pkgsrc/graphics/gdk-pixbuf/patches
salo 11ee09f4bd Security fixes for CVE-2005-2975, CVE-2005-2976 and CVE-2005-3186:
"io-xpm.c in the gdk-pixbuf XPM image rendering library allows attackers
to cause a denial of service (infinite loop) via a crafted XPM image
with a large number of colors."

"Integer overflow in io-xpm.c in gdk-pixbuf allows attackers to cause a
denial of service (crash) or execute arbitrary code via an XPM file with
large height, width, and colour values, a different vulnerability than
CVE-2005-3186."

"Integer overflow in the gdk-pixbuf XPM image rendering library allows
attackers to execute arbitrary code via an XPM file with a number of
colors that causes insufficient memory to be allocated, which leads to
a heap-based buffer overflow."

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2975
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2976
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3186
2005-11-26 09:40:49 +00:00
..
patch-aa
patch-ab
patch-ac
patch-ad
patch-ae Add DragonFly support to the configure script. 2005-09-04 04:56:40 +00:00
patch-af
patch-ag
patch-ah
patch-ai
patch-aj
patch-ak Security fix for CAN-2005-0891: 2005-04-01 11:37:23 +00:00
patch-al Fix AC_DEFUN argument quoting for automake 1.8 and newer. No 2005-04-27 11:05:42 +00:00
patch-am Security fixes for CVE-2005-2975, CVE-2005-2976 and CVE-2005-3186: 2005-11-26 09:40:49 +00:00