Add support for gegl 0.4.
Bug #1767512 reported by
Joel Barrios
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
dibuja |
Fix Released
|
Low
|
Unassigned |
Bug Description
Gegl 0.4 has been released yesterday and fixes CVE-2018-10114 (limit allocations in ppm-load to 2GB).
https:/
Would be great to have Dibuja support it in configure out of the box.
CVE References
Changed in dibuja: | |
status: | New → Fix Committed |
Changed in dibuja: | |
status: | Fix Committed → Fix Released |
To post a comment you must log in.
I have to change some source files and configure.ac, then test on gegl-0.3, gegl-0.4, maybe 0.2 /people. canonical. com/~ubuntu- security/ cve/2018/ CVE-2018- 10114.html
Would it not be easier to patch gegl-0.3?
See:
https:/
Patch: /git.gnome. org/browse/ gegl/patch/ ?id=c83b05d565a 1e3392c9606a4ec aa560eb9a4ee29
https:/