Fedora 10 Update: lcms-1.18-2.fc10
Summary
LittleCMS intends to be a small-footprint, speed optimized color management
engine in open source form.
Update Information:
CVE-2009-0793 The patch was given by lcms upstream on the lcms announce mailing list. % 40littlecms.com
Change Log
* Wed Apr 22 2009 kwizart < kwizart at gmail.com > - 1.18-2
- Add lcms-CVE-2009-0793.patch from 1.18a
* Mon Mar 23 2009 kwizart < kwizart at gmail.com > - 1.18-1
- Update to 1.18 (final)
- Remove upstreamed patches
- Disable autoreconf - patch libtool to prevent rpath issue
* Fri Mar 20 2009 kwizart < kwizart at gmail.com > - 1.18-0.1.beta2
- Update to 1.18beta2
fix bug #487508: CVE-2009-0723 LittleCms integer overflow
fix bug #487512: CVE-2009-0733 LittleCms lack of upper-bounds check on sizes
fix bug #487509: CVE-2009-0581 LittleCms memory leak
* Mon Mar 2 2009 kwizart < kwizart at gmail.com > - 1.17-10
- Fix circle dependency #452352
* Wed Feb 25 2009 Fedora Release Engineering
References
[ 1 ] Bug #492353 - CVE-2009-0793 lcms: Null pointer dereference (DoS) by handling transformations of monochrome profiles https://bugzilla.redhat.com/show_bug.cgi?id=492353
Update Instructions
This update can be installed with the "yum" update program. Use su -c 'yum update lcms' at the command line. For more information, refer to "Managing Software with yum", available at .