-
Committer:
Package Import Robot
-
Author(s):
Marc Deslauriers
-
Date:
2014-03-11 11:05:12 UTC
-
mfrom:
(20.1.1 precise-proposed)
-
Revision ID:
package-import@ubuntu.com-20140311110512-njex5of2mwtp3l7b
Tags: 1.0.18-0ubuntu0.2
* SECURITY UPDATE: arbitrary code execution via overflows in pdftoopvp
- debian/patches/CVE-2013-647x.patch: use gmallocn and gmallocn3 in
pdftoopvp/{oprs/OPVPSplash.cxx,OPVPOutputDev.cxx}.
- CVE-2013-6474
- CVE-2013-6475
* SECURITY UPDATE: arbitrary code execution via driver in pdftoopvp
- debian/patches/CVE-2013-647x.patch: restrict driver path in
pdftoopvp/oprs/OPVPWrapper.cxx.
- CVE-2013-6476