d4cf22f6b0d549524e13
Size: 72.07 kB - qt-postgresql-4.6.2-26.AXS4.x86_64.rpm
MD5: 0637789a173a588e82c89480e85cd967
SHA-256: 27d41be7d74324120abd934ce58793983ed367b278721f1d57abe22f7faeca08
Size: 59.87 kB - qt-sqlite-4.6.2-26.AXS4.x86_64.rpm
MD5: 94ceb2019567e6d1e6aaee77676e859c
SHA-256: ac19e7cad8b31a169071e0fa0585e53e198e7e506b802a19b095580c0658682c
Size: 50.06 kB - qt-x11-4.6.2-26.AXS4.x86_64.rpm
MD5: c3c362a5dfcf90181fe14c95d923200a
SHA-256: d3afa2c13d38d4ad26c46f47bb5879b49f9cb190689b14fd12c5395435bf1423
Size: 12.12 MB - phonon-backend-gstreamer-4.6.2-26.AXS4.i686.rpm
MD5: de8c9847c453df767ca8b81be05071b5
SHA-256: 6d062c5097560579468f73e9d394c433949f26ae5b071600617c0f52fbe83601
Size: 125.57 kB - qt-4.6.2-26.AXS4.i686.rpm
MD5: f48a67c509e28cd0c8de48ab8929950c
SHA-256: 7f4feaf49078d939c1e2976baf1d8fadb955e770f0cdcf594c69d8fb02afa947
Size: 4.03 MB - qt-devel-4.6.2-26.AXS4.i686.rpm
MD5: a1c81dc28d4876383d02bca0eba8c04c
SHA-256: 6517827f3145f13f835688e83dcc718b6798861bb9c38a4de916ba9e93d9c494
Size: 9.87 MB - qt-mysql-4.6.2-26.AXS4.i686.rpm
MD5: 5264565496500ebc3d9877ea22e825e3
SHA-256: 4bbb0222855baade128ff02ab5ccd0b4b5a325d9174707295f194cffcd2223d0
Size: 57.69 kB - qt-odbc-4.6.2-26.AXS4.i686.rpm
MD5: b78e6b84f7562bac85130d3dde63c5a8
SHA-256: b922ef0513a7eead2d0f0cf62d090616861604ac1f1bd62d2e86b0b0040a1ffa
Size: 73.16 kB - qt-postgresql-4.6.2-26.AXS4.i686.rpm
MD5: 5d856131cc8d713b3404f605536bdf59
SHA-256: 970cf0e5a22047393384b20a8baea036952e4ceae1c83f37ea6487feb0cdaa3b
Size: 60.38 kB - qt-sqlite-4.6.2-26.AXS4.i686.rpm
MD5: 3532123275af5181a2260c1df1d5c640
SHA-256: b37ead19b4630f2f951d2a96314d7b904159c2a4cef824eab47d9348095d8abb
Size: 50.58 kB - qt-x11-4.6.2-26.AXS4.i686.rpm
MD5: f647646b2ce7388d698d6e1b0cb1a313
SHA-256: 803bb602f1e4accca91f326e54832178e95b9ec53f20a0ddcfd240fdb6243259
Size: 12.27 MB