Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 74474 - media-gfx/[x?]zgv multiple-image segfault (CAN-2004-0999)
Summary: media-gfx/[x?]zgv multiple-image segfault (CAN-2004-0999)
Status: RESOLVED INVALID
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All All
: High normal
Assignee: Gentoo Security
URL: http://www.debian.org/security/2004/d...
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2004-12-15 05:01 UTC by Thierry Carrez (RETIRED)
Modified: 2004-12-16 06:24 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Thierry Carrez (RETIRED) gentoo-dev 2004-12-15 05:01:29 UTC
From DSA 608-1 :

CAN-2004-0999
    Mikulas Patocka discovered that malicious multiple-image (e.g.
    animated) GIF images can cause a segmentation fault in zgv.

I don't think we patched this one... but I'm not sure it's really exploitable. DoS ? DoS what ?
Comment 1 Thierry Carrez (RETIRED) gentoo-dev 2004-12-15 05:07:54 UTC
This might impact xzgv as well.
Comment 2 Luke Macken (RETIRED) gentoo-dev 2004-12-16 06:21:49 UTC
The patches look the same to me.

I think this issue is taken care of.
Comment 3 Luke Macken (RETIRED) gentoo-dev 2004-12-16 06:24:12 UTC
Closing.  This issue was taken care of in the original upstrem patch.