Bug 689831 (CVE-2011-1178)
Summary: | CVE-2011-1178 Gimp: Integer overflow in the PCX image file plug-in | ||||||||
---|---|---|---|---|---|---|---|---|---|
Product: | [Other] Security Response | Reporter: | Jan Lieskovsky <jlieskov> | ||||||
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||||
Status: | CLOSED ERRATA | QA Contact: | |||||||
Severity: | medium | Docs Contact: | |||||||
Priority: | medium | ||||||||
Version: | unspecified | CC: | djorm, nphilipp, security-response-team | ||||||
Target Milestone: | --- | Keywords: | Security | ||||||
Target Release: | --- | ||||||||
Hardware: | All | ||||||||
OS: | Linux | ||||||||
Whiteboard: | |||||||||
Fixed In Version: | Doc Type: | Bug Fix | |||||||
Doc Text: | Story Points: | --- | |||||||
Clone Of: | Environment: | ||||||||
Last Closed: | 2013-05-06 07:32:03 UTC | Type: | --- | ||||||
Regression: | --- | Mount Type: | --- | ||||||
Documentation: | --- | CRM: | |||||||
Verified Versions: | Category: | --- | |||||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||||
Cloudforms Team: | --- | Target Upstream Version: | |||||||
Embargoed: | |||||||||
Bug Depends On: | 537809, 537810, 537811, 833903 | ||||||||
Bug Blocks: | |||||||||
Attachments: |
|
Description
Jan Lieskovsky
2011-03-22 14:59:48 UTC
The CVE identifier of CVE-2011-1178 has been assigned to this issue. Created attachment 486819 [details]
Proposed fix from Nils Philippsen for gimp 2.2 branch
Created attachment 486820 [details]
Proposed fix from Nils Philippsen for gimp 2.6 branch
Particular upstream git changeset: [1] http://git.gnome.org/browse/gimp/commit/?id=a9671395f6573e90316a9d748588c5435216f6ce This issue affects the versions of the gimp package, as shipped with Red Hat Enterprise Linux 4 and 5. -- This issue did NOT affect the version of the gimp package, as shipped with Red Hat Enterprise Linux 6, as this version already contains upstream change from [1]. -- This issue did NOT affect the versions of the gimp package, as shipped with Fedora release of 13 and 14, as those versions already contain upstream change from [1]. This issue has been addressed in following products: Red Hat Enterprise Linux 5 Via RHSA-2011:0838 https://rhn.redhat.com/errata/RHSA-2011-0838.html This issue has been addressed in following products: Red Hat Enterprise Linux 4 Via RHSA-2011:0837 https://rhn.redhat.com/errata/RHSA-2011-0837.html |