Re: backport of CVE-2010-3364 to vips/nip2 in testing

2010-10-23 Thread Adam D. Barratt
On Sun, 2010-10-10 at 15:29 -0400, Jay Berkenbilt wrote: > The bug reported in bug 598296 is the security vulnerability > CVE-2010-3364. The bug was reported against vips 7.22, but it actually > affects both vips and nip2, and it is present in all previous versions. > Its fix is a simple change to

backport of CVE-2010-3364 to vips/nip2 in testing

2010-10-10 Thread Jay Berkenbilt
The bug reported in bug 598296 is the security vulnerability CVE-2010-3364. The bug was reported against vips 7.22, but it actually affects both vips and nip2, and it is present in all previous versions. Its fix is a simple change to some wrapper shell scripts. The versions currently in unstable