Package: libgd2
Version: 2.0.33
Severity: critical
Tags: security patch
Justification: breaks the whole system

This patch fixes all known issues since 2.0.33 (upstream) in the gif loader.

The tests are available in gd-2.0.34, 35RC4 or cvs (upstream), in
tests/gif/

The issues fixed are segfaults, infinite loops and overflows.

Patch against Etch src:
http://pierre.libgd.org/debian/gif_all.patch.txt

-- System Information:
Debian Release: 3.1
Architecture: i386 (i686)
Kernel: Linux 2.4.33grs-bipiv-ipv4-32
Locale: LANG=en_GB, LC_CTYPE=en_GB (charmap=ISO-8859-1)

Versions of packages libgd2 depends on:
ii  libc6                 2.3.2.ds1-22sarge4 GNU C Library: Shared libraries an
ii  libfreetype6          2.1.7-6            FreeType 2 font engine, shared lib
ii  libjpeg62             6b-10              The Independent JPEG Group's JPEG 
ii  libpng2               1.0.18-1           PNG library, older version - runti
pn  xlibs                                    Not found.
ii  zlib1g                1:1.2.2-4.sarge.2  compression library - runtime


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to