This bug was fixed in the package librsvg - 2.40.13-3ubuntu0.2
---------------
librsvg (2.40.13-3ubuntu0.2) xenial-security; urgency=medium
* SECURITY UPDATE: Regression when parsing Aisleriot cards (LP: #1889206)
- debian/patches/CVE-2019-20446-*.patch: removed pending a complete
fix.
- debian/librsvg2-2.symbols: removed symbol.
-- Marc Deslauriers <[email protected]> Tue, 28 Jul 2020
19:40:39 -0400
** Changed in: librsvg (Ubuntu Xenial)
Status: Confirmed => Fix Released
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2019-20446
--
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to librsvg in Ubuntu.
https://bugs.launchpad.net/bugs/1889206
Title:
Regression in USN-4436-1
Status in librsvg:
Unknown
Status in librsvg package in Ubuntu:
Confirmed
Status in librsvg source package in Xenial:
Fix Released
Status in librsvg source package in Bionic:
Confirmed
Bug description:
The security fix for librsvg introduced a regression in aisleriot.
Steps to reproduce:
1- install gnome-cards-data
2- run "sol" to start Aislerot
3- Switch card layout to "Anglo"
4- Notice some cards are missing graphics
To manage notifications about this bug go to:
https://bugs.launchpad.net/librsvg/+bug/1889206/+subscriptions
--
Mailing list: https://launchpad.net/~desktop-packages
Post to : [email protected]
Unsubscribe : https://launchpad.net/~desktop-packages
More help : https://help.launchpad.net/ListHelp