Bug#308819: openmotif: affected by vulnerabilities in libxpm

2005-06-06 Thread Steve Langasek
tags 308819 = patch security woody sarge etch thanks Although an NMU was uploaded for this bug, because openmotif is in non-free there were no autobuilds for the package and so it was not updated in time for release. This bug still exists in sarge and etch, and possibly in woody as well. -- Ste

Bug#308819: openmotif: affected by vulnerabilities in libxpm

2005-05-30 Thread Kenshi Muto
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Here is final patch, taken from Debian xfree86 svn repository. Thanks, - -- Kenshi Muto [EMAIL PROTECTED] -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.0 (GNU/Linux) Comment: Processed by Mailcrypt 3.5.8 iEYEA

Bug#308819: openmotif: affected by vulnerabilities in libxpm

2005-05-28 Thread Kenshi Muto
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 tags + patch thanks Hi, > > OpenMotif includes an outdated copy of the Xpm library with a number of > > vulnerabilities: CAN-2004-0687, CAN-2004-0688, CAN-2004-0914, and > > CAN-2005-0605. > I investigated this a bit and it seems that upstream only h

Bug#308819: openmotif: affected by vulnerabilities in libxpm

2005-05-15 Thread Frank Lichtenheld
On Thu, May 12, 2005 at 05:12:46PM +0200, Matej Vela wrote: > OpenMotif includes an outdated copy of the Xpm library with a number of > vulnerabilities: CAN-2004-0687, CAN-2004-0688, CAN-2004-0914, and > CAN-2005-0605. I investigated this a bit and it seems that upstream only has made fixes availa

Bug#308819: openmotif: affected by vulnerabilities in libxpm

2005-05-12 Thread Matej Vela
Package: openmotif Version: 2.1.30-5, 2.2.3-1 Severity: grave Tags: security OpenMotif includes an outdated copy of the Xpm library with a number of vulnerabilities: CAN-2004-0687, CAN-2004-0688, CAN-2004-0914, and CAN-2005-0605. (Note that the patches supplied by X.Org contain several regression