[Bug 200199] [security] graphics/rawstudio - CVE-2015-3885

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Sat May 30 10:17:22 UTC 2015


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=200199

--- Comment #6 from Jason Unovitch <jason.unovitch at gmail.com> ---
Assign ports-secteam@ to CC to take PR.

Maintainer feedback + was provided in comment 4.

Proposed changelog:

- Apply vendor patch for "Avoid overflow in ljpeg_start()" (changeset 983bda1f)
to prevent a denial of service (crash) via a crafted image

PR: 200199
Obtained from:
https://github.com/rawstudio/rawstudio/commit/983bda1f0fa5fa86884381208274198a620f006e
Security: CVE-2015-3885
Security: 57325ecf-facc-11e4-968f-b888e347c638
Submitted by: Jason Unovitch <jason unovitch gmail com>
Reported by: Sevan Janiyan <venture37 geeklan co uk>

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list