Branches for Warty

Name Status Last Modified Last Commit
lp:ubuntu/warty/gdk-pixbuf 1 Development 2009-08-14 22:51:46 UTC
2. Sync with debian to fix the "undefine...

Author: Sebastien Bacher
Revision Date: 2004-10-06 22:10:04 UTC

Sync with debian to fix the "undefined symbol" problem with g_try_malloc
(Warty: #2094).

lp:ubuntu/warty-security/gdk-pixbuf 1 Development 2009-08-14 22:51:57 UTC
3. * SECURITY UPDATE: Arbitrary code exe...

Author: Martin Pitt
Revision Date: 2005-11-16 11:18:22 UTC

* SECURITY UPDATE: Arbitrary code execution and DoS.
* Fix integer overflow in XPM loader:
  - gdk-pixbuf/io-xpm.c, pixbuf_create_from_xpm(): Check n_col for integer
    overflow before allocating memory.
  - XPMs with specially crafted number of colors can lead to buffer overflow
    and arbitrary code execution.
  - CVE-2005-3186
* Fix another integer overflow in XPM loader:
  - gdk-pixbuf/io-xpm.c, pixbuf_create_from_xpm(): Use gdk_pixbuf_new()
    instead of low-level allocation since the latter did not check for
    integer overflows (width * height * number of colors).
  - CVE-2005-2976
* Fix endless loop in XPM loader:
  - gdk-pixbuf/io-xpm.c, file_buffer(): Avoid endless loop with specially
    crafted number of colors.
  - CVE-2005-2975

12 of 2 results