<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>74406</bug_id>
          
          <creation_ts>2004-12-14 10:25 0000</creation_ts>
          <short_desc>app-text/acroread mailListIsPdf() Buffer Overflow Vulnerability</short_desc>
          <delta_ts>2004-12-16 15:51:21 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Security</product>
          <component>Vulnerabilities</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>All</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          <bug_file_loc>http://www.idefense.com/application/poi/display?id=161&amp;type=vulnerabilities</bug_file_loc>
          <status_whiteboard>B2 [glsa] jaervosz</status_whiteboard>
          
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>jaervosz@gentoo.org</reporter>
          <assigned_to>security@gentoo.org</assigned_to>
          <cc>aarni.honka@gmail.com</cc>
    
    <cc>carlo@gentoo.org</cc>
    
    <cc>printing@gentoo.org</cc>

      

      
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2004-12-14 10:25:06 0000</bug_when>
            <thetext>Buffer overflow in mailListIsPDF().

Official note here:

http://www.adobe.com/support/techdocs/331153.html</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>carlo@gentoo.org</who>
            <bug_when>2004-12-14 10:26:41 0000</bug_when>
            <thetext>*** Bug 74408 has been marked as a duplicate of this bug. ***</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2004-12-14 10:28:34 0000</bug_when>
            <thetext>Printing please bump to 5.0.10</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2004-12-15 04:12:21 0000</bug_when>
            <thetext>*** Bug 74467 has been marked as a duplicate of this bug. ***</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>lanius@gentoo.org</who>
            <bug_when>2004-12-15 07:02:53 0000</bug_when>
            <thetext>bumped to 5.010 and marked stable on x86</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2004-12-15 07:21:11 0000</bug_when>
            <thetext>Thx Heinrich,
Did 5.0.9 have other keywords?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2004-12-15 07:43:54 0000</bug_when>
            <thetext>Ok, lewk reports that stable marking is the same as before.

Heinrich please note that when you remove all old ebuilds.

This one is ready for GLSA.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>carlo@gentoo.org</who>
            <bug_when>2004-12-15 13:13:38 0000</bug_when>
            <thetext>its not ready: app-text/acroread-5.010  &lt;  app-text/acroread-5.09 </thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2004-12-15 14:08:04 0000</bug_when>
            <thetext>Thx Carsten, back to ebuild status.

Printing please fix.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>lanius@gentoo.org</who>
            <bug_when>2004-12-15 14:50:10 0000</bug_when>
            <thetext>really? well 5.0.10 is also smaller,any suggestions?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2004-12-16 01:29:48 0000</bug_when>
            <thetext>suggestion : 5.10 ?

I know it&apos;s borked, but Adobe won&apos;t release a 5.1.0 since Acrobat6 is out there, so it would work...</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>lanius@gentoo.org</who>
            <bug_when>2004-12-16 04:48:08 0000</bug_when>
            <thetext>ok, done</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>koon@gentoo.org</who>
            <bug_when>2004-12-16 07:15:19 0000</bug_when>
            <thetext>Ready for GLSA, I would say</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>lewk@gentoo.org</who>
            <bug_when>2004-12-16 15:51:21 0000</bug_when>
            <thetext>GLSA 200412-12</thetext>
          </long_desc>
      
    </bug>

</bugzilla>