[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    Re: [oss-security] potrace: invalid memory access in findnext (decompose.c)
From:       Agostino Sarubbo <ago () gentoo ! org>
Date:       2017-02-27 10:52:36
Message-ID: 1621585.jUp2hzoFSL () blackgate
[Download RAW message or body]


On Saturday 08 October 2016 22:29:54 Agostino Sarubbo wrote:
> Permalink:
> https://blogs.gentoo.org/ago/2016/08/29/potrace-invalid-memory-access-in-fin
> dnext-decompose-c/

I'd like to notify that upstream released a patch here:
http://potrace.sourceforge.net/patches/potrace-1.13-CVE-2016-8685.patch

and it is fixed in the 1.14 release

-- 
Agostino Sarubbo
Gentoo Linux Developer


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic