[ubuntu/lucid-updates] gimp 2.6.8-2ubuntu1.5 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Mon Sep 10 12:59:13 UTC 2012


gimp (2.6.8-2ubuntu1.5) lucid-security; urgency=low

  * SECURITY UPDATE: denial of service via malformed .fit file header
    - debian/patches/10_CVE-2012-3236.patch: check for valid XTENSION
      header in plug-ins/file-fits/fits-io.c.
    - CVE-2012-3236
  * SECURITY UPDATE: denial of service and possible code execution via
    crafted KiSS palette file
    - debian/patches/11_CVE-2012-3403.patch: validate return codes and
      header data in plug-ins/common/file-cel.c.
    - CVE-2012-3403
  * SECURITY UPDATE: denial of service and possible code execution via
    crafted GIF image file
    - debian/patches/12_CVE-2012-3481.patch: validate sizes, and prevent
      overflows in plug-ins/common/file-gif-load.c.
    - CVE-2012-3481

Date: 2012-09-05 20:55:19.508408+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Maintainer: Ubuntu Desktop <ubuntu-desktop at lists.ubuntu.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/lucid/+source/gimp/2.6.8-2ubuntu1.5
-------------- next part --------------
Sorry, changesfile not available.


More information about the Lucid-changes mailing list