New Debian pixman 0.32.6-3+deb8u1 fixes: This update addresses the following issue: * general_composite_rect() integer overflow (CVE-2015-5297)
--- mirror/ftp/4.2/unmaintained/4.2-0/source/pixman_0.32.6-3.dsc +++ apt/ucs_4.2-0-errata4.2-5/source/pixman_0.32.6-3+deb8u1.dsc @@ -1,3 +1,9 @@ +0.32.6-3+deb8u1 [Wed, 21 Nov 2018 19:03:02 +0100] Thorsten Alteholz <debian@alteholz.de>: + + * Non-maintainer upload by the LTS Team. + * CVE-2015-5297 + Fix to avoid numerical overflow in pointer arithmetic. + 0.32.6-3 [Sat, 23 Aug 2014 22:16:40 -0700] Julien Cristau <jcristau@debian.org>: [ intrigeri ] <http://10.200.17.11/4.2-5/#251724346813885350>
OK: yaml OK: announce_errata OK: patch OK: piuparts [4.2-5] fcebb28e29 Bug #48208: pixman 0.32.6-3+deb8u1 doc/errata/staging/pixman.yaml | 12 ++++++++++++ 1 file changed, 12 insertions(+)
<http://errata.software-univention.de/ucs/4.2/556.html>