openexr 1.6.1-3ubuntu1.8.10.1 source package in Ubuntu

Changelog

openexr (1.6.1-3ubuntu1.8.10.1) intrepid-security; urgency=low

  * SECURITY UPDATE: denial of service and possible code execution via
    multiple integer overflows
    - debian/patches/security_CVE-2009-1720.diff: make sure we don't
      overflow INT_MAX in IlmImf/{ImfPizCompressor,ImfPreviewImage,
      ImfPxr24Compressor,ImfRleCompressor,ImfZipCompressor}.cpp.
    - CVE-2009-1720
  * SECURITY UPDATE: denial of service and possible code execution via
    uninitialized pointer free in Imf::hufUncompress
    - debian/patches/security_CVE-2009-1721.diff: introduce
      hufClearDecTable function and use it to clear out hdec in
      IlmImf/ImfHuf.cpp.
    - CVE-2009-1721

 -- Marc Deslauriers <email address hidden>   Thu, 10 Sep 2009 08:23:06 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Intrepid
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
graphics
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
openexr_1.6.1.orig.tar.gz 13.0 MiB c616906ab958de9c37bb86ca7547cfedbdfbad5e1ca2a4ab98983c9afa6a5950
openexr_1.6.1-3ubuntu1.8.10.1.diff.gz 10.1 KiB 0279f2c2457cfbb9e916847606fa2ae817724d08f185e291d079e1ccaee370f6
openexr_1.6.1-3ubuntu1.8.10.1.dsc 1.4 KiB 953ad19326ac87218d38ccde5c898df9657b27764c71e3613693cb5c65bbc19b

View changes file

Binary packages built by this source

libopenexr-dev: No summary available for libopenexr-dev in ubuntu intrepid.

No description available for libopenexr-dev in ubuntu intrepid.

libopenexr6: No summary available for libopenexr6 in ubuntu intrepid.

No description available for libopenexr6 in ubuntu intrepid.

openexr: No summary available for openexr in ubuntu intrepid.

No description available for openexr in ubuntu intrepid.