[Bug 700198] Re: CVE-2009-0793

2011-04-19 Thread Launchpad Bug Tracker
This bug was fixed in the package ia32-libs - 20090808ubuntu9.1 --- ia32-libs (20090808ubuntu9.1) maverick-security; urgency=low * SECURITY UPDATE: Refresh packages to pull in security fixes, including: - lcms buffer overflow, CVE-2009-0793 (LP: #700198) - openssl:

[Bug 700198] Re: CVE-2009-0793

2011-04-19 Thread Launchpad Bug Tracker
This bug was fixed in the package ia32-libs - 2.7ubuntu26.1 --- ia32-libs (2.7ubuntu26.1) lucid-security; urgency=low * SECURITY UPDATE: Refresh packages to pull in security fixes, including: - lcms buffer overflow, CVE-2009-0793 (LP: #700198) - openssl: multiple

[Bug 700198] Re: CVE-2009-0793

2011-04-19 Thread Launchpad Bug Tracker
This bug was fixed in the package ia32-libs - 2.7ubuntu17.1 --- ia32-libs (2.7ubuntu17.1) karmic-security; urgency=low * SECURITY UPDATE: Refresh packages to pull in security fixes, including: - lcms: buffer overflow, CVE-2009-0793 (LP: #700198) - openssl: multiple

[Bug 700198] Re: CVE-2009-0793

2011-04-08 Thread Jamie Strandboge
Hardy 2.2ubuntu11.3 should have the fix. ** Changed in: ia32-libs (Ubuntu Hardy) Status: Triaged = Fix Released -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to gimp in Ubuntu. https://bugs.launchpad.net/bugs/700198 Title:

[Bug 700198] Re: CVE-2009-0793

2011-03-29 Thread Scott Ritchie
Natty just got an ia32-libs refresh, which should cover it. ** Changed in: ia32-libs (Ubuntu Natty) Status: Triaged = Fix Released -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to gimp in Ubuntu.

[Bug 700198] Re: CVE-2009-0793

2011-02-04 Thread Kees Cook
Gimp is linked against the system lcms ** Changed in: gimp (Ubuntu Natty) Status: New = Invalid ** Changed in: gimp (Ubuntu Hardy) Status: New = Invalid ** Changed in: gimp (Ubuntu Karmic) Status: New = Invalid ** Changed in: gimp (Ubuntu Lucid) Status: New =

[Bug 700198] Re: CVE-2009-0793

2011-01-18 Thread Launchpad Bug Tracker
** Branch linked: lp:ubuntu/hardy-updates/lcms ** Branch linked: lp:ubuntu/karmic-security/lcms ** Branch linked: lp:ubuntu/lcms ** Branch linked: lp:ubuntu/maverick-security/lcms ** Branch linked: lp:ubuntu/lucid-updates/lcms -- You received this bug notification because you are a member of

[Bug 700198] Re: CVE-2009-0793

2011-01-14 Thread Artur Rona
There is nothing to sponsor. I'm unsubscribing ubuntu-security-sponsors. -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to gimp in ubuntu. https://bugs.launchpad.net/bugs/700198 Title: CVE-2009-0793 -- desktop-bugs mailing list

[Bug 700198] Re: CVE-2009-0793

2011-01-14 Thread Brian Murray
** Tags added: patch -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to gimp in ubuntu. https://bugs.launchpad.net/bugs/700198 Title: CVE-2009-0793 -- desktop-bugs mailing list desktop-bugs@lists.ubuntu.com

Re: [Bug 700198] Re: CVE-2009-0793

2011-01-14 Thread Dave Walker
On 14/01/11 17:38, Brian Murray wrote: ** Tags added: patch ah! -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to gimp

[Bug 700198] Re: CVE-2009-0793

2011-01-12 Thread Jamie Strandboge
** Changed in: ia32-libs (Ubuntu Lucid) Status: New = Triaged ** Changed in: ia32-libs (Ubuntu Lucid) Importance: Undecided = Low ** Changed in: ia32-libs (Ubuntu Maverick) Status: New = Triaged ** Changed in: ia32-libs (Ubuntu Maverick) Importance: Undecided = Low **

