-
Committer:
Bazaar Package Importer
-
Author(s):
Martin Pitt
-
Date:
2006-07-10 10:11:09 UTC
-
Revision ID:
james.westby@ubuntu.com-20060710101109-g61i25cye9s7fztq
Tags: 2.2.11-1ubuntu3.1
* SECURITY UPDATE: Arbitrary code execution with crafted XCF files.
* app/xcf/xcf-load.c:
- Check num_axes for sanity to avoid buffer overflow with invalid values.
- CVE-2006-3404