Package: openmotif
Version: 2.1.30-5, 2.2.3-1
Severity: grave
Tags: security

OpenMotif includes an outdated copy of the Xpm library with a number of
vulnerabilities: CAN-2004-0687, CAN-2004-0688, CAN-2004-0914, and
CAN-2005-0605.

(Note that the patches supplied by X.Org contain several regressions
(#286164, #308783).  Hopefully, Debian's xfree86 package will have a
definitive patch soon.)

Thanks,

Matej


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to