-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 08 Mar 2005 06:04:31 +0000 Source: xli Binary: xli Architecture: source powerpc Version: 1.17.0-17 Distribution: unstable Urgency: high Maintainer: Graham Wilson <graham@debian.org> Changed-By: Graham Wilson <graham@debian.org> Description: xli - view images under X11 Closes: 298039 Changes: xli (1.17.0-17) unstable; urgency=high . * Fix some old and new security bugs. (closes: #298039) . * In face.c, use strncat instead of strcat, which won't overflow the image name buffer in case the first and last names are too long. Addresses CAN-2001-0775. . * In new.c, check that new*Image functions don't overflow when determining how much memory to allocate for images. . * Use upstream's code to avoid an overflow in buildIndex, rather than the code I wrote to fix #274310. Files: 10f275b748124f5edd3ce8afe84c43f3 914 graphics optional xli_1.17.0-17.dsc fdea256ca3de8a54f23cba8bce0d29da 19199 graphics optional xli_1.17.0-17.diff.gz dd51c76c38b0a493d8c35ad9c3d23b39 152512 graphics optional xli_1.17.0-17_powerpc.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (GNU/Linux) iQEVAwUBQjjtsC6fnYH5E4SWAQLd1AgAg1Ne3eXu1Fnk9MojDPAgGSmcGkKw5EuZ vT+luO9g+mdr8Kg2R/meZuzmnhdk0+r33gIr9NPthH3Eu/OYDyL42Zcu91kw6TA2 WHtqcoQFU1YVl/CONSaGR8DNtNc88dxvU+dm9KKozKIcLKFnMZgkYL0kc9oFJ0il qi1KbpZQ35DaSy2zwJQ9AkAT50h+FJHngz1INMnytDHkIqnDrGvFS8HXU6XE7zvi yfOSRN3UJoOkXDTvfc3tbcKTtIlAjLg3T2dxcGs6XQNTpBI7jKZUeAPFLBguoYHO d7DR2+2EpvQ565jsVk8yeMmnpkZtnoQYr7vZsMcyt5hYUuuURER8nw== =szIM -----END PGP SIGNATURE----- Accepted: xli_1.17.0-17.diff.gz to pool/main/x/xli/xli_1.17.0-17.diff.gz xli_1.17.0-17.dsc to pool/main/x/xli/xli_1.17.0-17.dsc xli_1.17.0-17_powerpc.deb to pool/main/x/xli/xli_1.17.0-17_powerpc.deb -- To UNSUBSCRIBE, email to debian-devel-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org