Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Gentoo Security Advisory GLSA 200711-34 (cstetex)

Information

Severity

Severity

Critical

Family

Family

Gentoo Local Security Checks

CVSSv2 Base

CVSSv2 Base

9.3

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

15 years ago

Modified

Modified

6 years ago

Summary

The remote host is missing updates announced in advisory GLSA 200711-34.

Insight

Insight

Multiple vulnerabilities were discovered in CSTeX, possibly allowing to execute arbitrary code or overwrite arbitrary files.

Solution

Solution

CSTeX is not maintained upstream, so the package was masked in Portage. We recommend that users unmerge CSTeX: # emerge --unmerge app-text/cstetex As an alternative, users should upgrade their systems to use teTeX or TeX Live with its Babel packages. http://www.securityspace.com/smysecure/catid.html?in=GLSA%20200711-34 http://bugs.gentoo.org/show_bug.cgi?id=196673 http://www.gentoo.org/security/en/glsa/glsa-200708-05.xml http://www.gentoo.org/security/en/glsa/glsa-200709-12.xml http://www.gentoo.org/security/en/glsa/glsa-200709-17.xml http://www.gentoo.org/security/en/glsa/glsa-200710-12.xml http://www.gentoo.org/security/en/glsa/glsa-200711-22.xml http://www.gentoo.org/security/en/glsa/glsa-200711-26.xml