Bug#745471: lcms2: CVE-2014-0459

2014-04-22 Thread Thomas Weber
Control: tags -1 fixed-upstream Control: forwarded -1 https://github.com/mm2/Little-CMS/issues/29 thanks I intend to upload a fixed version soon, using the upstream patch. Thanks Thomas -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe

Bug#745471: lcms2: CVE-2014-0459

2014-04-21 Thread Moritz Muehlenhoff
Package: lcms2 Severity: important Tags: security Justification: user security hole Hi, Oracle fixed a denial of service issues in the lcms code copy in Java/OpenJDK: http://www.oracle.com/technetwork/topics/security/cpuapr2014-1972952.html The patch is here and affects lcms2: http://hg.openjdk.j