Bug#339431: CVE-2005-3186: Integer overflow in gdk-pixbuf's XPM code

Loic Minier lool at dooz.org
Sun Nov 20 21:09:18 UTC 2005


tags 339431 + pending patch
thanks

        Hi,

 Sorry for the delay.  You can grab the proposed fixes in:
    <http://people.dooz.org/~lool/debian/gtk-gdk-cves.tgz> (87M)
     MD5: 56148df50af6e28beaca57e4fa3bf6cc

 I found the vulnerability matrix by Moritz Muehlenhoff useful:
               Woody gtk2   Woody gdk-pixbuf   Sarge gtk2   Sarge gdk-pixbuf
CVE-2005-2975    1170         284                1170         284
CVE-2005-2976    1317         413                ----         413
CVE-2005-3186    1255         359                1256         359

Fixed-in:  2.0.2-5woody2.1  0.17.0-2woody2.1   2.6.4-3.1    0.22.0-8.1

 Let me know if you have issues with this.

   Cheers,
-- 
Loïc Minier <lool at dooz.org>





More information about the Pkg-gnome-maintainers mailing list