Summary: | <net-misc/tigervnc-1.3.1: "ZRLE_DECODE()" Two Buffer Overflow Vulnerabilities (CVE-2014-0011) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Agostino Sarubbo <ago> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | armin76, gentoo3 |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://secunia.com/advisories/57313/ | ||
Whiteboard: | B2 [glsa] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 500368 | ||
Bug Blocks: |
Description
Agostino Sarubbo
![]() =net-misc/tigervnc-1.2.80_p5065-r1 should be the one to stabilize Arches, please test and mark stable: =net-misc/tigervnc-1.2.80_p5065-r1 Target keywords : "alpha amd64 arm hppa ia64 ppc ppc64 sparc x86" amd64 stable x86 stable ppc stable Stable for HPPA. alpha stable ppc64 stable Arches please stabilize =net-misc/tigervnc-1.3.1 instead due to bug 505562. Thanks (In reply to Raúl Porcel from comment #9) > Arches please stabilize =net-misc/tigervnc-1.3.1 instead due to bug 505562. > > Thanks this is not reproducible here btw.. (In reply to Agostino Sarubbo from comment #10) > (In reply to Raúl Porcel from comment #9) > > Arches please stabilize =net-misc/tigervnc-1.3.1 instead due to bug 505562. > > > > Thanks > > this is not reproducible here btw.. Should happen if built with USE="server" Stable for HPPA. amd64 stable ppc stable alpha stable ppc64 stable ia64 stable sparc stable arm stable A GLSA has been drafted for this issue. This issue was resolved and addressed in GLSA 201411-03 at http://security.gentoo.org/glsa/glsa-201411-03.xml by GLSA coordinator Sean Amoss (ackle). |