What about the startsWith('/') part? This suggests previous patch may
have failed to block absolute paths. Jamie, you seem to have some
reproducer available, can you check that?
--
You received this bug notification because you are a member of Kubuntu
Bugs, which is subscribed to kdenetwork
** Package changed: openjpeg (Ubuntu) = poppler (Ubuntu)
--
evince crashed with SIGSEGV in JPXStream::readTilePartData()
https://bugs.launchpad.net/bugs/599439
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
Guessing from:
http://packages.ubuntu.com/lucid/libpoppler5
Ubuntu poppler packages don't seem to use openjpeg (yet?, as it's in
universe). Attached file triggers different crash in non-openjpeg
poppler too.
openjpeg issues triggered by the file are detailed in:
** Bug watch removed: Red Hat Bugzilla #579548
https://bugzilla.redhat.com/show_bug.cgi?id=579548
** Bug watch removed: Red Hat Bugzilla #609385
https://bugzilla.redhat.com/show_bug.cgi?id=609385
--
evince crashed with SIGSEGV in JPXStream::readTilePartData()
Upstream commit:
http://cgit.freedesktop.org/poppler/poppler/commit/?id=16e15ac845
--
evince crashes in JBIG2Bitmap::getSlice
https://bugs.launchpad.net/bugs/599454
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs
Wrong guess ;). This is not a dupe of launchpad bug #537331 /
fdo#28170.
Upstream bug:
https://bugs.freedesktop.org/show_bug.cgi?id=28806
** Bug watch added: freedesktop.org Bugzilla #28806
http://bugs.freedesktop.org/show_bug.cgi?id=28806
** Bug watch removed: freedesktop.org Bugzilla
** Changed in: tiff (Ubuntu)
Status: New = Confirmed
--
eog crashed with SIGSEGV in __memset_sse2()
https://bugs.launchpad.net/bugs/593067
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
This is not really related to CVE-2010-2065, even tough fixes were
committed at the same time.
--
eog crashed with SIGSEGV in TIFFVGetField()
https://bugs.launchpad.net/bugs/589145
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
Upstream bug is resolved, following commit was applied in upstream git:
http://cgit.freedesktop.org/poppler/poppler/commit/?id=30ea3ab
--
evince crashed with SIGSEGV in __memset_sse2() when opening a PDF
https://bugs.launchpad.net/bugs/537331
You received this bug notification because you are
** Package changed: evince (Ubuntu) = poppler (Ubuntu)
--
evince crashed with SIGSEGV in __memset_sse2() when opening a PDF
https://bugs.launchpad.net/bugs/537331
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing
** Bug watch added: freedesktop.org Bugzilla #28170
http://bugs.freedesktop.org/show_bug.cgi?id=28170
** Also affects: evince via
http://bugs.freedesktop.org/show_bug.cgi?id=28170
Importance: Unknown
Status: Unknown
--
evince crashed with SIGSEGV in __memset_sse2() when opening
dynamic_save() overflow in 2 should be:
http://bugs.ghostscript.com/show_bug.cgi?id=690902
http://code.google.com/p/ghostscript/source/detail?r=10312
** Bug watch added: Ghostscript (AFPL) Bugzilla #690902
http://bugs.ghostscript.com/show_bug.cgi?id=690902
--
Multiple memory corruption
** Project changed: evince = poppler
--
evince crashed with SIGSEGV in __memset_sse2() when opening a PDF
https://bugs.launchpad.net/bugs/537331
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
Public bug reported:
Binary package hint: cvs
Please consider building cvs package with GSSAPI / krb5 support to make
it possible to use :gserver: type repositories.
It should be enough to move libkrb5-dev from Build-Conflicts to Build-
Depends in debian/control and change --without-gssapi to
Public bug reported:
When usplash is purged from system, symlinks in /etc/rcX.d/ are not
removed. postinst scripts calls update-rc.d to install those symlinks,
postrm, however, fails to call 'update-rc.d usplash remove' to remove
them.
Problem was identified on Dapper with usplash 0.2-4,
I've missed one other way to build ucspi-tcp:
(fakeroot|sudo) apt-get source -b ucspi-tcp
Sources are part of Ubuntu archive, binary *-src package is not, because
it simply failed to build.
--
Missing dependency and a small typo
https://launchpad.net/bugs/30536
--
ubuntu-bugs mailing list
To be more specific, axfrdns needs tcpserver to listen for incomming
connections (see run script in service directory) and tcprules to
compile access rules for tcpserver (see Makefile in service
directory).
Package ucspi-tcp can be build from ucspi-tcp-src package available in
Debian
Public bug reported:
When acpi-support package is purged, symlinks for vbesave are left in
/etc/rcX.d directories. Postrm script should call 'update-rc.d vbesave
remove' to remove symlinks installed in postinst.
Problem was fixed in Raphael Hertzog's Debian version of package 0.84-1.
Following
Problem was fixed in 3.0.4-5 (Debian) / 3.0.4-6ubuntu1 (Ubuntu). Latest
version in Edgy is not affected.
Problem was not fixed by using -q switch, but by redirecting also stderr
to /dev/null, not just stdout.
** Changed in: dhcp3 (Ubuntu)
Status: Unconfirmed = Confirmed
--
Banner
Public bug reported:
Attached patch implements following improvements to dhcp3-server init
script:
- use log_daemon_msg for consistent start / stop messages, which also
look good when only Debian lsb logging functions are used
- fix indentation inconsistencies - use only tabs for indenting, not
Attachment - patch against initscript in 3.0.4-6ubuntu4
--
dhcp3-server: minor initscript update
https://launchpad.net/bugs/55800
--
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
21 matches
Mail list logo