Re: [Mageia-dev] Freeze push: openjpeg 1.5.0

2012-05-10 Thread David Walser
David Walser wrote: David Walser wrote: Funda Wang wrote: Hello, Could somebody push openjpeg 1.5.0 into cauldron? It fixed CVE-2012-1499: The JPEG 2000 codec in OpenJPEG before 1.5 does not properly allocate memory during file parsing, which allows remote attackers to execute arbitrary

Re: [Mageia-dev] Freeze push: openjpeg 1.5.0

2012-04-21 Thread David Walser
David Walser wrote: Funda Wang wrote: Hello, Could somebody push openjpeg 1.5.0 into cauldron? It fixed CVE-2012-1499: The JPEG 2000 codec in OpenJPEG before 1.5 does not properly allocate memory during file parsing, which allows remote attackers to execute arbitrary code via a crafted

Re: [Mageia-dev] Freeze push: openjpeg 1.5.0

2012-04-14 Thread David Walser
Funda Wang wrote: Hello, Could somebody push openjpeg 1.5.0 into cauldron? It fixed CVE-2012-1499: The JPEG 2000 codec in OpenJPEG before 1.5 does not properly allocate memory during file parsing, which allows remote attackers to execute arbitrary code via a crafted file. Thanks. Funda,

Re: [Mageia-dev] Freeze push: openjpeg 1.5.0

2012-04-13 Thread nicolas vigier
On Thu, 12 Apr 2012, Funda Wang wrote: Hello, Could somebody push openjpeg 1.5.0 into cauldron? It fixed CVE-2012-1499: The JPEG 2000 codec in OpenJPEG before 1.5 does not properly allocate memory during file parsing, which allows remote attackers to execute arbitrary code via a crafted

[Mageia-dev] Freeze push: openjpeg 1.5.0

2012-04-12 Thread Funda Wang
Hello, Could somebody push openjpeg 1.5.0 into cauldron? It fixed CVE-2012-1499: The JPEG 2000 codec in OpenJPEG before 1.5 does not properly allocate memory during file parsing, which allows remote attackers to execute arbitrary code via a crafted file. Thanks.