LWN.net Logo

Fedora alert FEDORA-2008-4950 (imlib2)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 7 Update: imlib2-1.3.0-4.fc7
Date:  Tue, 03 Jun 2008 07:37:08 +0000
Message-ID:  <200806030736.m537aIMN007137@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2008-4950 2008-06-03 04:42:38 -------------------------------------------------------------------------------- Name : imlib2 Product : Fedora 7 Version : 1.3.0 Release : 4.fc7 URL : http://www.enlightenment.org/Libraries/Imlib2/ Summary : Image loading, saving, rendering, and manipulation library Description : Imlib 2 is a library that does image file loading and saving as well as rendering, manipulation, arbitrary polygon support, etc. It does ALL of these operations FAST. Imlib2 also tries to be highly intelligent about doing them, so writing naive programs can be done easily, without sacrificing speed. This is a complete rewrite over the Imlib 1.x series. The architecture is more modular, simple, and flexible. -------------------------------------------------------------------------------- Update Information: Fix CVE-2008-2426 / SA30401 - buffer overflow in the XPM loader. http://secunia.com/advisories/30401/ -------------------------------------------------------------------------------- ChangeLog: * Fri May 30 2008 Tomas Smetana <tsmetana@redhat.com> 1.3.0-4 - patch for CVE-2008-2426 -------------------------------------------------------------------------------- References: [ 1 ] Bug #449073 - CVE-2008-2426 imlib2: buffer overflows in PNM and XPM loaders https://bugzilla.redhat.com/show_bug.cgi?id=449073 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update imlib2' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at http://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2009, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds