Re: [Lcms-user] CVE-2009-0793 Patch Question

2009-07-11 Thread marti . maria
Hi Brian, You are right, the patch is buggy. I will fix it in the next release. Thanks for let me know. Marti > Hi All, > > I have a question about an already applied patch for CVE-2009-0793. > Here is the patch that was apparently applied: > > https://bugzilla.redhat.com/attachment.cgi?id=337

[Lcms-user] CVE-2009-0793 Patch Question

2009-07-10 Thread Brian G. Merrell
Hi All, I have a question about an already applied patch for CVE-2009-0793. Here is the patch that was apparently applied: https://bugzilla.redhat.com/attachment.cgi?id=337279 Looking at this patch, I am not sure I understand why the first check for NULL was put in after the call to FromLstarToX