cvs commit: ports/graphics/png Makefile ports/graphics/png/files patch-pngrtran.c

Oliver Eikemeier eikemeier at fillmore-labs.com
Wed Jul 7 03:56:09 PDT 2004


Andrey A. Chernov wrote:

> ache        2004-07-07 10:33:28 UTC
>
>   FreeBSD ports repository
>
>   Modified files:
>     graphics/png         Makefile
>   Added files:
>     graphics/png/files   patch-pngrtran.c
>   Log:
>   In 16-bit samples case the starting offsets for the loops are 
> calculated
>   incorrectly which may cause a buffer overrun beyond the beginning of
>   the row buffer.
>
>   Submitted by:   Robert Nagy <robert at openbsd.org>

AFAICS this fixes CAN-2002-1363:
   <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-1363>

Would you mind adding an entry to the vulnerability database for that?

Refer to
   <http://people.freebsd.org/~eik/texts/portaudit_entries.txt>
for some pointers.

Thanks
-Oliver



More information about the cvs-all mailing list