[ubuntu/jammy-security] gdk-pixbuf 2.42.8+dfsg-1ubuntu0.3 (Accepted)

Ian Constantin ian.constantin at canonical.com
Wed Jun 5 12:44:49 UTC 2024


gdk-pixbuf (2.42.8+dfsg-1ubuntu0.3) jammy-security; urgency=medium

  * SECURITY UPDATE: heap memory corruption
    - debian/patches/CVE-2022-48622-*.patch: adds checks for invalid ani files
      to gdk-pixbuf/io-ani.c.
    - tests/tests-images/fail/CVE-2022-48622.ani: test file.
    - debian/source/include-binaries: including binary test file.
    - CVE-2022-48622

gdk-pixbuf (2.42.8+dfsg-1ubuntu0.2) jammy; urgency=medium

  * debian/patches/debian_queryloader_dir.patch:
    - fix the directory referenced for gdk-pixbuf-query-loaders 
      in the .pc since that file is moved by the packaging (lp: #1993785)

Date: 2024-06-03 18:34:11.707893+00:00
Changed-By: Ian Constantin <ian.constantin at canonical.com>
https://launchpad.net/ubuntu/+source/gdk-pixbuf/2.42.8+dfsg-1ubuntu0.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list