Bug 109157 - app-office/abiword Additional RTF importer vulnerabilities
Bug#: 109157 Product:  Gentoo Security Version: unspecified Platform: All
OS/Version: Linux Status: RESOLVED Severity: normal Priority: P2
Resolution: FIXED Assigned To: security@gentoo.org Reported By: koon@gentoo.org
Component: Vulnerabilities
URL: 
Summary: app-office/abiword Additional RTF importer vulnerabilities
Keywords:  
Status Whiteboard: B2 [glsa]
Opened: 2005-10-13 09:05 0000
Description:   Opened: 2005-10-13 09:05 0000
AbiWord 2.2.11 and 2.4.1 fix additional buffer overflows in the RTF Import
function.

------- Comment #1 From Thierry Carrez (RETIRED) 2005-10-13 09:06:23 0000 -------
Gnome team, please bump to 2.2.11 and 2.4.1.

------- Comment #2 From Thierry Carrez (RETIRED) 2005-10-13 09:06:39 0000 -------
*** Bug 107966 has been marked as a duplicate of this bug. ***

------- Comment #3 From Sune Kloppenborg Jeppesen 2005-10-13 22:31:07 0000 -------
Gnome please provide an updated ebuild. 

------- Comment #4 From Thierry Carrez (RETIRED) 2005-10-18 05:30:38 0000 -------
AllanonJL should have a look at it later today.

------- Comment #5 From John N. Laliberte (RETIRED) 2005-10-18 08:18:01 0000 -------
committed abiword-2.2.11.ebuild

tested on stable x86 box ( and marked stable on x86 ).

------- Comment #6 From Thierry Carrez (RETIRED) 2005-10-18 08:20:18 0000 -------
Arch testers, please test and mark 2.2.11 stable
target KEYWORDS="alpha amd64 hppa ia64 ppc ppc64 sparc x86"

------- Comment #7 From Ferris McCormick 2005-10-18 09:56:14 0000 -------
Stable on sparc.

------- Comment #8 From Michael Hanselmann (hansmi) (RETIRED) 2005-10-18 09:59:34 0000 -------
Stable on ppc and hppa.

------- Comment #9 From Brent Baude 2005-10-18 19:49:12 0000 -------
Marked ppc64 stable.  Thanks

------- Comment #10 From AJ Armstrong 2005-10-18 19:58:15 0000 -------
Stable on amd64

------- Comment #11 From Daniel Gryniewicz 2005-10-18 20:02:14 0000 -------
amd64 done.

------- Comment #12 From Fernando J. Pereda (RETIRED) 2005-10-19 08:49:36 0000 -------
Alpha done

Cheers,
Ferdy

------- Comment #13 From Sune Kloppenborg Jeppesen 2005-10-19 10:50:38 0000 -------
This one is ready for GLSA. 

------- Comment #14 From Thierry Carrez (RETIRED) 2005-10-20 04:37:53 0000 -------
GLSA 200510-17
ia64 should mark stable to benefit from GLSA.