[Secure-testing-team] Bug#734745: graphviz: Multiple security issues

Moritz Muehlenhoff jmm at inutil.org
Thu Jan 9 14:05:25 UTC 2014


Package: graphviz
Severity: grave
Tags: security
Justification: user security hole

Multiple security issues have been reported in Graphviz:

CVE-2014-0978:
https://bugs.gentoo.org/show_bug.cgi?id=497274
https://github.com/ellson/graphviz/commit/7aaddf52cd98589fb0c3ab72a393f8411838438a

CVE-2014-1235:
https://github.com/ellson/graphviz/commit/d266bb2b4154d11c27252b56d86963aef4434750

CVE-2014-1243:
https://github.com/ellson/graphviz/commit/1d1bdec6318746f6f19f245db589eddc887ae8ff

Can you also prepare updated packages for oldstable|stable-security?
http://www.debian.org/doc/manuals/developers-reference/pkgs.html#bug-security

Cheers,
        Moritz



More information about the Secure-testing-team mailing list