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Jamie Strandboge
** Also affects: gimp (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: ia32-libs (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: lcms (Ubuntu Hardy) Importance: Undecided Status: New ** Also affects: openjdk-6 (Ubuntu Hardy)

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Steve Beattie
Accepting the lcms debdiffs for ubuntu-security. ** Changed in: lcms (Ubuntu Hardy) Importance: Undecided = Low ** Changed in: lcms (Ubuntu Hardy) Status: New = In Progress ** Changed in: lcms (Ubuntu Hardy) Assignee: (unassigned) = Steve Beattie (sbeattie) ** Changed in: lcms

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Steve Beattie
OpenJDK 6 packages were fixed in 6b16-1.6.1-0ubuntu1 and 6b18-1.8.2-4ubuntu1~8.04.1. ** Changed in: openjdk-6 (Ubuntu Hardy) Importance: Undecided = Low ** Changed in: openjdk-6 (Ubuntu Hardy) Status: New = Fix Released ** Changed in: openjdk-6 (Ubuntu Karmic) Status: New = Fix

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Steve Beattie
** Changed in: openjdk-6b18 (Ubuntu Hardy) Status: New = Invalid ** Changed in: openjdk-6b18 (Ubuntu Karmic) Status: New = Invalid ** Changed in: openjdk-6b18 (Ubuntu Lucid) Importance: Undecided = Low ** Changed in: openjdk-6b18 (Ubuntu Lucid) Status: New = Fix Released

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Launchpad Bug Tracker
This bug was fixed in the package lcms - 1.18.dfsg-1ubuntu2.10.10.1 --- lcms (1.18.dfsg-1ubuntu2.10.10.1) maverick-security; urgency=low * debian/patches/CVE-2009-0793.dpatch: SECURITY UPDATE: (LP: #700198) - Fix DoS via a crafted image that triggers execution of incorrect

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Launchpad Bug Tracker
This bug was fixed in the package lcms - 1.18.dfsg-1ubuntu2.10.04.1 --- lcms (1.18.dfsg-1ubuntu2.10.04.1) lucid-security; urgency=low * debian/patches/CVE-2009-0793.dpatch: SECURITY UPDATE: (LP: #700198) - Fix DoS via a crafted image that triggers execution of incorrect

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Launchpad Bug Tracker
This bug was fixed in the package lcms - 1.18.dfsg-1ubuntu1.1 --- lcms (1.18.dfsg-1ubuntu1.1) karmic-security; urgency=low * debian/patches/CVE-2009-0793.dpatch: SECURITY UPDATE: (LP: #700198) - Fix DoS via a crafted image that triggers execution of incorrect code for

[Bug 700198] Re: CVE-2009-0793

2011-01-11 Thread Launchpad Bug Tracker
This bug was fixed in the package lcms - 1.16-7ubuntu1.3 --- lcms (1.16-7ubuntu1.3) hardy-security; urgency=low * debian/patches/CVE-2009-0793.dpatch: SECURITY UPDATE: (LP: #700198) - Fix DoS via a crafted image that triggers execution of incorrect code for

[Bug 700198] Re: CVE-2009-0793

2011-01-10 Thread Brian Murray
** This bug has been flagged as a security vulnerability -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to gimp in ubuntu. https://bugs.launchpad.net/bugs/700198 Title: CVE-2009-0793 -- desktop-bugs mailing list

[Bug 700198] Re: CVE-2009-0793

2011-01-10 Thread Launchpad Bug Tracker
This bug was fixed in the package lcms - 1.18.dfsg-1.2ubuntu1 --- lcms (1.18.dfsg-1.2ubuntu1) natty; urgency=low * Merge from debian unstable. Remaining changes: (LP: #694364) - debian/control: Mention Little CMS in binary package names for searchability. (Closes:

[Bug 700198] Re: CVE-2009-0793

2011-01-07 Thread Scott Kitterman
Per http://svn.debian.org/wsvn/secure-testing/data/embedded-code- copies?op=file these other packages carry embedded copies of lcms and should be investigated too. ** Also affects: openjdk-6 (Ubuntu) Importance: Undecided Status: New ** Also affects: openjdk-6b18 (Ubuntu)