Bug#696485: Fix for Bug#696485: inkscape: CVE-2012-5656

2012-12-23 Thread John Paul Adrian Glaubitz
Hello, after having a few problems building Inkscape (due to missing libpoppler-private-dev as I checked out the Debian packaging source from the git repository [1]), I managed to build Inkscape with my patch (which also required an additional review). I have committed all changes (including the

Bug#696485: Fix for Bug#696485: inkscape: CVE-2012-5656

2012-12-23 Thread John Paul Adrian Glaubitz
Hi there, I have checked out the source for the Debian packaging from [1] and ported the changes [2] to fix the vulnerability CVE-2012-5656. I have created a patch and I would be willing to do an NMU to help closing this bug. Cheers, Adrian > [1] http://anonscm.debian.org/gitweb/?p=git/collab-m

Bug#696485: inkscape: CVE-2012-5656

2012-12-21 Thread Alex Valavanis
fowarded 696485 https://bugs.launchpad.net/inkscape/+bug/ thanks Note that this issue is fixed upstream in Inkscape 0.48.4 along with many other bugs. It would be a good idea to upgrade the package soon. Package: inkscape Severity: grave Tags: security Justification: user security hole Hi, CVE-20

Bug#696485: inkscape: CVE-2012-5656

2012-12-21 Thread Moritz Muehlenhoff
Package: inkscape Severity: grave Tags: security Justification: user security hole Hi, CVE-2012-5656 was assigned to this security issues: https://bugs.launchpad.net/inkscape/+bug/1025185 Fix: http://bazaar.launchpad.net/~inkscape.dev/inkscape/trunk/revision/11931 Cheers, Moritz -- To