Bug 150040
| Summary: | CAN-2005-0605 XPM buffer overflow | ||
|---|---|---|---|
| Product: | [Fedora] Fedora | Reporter: | Josh Bressers <bressers> |
| Component: | xorg-x11 | Assignee: | X/OpenGL Maintenance List <xgl-maint> |
| Status: | CLOSED CURRENTRELEASE | QA Contact: | David Lawrence <dkl> |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | 3 | Keywords: | Security, Triaged |
| Target Milestone: | --- | ||
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | impact=moderate,public=20050301,source=vendorsec | ||
| Fixed In Version: | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2005-04-05 14:08:33 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | |||
| Bug Blocks: | 136452, 430520 | ||
|
Description
Josh Bressers
2005-03-01 21:25:32 UTC
This should also affect FC2 Adding to FC3Update tracker setting to moderate severity since only a subset of applications are affected by this, and many of those do not parse untrusted xpm files. Applications like the gimp and others have their own xpm implementations. Security updates for FC2 and FC3 have been issued: https://www.redhat.com/archives/fedora-announce-list/2005-March/msg00086.html https://www.redhat.com/archives/fedora-announce-list/2005-March/msg00085.html Closing bug. |