| Summary: | CVE-2011-1178 Gimp: Integer overflow in the PCX image file plug-in | ||||||||
|---|---|---|---|---|---|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | Jan Lieskovsky <jlieskov> | ||||||
| Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||||
| Status: | CLOSED ERRATA | QA Contact: | |||||||
| Severity: | medium | Docs Contact: | |||||||
| Priority: | medium | ||||||||
| Version: | unspecified | CC: | djorm, nphilipp, security-response-team | ||||||
| Target Milestone: | --- | Keywords: | Security | ||||||
| Target Release: | --- | ||||||||
| Hardware: | All | ||||||||
| OS: | Linux | ||||||||
| Whiteboard: | |||||||||
| Fixed In Version: | Doc Type: | Bug Fix | |||||||
| Doc Text: | Story Points: | --- | |||||||
| Clone Of: | Environment: | ||||||||
| Last Closed: | 2013-05-06 07:32:03 UTC | Type: | --- | ||||||
| Regression: | --- | Mount Type: | --- | ||||||
| Documentation: | --- | CRM: | |||||||
| Verified Versions: | Category: | --- | |||||||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||||
| Cloudforms Team: | --- | Target Upstream Version: | |||||||
| Bug Depends On: | 537809, 537810, 537811, 833903 | ||||||||
| Bug Blocks: | |||||||||
| Attachments: |
|
||||||||
|
Description
Jan Lieskovsky
2011-03-22 14:59:48 UTC
The CVE identifier of CVE-2011-1178 has been assigned to this issue. Created attachment 486819 [details]
Proposed fix from Nils Philippsen for gimp 2.2 branch
Created attachment 486820 [details]
Proposed fix from Nils Philippsen for gimp 2.6 branch
Particular upstream git changeset: [1] http://git.gnome.org/browse/gimp/commit/?id=a9671395f6573e90316a9d748588c5435216f6ce This issue affects the versions of the gimp package, as shipped with Red Hat Enterprise Linux 4 and 5. -- This issue did NOT affect the version of the gimp package, as shipped with Red Hat Enterprise Linux 6, as this version already contains upstream change from [1]. -- This issue did NOT affect the versions of the gimp package, as shipped with Fedora release of 13 and 14, as those versions already contain upstream change from [1]. This issue has been addressed in following products: Red Hat Enterprise Linux 5 Via RHSA-2011:0838 https://rhn.redhat.com/errata/RHSA-2011-0838.html This issue has been addressed in following products: Red Hat Enterprise Linux 4 Via RHSA-2011:0837 https://rhn.redhat.com/errata/RHSA-2011-0837.html |