Package: lcms2
Severity: important
Tags: security
Justification: user security hole

Hi,
Oracle fixed a denial of service issues in the lcms code copy in Java/OpenJDK:
http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html

The patch is here and affects lcms2:
http://hg.openjdk.java.net/jdk8u/jdk8u/jdk/rev/d6739b8326a4

Cheers,
        Moritz

_______________________________________________
Secure-testing-team mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-team

Reply via email to