[ubuntu/hardy-security] gimp_2.4.5-1ubuntu2.3_lpia_translations.tar.gz, gimp_2.4.5-1ubuntu2.3_ia64_translations.tar.gz, gimp_2.4.5-1ubuntu2.3_sparc_translations.tar.gz (delayed), gimp_2.4.5-1ubuntu2.3_amd64_translations.tar.gz, gimp_2.4.5-1ubuntu2.3_powerpc_translations.tar.gz, gimp_2.4.5-1ubuntu2.3_hppa_translations.tar.gz, gimp_2.4.5-1ubuntu2.3_i386_translations.tar.gz, gimp 2.4.5-1ubuntu2.3 (Accepted)

Ubuntu Installer archive at ubuntu.com
Wed Apr 13 13:14:12 UTC 2011


gimp (2.4.5-1ubuntu2.3) hardy-security; urgency=low

  * SECURITY UPDATE: denial of service and possible code execution via
    malformed plugin configuration files
    - debian/patches/05_security_CVE-2010-454x.patch: fix format strings in
      plug-ins/{common/sphere-designer,gfig/gfig-style,
      Lighting/lighting-ui}.c.
    - CVE-2010-4540
    - CVE-2010-4541
    - CVE-2010-4542
  * SECURITY UPDATE: denial of service and possible code execution via
    malformed PSP image file
    - debian/patches/06_security_CVE-2010-4543.patch: fix buffer overflow
      in plug-ins/common/psp.c.
    - CVE-2010-4543

Date: Thu, 07 Apr 2011 13:33:27 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/gimp/2.4.5-1ubuntu2.3
-------------- next part --------------
Format: 1.7
Date: Thu, 07 Apr 2011 13:33:27 -0400
Source: gimp
Binary: libgimp2.0 gimp-python gimp-gnomevfs gimp-libcurl gimp gimp-data libgimp2.0-dev libgimp2.0-doc gimp-dbg
Architecture: source
Version: 2.4.5-1ubuntu2.3
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 gimp       - The GNU Image Manipulation Program
 gimp-data  - Data files for GIMP
 gimp-dbg   - Debugging symbols for GIMP
 gimp-gnomevfs - GNOME-VFS URI plugin for GIMP
 gimp-libcurl - libcurl URI plugin for GIMP
 gimp-python - Python support and plugins for GIMP
 libgimp2.0 - Libraries for the GNU Image Manipulation Program
 libgimp2.0-dev - Headers and other files for compiling plugins for GIMP
 libgimp2.0-doc - Developers' Documentation for the GIMP library
Changes: 
 gimp (2.4.5-1ubuntu2.3) hardy-security; urgency=low
 .
   * SECURITY UPDATE: denial of service and possible code execution via
     malformed plugin configuration files
     - debian/patches/05_security_CVE-2010-454x.patch: fix format strings in
       plug-ins/{common/sphere-designer,gfig/gfig-style,
       Lighting/lighting-ui}.c.
     - CVE-2010-4540
     - CVE-2010-4541
     - CVE-2010-4542
   * SECURITY UPDATE: denial of service and possible code execution via
     malformed PSP image file
     - debian/patches/06_security_CVE-2010-4543.patch: fix buffer overflow
       in plug-ins/common/psp.c.
     - CVE-2010-4543
Files: 
 8c3ccebf3f7b230c356bbaf79c0c575f 2394 graphics optional gimp_2.4.5-1ubuntu2.3.dsc
 bb0026c4e1190c94ae96feed64269e61 46894 graphics optional gimp_2.4.5-1ubuntu2.3.diff.gz
Original-Maintainer: Ari Pollak <ari at debian.org>


More information about the Hardy-changes mailing list