* Adeodato Simó [Sat, 06 Nov 2004 04:38:16 +0100]: > I attach a possible NMU patch for the kpdf integer overflow > vulnerability, still present in sarge, ready to be compiled and > uploaded by some member of the release team or d-qt-kde.
in case somebody was actually thinking of uploading the NMU, please hold on: it seems there is another unfixed vulnerability, this time in kfax (via a private libtiff copy!). see #280373 for some details. -- Adeodato Simó EM: asp16 [ykwim] alu.ua.es | PK: DA6AE621 Listening to: Alaska y Dinarama - Lo siento Love in your heart wasn't put there to stay. Love isn't love 'til you give it away. -- Oscar Hammerstein II