Friday, September 29, 2017

Re: [security] graphics/libraw

On Thu, Sep 28, 2017 at 10:18 PM, Rafael Sadowski <rafael@sizeofvoid.org> wrote:
> This is bugfix release, changes are (compared to 0.18.2):
>
> - Fix for possible buffer overrun in kodak_65000 decoder
> - Fix for possible heap overrun in Canon makernotes parser
> - Fix for CVE-2017-13735 CVE-2017-14265: Additional check for X-Trans
> CFA pattern data
>
> -- https://www.libraw.org/news/libraw-0-18-5
>
> No shared libs changes detected by nm(1). I'd like to take the
> maintainership.
>
> Best regards,
>
> Rafael Sadowksi

ok dcoppa@

But please, since we're approaching the lock, also wait for an ok from
naddy@ or sthen@ ...

Ciao!
David

No comments:

Post a Comment