> > As recently discovered the patch, which fixed CAN-2004-0888,
> > seems to be broken on all 64bit platforms (tested only on ia64
> > though).[1]
>
> Note that CAN-2005-0206 has been assigned for this issue.
>
> BTW, since you were able to track this one down, do you have any
> info about the other packages (cupsys, xpdf, etc) that also has
> CAN-2004-0888? Do they also need fixes, and do you have a patch for
> them?
>
Martin Pitt <martin <at> piware.de> told me, that tetex-bin is not
vulnerable as the file debian/patches/patch-CAN-2004-0888 continas
not the original patch form the xpdf developer, but already a fixed
version of the patch. So we should not be affected.
Sorry for the confusion!
Hilmar
--
sigmentation fault
On 18.03.05 Joey Hess (<email address hidden>) wrote:
> Hilmar Preusse wrote:
Hi,
> > As recently discovered the patch, which fixed CAN-2004-0888, patches/ patch-CAN- 2004-0888 continas
> > seems to be broken on all 64bit platforms (tested only on ia64
> > though).[1]
>
> Note that CAN-2005-0206 has been assigned for this issue.
>
> BTW, since you were able to track this one down, do you have any
> info about the other packages (cupsys, xpdf, etc) that also has
> CAN-2004-0888? Do they also need fixes, and do you have a patch for
> them?
>
Martin Pitt <martin <at> piware.de> told me, that tetex-bin is not
vulnerable as the file debian/
not the original patch form the xpdf developer, but already a fixed
version of the patch. So we should not be affected.
Sorry for the confusion!
Hilmar
--
sigmentation fault