Tuesday, December 3, 2013

[USN-2047-1] pixman vulnerability

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.15 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
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=fETo
-----END PGP SIGNATURE-----
==========================================================================
Ubuntu Security Notice USN-2047-1
December 03, 2013

pixman vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 13.10
- Ubuntu 13.04
- Ubuntu 12.10
- Ubuntu 12.04 LTS

Summary:

pixman could be made to crash if it opened a specially crafted file.

Software Description:
- pixman: pixel-manipulation library for X and cairo

Details:

Bryan Quigley discovered an integer underflow in pixman. If a user were
tricked into opening a specially crafted file, an attacker could cause a
denial of service via application crash.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 13.10:
libpixman-1-0 0.30.2-1ubuntu0.1

Ubuntu 13.04:
libpixman-1-0 0.28.2-0ubuntu1.1

Ubuntu 12.10:
libpixman-1-0 0.26.0-3ubuntu0.1

Ubuntu 12.04 LTS:
libpixman-1-0 0.24.4-1ubuntu0.1

After a standard system update you need to restart your session to make
all the necessary changes.

References:
http://www.ubuntu.com/usn/usn-2047-1
https://launchpad.net/bugs/1197921

Package Information:
https://launchpad.net/ubuntu/+source/pixman/0.30.2-1ubuntu0.1
https://launchpad.net/ubuntu/+source/pixman/0.28.2-0ubuntu1.1
https://launchpad.net/ubuntu/+source/pixman/0.26.0-3ubuntu0.1
https://launchpad.net/ubuntu/+source/pixman/0.24.4-1ubuntu0.1

No comments:

Post a Comment