Comment 11 for bug 546009

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package ghostscript - 8.71.dfsg.1-0ubuntu5.2

---------------
ghostscript (8.71.dfsg.1-0ubuntu5.2) lucid-security; urgency=low

  * SECURITY UPDATE: arbitrary code execution via unlimited recursive
    procedure invocations (LP: #546009)
    - debian/patches/CVE-2010-1628.dpatch: only initialize structures if
      all allocations were successful in psi/ialloc.c, psi/idosave.h,
      psi/isave.c.
    - CVE-2010-1628
 -- Marc Deslauriers <email address hidden> Fri, 09 Jul 2010 08:06:19 -0400