Overview
Request 983868 accepted
- Update to 1.12.1:
* Increased GLib minimum version to 2.20.
* Added 12 new test inputs, including bad inputs to handle gracefully.
* Added a few symbols to API documentation that were accidentally left out.
* Bug fixes:
+ huntr.dev CVE-2022-2061: Out-of-bounds read in libnsgif's lzw_decode()
+ [unfiled] Undefined behavior in libnsgif due to uninitialized frame fields.
+ [unfiled] Signed integer overflow in chafa_pack_color().
+ [unfiled] Integer overflow in normalization pass on some images.
+ [unfiled] Potential unaligned access with corrupt XWD images.
+ [unfiled] Integer overflow in quantization on some images.
+ [unfiled] Calculating offset from NULL pointer in LodePNG.
Request History
jubalh created request
- Update to 1.12.1:
* Increased GLib minimum version to 2.20.
* Added 12 new test inputs, including bad inputs to handle gracefully.
* Added a few symbols to API documentation that were accidentally left out.
* Bug fixes:
+ huntr.dev CVE-2022-2061: Out-of-bounds read in libnsgif's lzw_decode()
+ [unfiled] Undefined behavior in libnsgif due to uninitialized frame fields.
+ [unfiled] Signed integer overflow in chafa_pack_color().
+ [unfiled] Integer overflow in normalization pass on some images.
+ [unfiled] Potential unaligned access with corrupt XWD images.
+ [unfiled] Integer overflow in quantization on some images.
+ [unfiled] Calculating offset from NULL pointer in LodePNG.
dimstar_suse added openSUSE:Factory:Staging:adi:18 as a reviewer
Being evaluated by staging project "openSUSE:Factory:Staging:adi:18"
dimstar_suse accepted review
Picked "openSUSE:Factory:Staging:adi:18"
factory-auto added opensuse-review-team as a reviewer
Please review sources
factory-auto accepted review
Check script succeeded
dimstar accepted review
licensedigger accepted review
ok
dimstar_suse accepted review
Staging Project openSUSE:Factory:Staging:adi:18 got accepted.
dimstar_suse approved review
Staging Project openSUSE:Factory:Staging:adi:18 got accepted.
dimstar_suse accepted request
Staging Project openSUSE:Factory:Staging:adi:18 got accepted.