Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 78619

Summary: kde-base/kdegraphics includes vulnerable xpdf again
Product: Gentoo Security Reporter: Sune Kloppenborg Jeppesen (RETIRED) <jaervosz>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: major CC: kde
Priority: High    
Version: unspecified   
Hardware: All   
OS: All   
URL: http://www.kde.org/info/security/advisory-20050119-1.txt
Whiteboard: A2 [glsa] jaervosz
Package list:
Runtime testing required: ---

Description Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-18 22:19:30 UTC
kpdf includes xpdf code and therefore might be vulnerable CAN-2005-0064.
Please see bug 77888 for details.
Comment 1 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-19 00:53:58 UTC
KDE team, please bump kdegraphics. Upstream patch is available on bug #77888.
Comment 2 Carsten Lohrke (RETIRED) gentoo-dev 2005-01-19 04:43:03 UTC
<<< kdegraphics-3.2.3-r4.ebuild
<<< kdegraphics-3.3.2-r2.ebuild

herds, please mark stable - would be nice to have it in 2005.0
Comment 3 Lars Weiler (RETIRED) gentoo-dev 2005-01-21 10:16:37 UTC
ppc stable.
Comment 4 Bryan Østergaard (RETIRED) gentoo-dev 2005-01-21 10:21:03 UTC
Alpha stable.
Comment 5 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-21 11:27:22 UTC
amd64, sparc please mark stable for 2005.0 if possible.
Comment 6 Gustavo Zacarias (RETIRED) gentoo-dev 2005-01-21 12:26:30 UTC
sparc stable.
Comment 7 Marcus D. Hanwell (RETIRED) gentoo-dev 2005-01-21 12:33:43 UTC
Stable on amd64.
Comment 8 Thierry Carrez (RETIRED) gentoo-dev 2005-01-22 04:20:16 UTC
Hmm don't we also need kdegraphics-3.2.3-r4 stable on amd64 and alpha ?
Comment 9 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-22 04:30:23 UTC
amd64 and alpha please mark both versions stable see comment #8.
Comment 10 Bryan Østergaard (RETIRED) gentoo-dev 2005-01-22 04:35:50 UTC
3.2.3-r4 stabled on alpha.
Comment 11 Danny van Dyk (RETIRED) gentoo-dev 2005-01-22 15:47:09 UTC
finally [;-)] stable on amd64. Sorry guys.
Comment 12 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-22 23:54:17 UTC
Thx Danny.
Comment 13 Guy Martin (RETIRED) gentoo-dev 2005-01-23 05:16:33 UTC
Stable on hppa.
Comment 14 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2005-01-23 06:07:34 UTC
GLSA 200501-32

ia64 and ppc64 please remember to mark stable to benifit from the GLSA.
Comment 15 Markus Rothe (RETIRED) gentoo-dev 2005-01-23 12:21:26 UTC
stable on ppc64