[Secure-testing-team] Bug#522448: CVE-2008-0584/CVE-2008-0583: Security issues in ICC library

Moritz Muehlenhoff jmm at debian.org
Fri Apr 3 19:41:14 UTC 2009


Package: argyll
Severity: grave
Tags: security

Let's welcome argyll in the archive with an RC security bug :-)

argyll embeds a copy of icclib, which has recently been fixed in
a DSA for ghostscript. I'm attaching the patch from the DSA, please
pass it to argyll upstream and the maintainer of debian-multimedia.org

Cheers,
        Moritz

-- System Information:
Debian Release: squeeze/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)

Kernel: Linux 2.6.29-1-686 (SMP w/1 CPU core)
Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15 at euro (charmap=ISO-8859-15)
Shell: /bin/sh linked to /bin/bash
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ghostscript-icc.patch
Type: text/x-shellscript
Size: 32139 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20090403/d1c9e252/attachment-0001.bin 


More information about the Secure-testing-team mailing list