public inbox for cygwin-apps@cygwin.com
 help / color / mirror / Atom feed
* [SECURITY] jbigkit (CVE-2013-6369)
@ 2014-04-09  4:37 Yaakov (Cygwin/X)
  2014-05-05  8:42 ` Corinna Vinschen
  0 siblings, 1 reply; 2+ messages in thread
From: Yaakov (Cygwin/X) @ 2014-04-09  4:37 UTC (permalink / raw)
  To: cygwin-apps

Chuck,

A vulnerability has been announced in jbigkit[1][2]; please either 
update to 2.1, or add the following patch to 2.0:

http://pkgs.fedoraproject.org/cgit/jbigkit.git/plain/jbigkit-CVE-2013-6369.patch

TIA,


Yaakov

[1] https://www.cl.cam.ac.uk/~mgk25/jbigkit/CHANGES
[2] https://bugzilla.redhat.com/show_bug.cgi?id=1032273

^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: [SECURITY] jbigkit (CVE-2013-6369)
  2014-04-09  4:37 [SECURITY] jbigkit (CVE-2013-6369) Yaakov (Cygwin/X)
@ 2014-05-05  8:42 ` Corinna Vinschen
  0 siblings, 0 replies; 2+ messages in thread
From: Corinna Vinschen @ 2014-05-05  8:42 UTC (permalink / raw)
  To: cygwin-apps; +Cc: Charles Wilson

[-- Attachment #1: Type: text/plain, Size: 593 bytes --]

Hi Yaakov,

On Apr  8 23:37, Yaakov (Cygwin/X) wrote:
> Chuck,
> 
> A vulnerability has been announced in jbigkit[1][2]; please either
> update to 2.1, or add the following patch to 2.0:
> 
> http://pkgs.fedoraproject.org/cgit/jbigkit.git/plain/jbigkit-CVE-2013-6369.patch

I'm still hoping, but it looks a lot like Chuck has left us.  Do you
have a cygwinports package ready for this problem, by any chance?


Thanks,
Corinna

-- 
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Maintainer                 cygwin AT cygwin DOT com
Red Hat

[-- Attachment #2: Type: application/pgp-signature, Size: 819 bytes --]

^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2014-05-05  8:42 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2014-04-09  4:37 [SECURITY] jbigkit (CVE-2013-6369) Yaakov (Cygwin/X)
2014-05-05  8:42 ` Corinna Vinschen

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).