Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 279559 (CVE-2009-094) - <=kde-base/ksvg-3.5.10 Array indexing vulnerability (CVE-2009-0945)
Summary: <=kde-base/ksvg-3.5.10 Array indexing vulnerability (CVE-2009-0945)
Alias: CVE-2009-094
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High normal (vote)
Assignee: Gentoo Security
Whiteboard: B2 [ebuild]
Depends on:
Blocks: CVE-2009-0945
  Show dependency tree
Reported: 2009-07-29 08:03 UTC by Robert Förster
Modified: 2013-09-03 12:29 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---

patch from upstream svn (ksvg-3.5.10-CVE-2009-0945.patch,416 bytes, patch)
2009-07-29 08:08 UTC, Robert Förster
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Robert Förster 2009-07-29 08:03:48 UTC
CVE-2009-0945 (
  Array index error in the insertItemBefore method in WebKit, as used in Apple
  Safari before 3.2.3 and 4 Public Beta, iPhone OS 1.0 through 2.2.1, iPhone OS
  for iPod touch 1.1 through 2.2.1, Google Chrome Stable before, and
  possibly other products allows remote attackers to execute arbitrary code via a
  document with a SVGPathList data structure containing a negative index in the
  (1) SVGTransformList, (2) SVGStringList, (3) SVGNumberList, (4) SVGPathSegList,
  (5) SVGPointList, or (6) SVGLengthList SVGList object, which triggers memory
Comment 1 Robert Förster 2009-07-29 08:08:03 UTC
Created attachment 199515 [details, diff]
patch from upstream svn

due to my (rather unintended) merge of two CVEs in bug 274566, kdelibs-4* is not affected anymore
Comment 2 Tomáš Chvátal (RETIRED) gentoo-dev 2009-11-23 00:41:33 UTC
Guys there is no ksvg anymore, Your call what to do with the report.
Comment 3 Chris Reffett (RETIRED) gentoo-dev Security 2013-09-03 12:29:52 UTC
KDE 3.5 long gone.