[Secure-testing-team] Bug#821732: CVE-2016-4024: integer overflow resulting in insufficient heap allocation

Matthias Geerdsen matthias at vorlons.info
Mon Apr 18 21:42:14 UTC 2016


Source: imlib2
Severity: normal
Tags: security upstream

Hi,

the following vulnerability was published for imlib2.

CVE-2016-4024[0,1]:
integer overflow resulting in insufficient heap allocation

The upstream fix can be found at [2]

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2016-4024
[1] https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-4024
[2] https://git.enlightenment.org/legacy/imlib2.git/commit/?id=7eba2e4c8ac0e20838947f10f29d0efe1add8227

Please adjust the affected versions in the BTS as needed.



More information about the Secure-testing-team mailing list