[ubuntu/hardy-security] devil (delayed), devil 1.6.7-5.1ubuntu0.1 (Accepted)

Ubuntu Installer archive at ubuntu.com
Thu Jul 15 19:11:29 BST 2010


devil (1.6.7-5.1ubuntu0.1) hardy-security; urgency=low

  * SECURITY UPDATE: Fix buffer overflows (LP: #603689)
  - modified src-IL/src/il_hd .c: Fix buffer overflows in the iGetHdrHeader()
    function that allow arbitrary code execution via a crafted Radiance RGBE
    file.
    Patch provided by Debian in Etch. (DSA-1717-1, DTSA-184-1)
  - CVE-2008-5262

Date: Fri, 09 Jul 2010 13:32:14 -0400
Changed-By: Brian Thomason <brian.thomason at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/devil/1.6.7-5.1ubuntu0.1
-------------- next part --------------
Format: 1.7
Date: Fri, 09 Jul 2010 13:32:14 -0400
Source: devil
Binary: libdevil-dev libdevil1c2
Architecture: source
Version: 1.6.7-5.1ubuntu0.1
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Brian Thomason <brian.thomason at canonical.com>
Description: 
 libdevil-dev - Cross-platform image loading and manipulation toolkit
 libdevil1c2 - DevIL image manipulation toolkit runtime support
Launchpad-Bugs-Fixed: 603689
Changes: 
 devil (1.6.7-5.1ubuntu0.1) hardy-security; urgency=low
 .
   * SECURITY UPDATE: Fix buffer overflows (LP: #603689)
   - modified src-IL/src/il_hd .c: Fix buffer overflows in the iGetHdrHeader()
     function that allow arbitrary code execution via a crafted Radiance RGBE
     file.
     Patch provided by Debian in Etch. (DSA-1717-1, DTSA-184-1)
   - CVE-2008-5262
Files: 
 165c7c7df0df3ce7e022cefe742045f5 875 devel optional devil_1.6.7-5.1ubuntu0.1.dsc
 96edb97de3408d684c39aaa152587d01 11425 devel optional devil_1.6.7-5.1ubuntu0.1.diff.gz
Original-Maintainer: Marcelo E. Magallon <mmagallo at debian.org>


More information about the Hardy-changes mailing list