1
PublicDateAtUSN: 2014-12-31
2
Candidate: CVE-2014-9766
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9766
6
https://lists.freedesktop.org/archives/pixman/2014-April/003244.html
7
https://usn.ubuntu.com/usn/usn-2918-1
9
Integer overflow in the create_bits function in pixman-bits-image.c in
10
Pixman before 0.32.6 allows remote attackers to cause a denial of service
11
(application crash) or possibly execute arbitrary code via large height and
16
https://bugzilla.redhat.com/show_bug.cgi?id=972647
17
https://bugs.freedesktop.org/show_bug.cgi?id=69014
19
Discovered-by: Vincent LE GARREC
23
patch: https://cgit.freedesktop.org/pixman/commit/?id=857e40f3d2bc2cfb714913e0cd7e6184cf69aca3
24
upstream_pixman: released (0.32.6-1)
25
precise_pixman: released (0.30.2-1ubuntu0.0.0.0.3)
26
precise/esm_pixman: released (0.30.2-1ubuntu0.0.0.0.3)
27
trusty_pixman: released (0.30.2-2ubuntu1.1)
28
vivid/stable-phone-overlay_pixman: ignored (reached end-of-life)
29
vivid/ubuntu-core_pixman: DNE
30
wily_pixman: not-affected (0.32.6-3)
31
xenial_pixman: not-affected
32
yakkety_pixman: not-affected
33
zesty_pixman: not-affected
34
devel_pixman: not-affected