Bug 109993 - media-gfx/inkscape security updates available
Bug#: 109993 Product:  Gentoo Security Version: unspecified Platform: All
OS/Version: Linux Status: RESOLVED Severity: normal Priority: P2
Resolution: FIXED Assigned To: security@gentoo.org Reported By: neil@darlow.co.uk
Component: Vulnerabilities
URL:  http://www.inkscape.org/
Summary: media-gfx/inkscape security updates available
Keywords:  
Status Whiteboard: B2 [glsa] jaervosz
Opened: 2005-10-20 23:36 0000
Description:   Opened: 2005-10-20 23:36 0000
To quote the Inkscape site announcement:

October 9, 2005

Mentalguy has released new point releases of the past two versions of Inkscape
to correct two issues with arbitrary code execution when opening malicious
files. There are no known exploits for this issue, but if you use Inkscape on a
production machine in a manner that invokes files from arbitrary sources, you
may wish to upgrade.


Reproducible: Always
Steps to Reproduce:
1.
2.
3.

------- Comment #1 From Jakub Moc (RETIRED) 2005-11-19 14:59:36 0000 -------
Security, any word on this?

------- Comment #2 From Sune Kloppenborg Jeppesen 2005-11-20 00:01:48 0000 -------
Graphics please provide an updated ebuild. 

------- Comment #3 From Karol Wojtaszek (RETIRED) 2005-11-22 07:19:46 0000 -------
Bumped in portage

------- Comment #4 From Sune Kloppenborg Jeppesen 2005-11-22 09:03:28 0000 -------
Arches please test and mark stable. 

------- Comment #5 From Markus Rothe 2005-11-22 10:31:54 0000 -------
stable on ppc64 

------- Comment #6 From Simon Stelling (RETIRED) 2005-11-22 11:20:11 0000 -------
amd64 keywording happy hour: get two keywords for the price of one!

------- Comment #7 From Chris White (RETIRED) 2005-11-22 12:19:39 0000 -------
x86 stable.  This program is addictive. 

------- Comment #8 From Gustavo Zacarias (RETIRED) 2005-11-22 12:31:57 0000 -------
sparc stable.

------- Comment #9 From Joe Jezak 2005-11-27 11:53:49 0000 -------
Marked ppc stable.

------- Comment #10 From Thierry Carrez (RETIRED) 2005-11-28 02:20:30 0000 -------
Thx everyone
GLSA 200511-22