Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 11: 2009-7494 Critical: Ocaml-Camlimages Integer Overflow

fedora
Calendar Grey August 12, 2009
Dist Fedora Esm H88
CVE-2009-2295 affects the ocaml-camlimages package in Fedora 11, addressing critical integer overflow vulnerabilities; discover the details of this patch.
CVE 2009-2295

Summary

CamlImages is an image processing library for Objective CAML, which provides:

basic functions for image processing and loading/saving, various image file

formats (hence providing a translation facility from format to format),

and an interface with the Caml graphics library allows to display images

in the Graphics module screen and to mix them with Caml drawings

In addition, the library can handle huge images that cannot be (or can hardly

be) stored into the main memory (the library then automatically creates swap

files and escapes them to reduce the memory usage).

Update Information:

CVE 2009-2295

Change Log

* Fri Jul 3 2009 Richard W.M. Jones - 3.0.1-7.fc11.2 - ocaml-camlimages: PNG reader multiple integer overflows (CVE 2009-2295 / RHBZ#509531).

References


[ 1 ] Bug #509531 - CVE-2009-2295 ocaml-camlimages: PNG reader multiple integer overflows (oCERT-2009-009) https://bugzilla.redhat.com/show_bug.cgi?id=509531

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update ocaml-camlimages' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: ocaml-camlimages
Product: Fedora 11
Version: 3.0.1
Release: 7.fc11.2
URL: Summary : OCaml image processing library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here