[Pkg-tcltk-devel] Bug#445303: Bug#445303: CVE-2007-5137 arbitrary code execution via multi-frame interlaced GIF

Nico Golde nion at debian.org
Thu Oct 4 19:52:29 UTC 2007


Hi,
* Sergei Golovan <sgolovan at nes.ru> [2007-10-04 21:49]:
> On 10/4/07, Nico Golde <nion at debian.org> wrote:
> > the following CVE (Common Vulnerabilities & Exposures) id was
> > published for tk8.3.
> 
> I'll upload a fixed version shortly. Should I also prepare a package
> for uploading to stable-security?

Please contact team at security.debian.org for this if they 
think this is worth a DSA. If not just upload a fix via 
regular stable updates.
Kind regards
Nico
-- 
Nico Golde - http://ngolde.de - nion at jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/pkg-tcltk-devel/attachments/20071004/b0a1b5f3/attachment.pgp 


More information about the Pkg-tcltk-devel mailing list