Summary: | x11-libs/cairo <1.4.12 Buffer overflow in read_png() (CVE-2007-5503) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Robert Buchholz (RETIRED) <rbu> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | cardoe, compnerd, estar, kristian |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://rhn.redhat.com/errata/RHSA-2007-1078.html | ||
Whiteboard: | B2 [glsa] | ||
Package list: | Runtime testing required: | --- |
Description
Robert Buchholz (RETIRED)
![]() Ebuild is in the tree Public per $URL. Arches, please test and mark stable x11-libs/cairo-1.4.12. Target keywords : "alpha amd64 arm hppa ia64 mips ppc ppc64 s390 sh sparc x86" I assume 1.5.2 is also affected? If so, there hopefully is a ported fix the development branch. x86 stable ppc64 stable Stable for HPPA. amd64 stable ppc stable (In reply to comment #3) > I assume 1.5.2 is also affected? If so, there hopefully is a ported fix the > development branch. The fixes from the two diffs are already in 1.5.2, except those relating to pixman. alpha/ia64/sparc stable *** Bug 201298 has been marked as a duplicate of this bug. *** glsa request filed true, for the 1.5 master the changes were introduced long time ago: http://gitweb.freedesktop.org/?p=cairo;a=commit;h=5c7d2d14d78e4dfb1ef6d2c40f0910f177e07360 GLSA 200712-04 Does not affect current (2008.0) release. Removing release. |