guix-devel
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: libgd security CVE-2016-7568


From: Ludovic Courtès
Subject: Re: libgd security CVE-2016-7568
Date: Sat, 01 Oct 2016 14:20:35 +0200
User-agent: Gnus/5.13 (Gnus v5.13) Emacs/25.1 (gnu/linux)

Leo Famulari <address@hidden> skribis:

> This patches fixes an integer overflow in libgd:
>
> https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7568
> http://seclists.org/oss-sec/2016/q3/639
>
> From b125d20c4e60cfd204a99fd7df174de73df067a2 Mon Sep 17 00:00:00 2001
> From: Leo Famulari <address@hidden>
> Date: Thu, 29 Sep 2016 11:32:34 -0400
> Subject: [PATCH] gnu: gd: Fix CVE-2016-7568.
>
> * gnu/packages/patches/gd-CVE-2016-7568.patch: New file.
> * gnu/local.mk (dist_patch_DATA): Add it.
> * gnu/packages/gd.scm (gd)[source]: Use it.

LGTM, thanks!

Ludo'.



reply via email to

[Prev in Thread] Current Thread [Next in Thread]