[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: [SECURITY] [DSA 536-1] New libpng, libpng3 packages fix multiple vulnerabilities

On mer, 2004-08-04 at 19:10 -0700, Matt Zimmerman wrote:
> For the unstable distribution (sid), these problems will be fixed soon.

I've just uploaded fixed packages for unstable; however I've noticed
mozilla still crashes on the crafted PNG provided by Chris Evans. It
seems that /usr/lib/mozilla/components/libimglib2.so is not dynamically
linked with libpng, but still includes code from it.

(please CC me, I'm not on the list)
 .''`.           Josselin Mouette        /\./\
: :' :           josselin.mouette@ens-lyon.org
`. `'                        joss@debian.org
  `-  Debian GNU/Linux -- The power of freedom

Attachment: signature.asc
Description: Ceci est une partie de message =?ISO-8859-1?Q?num=E9riquement?= =?ISO-8859-1?Q?_sign=E9e?=

Reply to: