[Bug 212698] CVE-2006-4513: multiple integer overflows in wv < 1.2.3

bugzilla at redhat.com bugzilla at redhat.com
Sun Oct 29 18:29:06 UTC 2006


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: CVE-2006-4513: multiple integer overflows in wv < 1.2.3


https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=212698





------- Additional Comments From uwog at uwog.net  2006-10-29 13:28 EST -------
In AbiWord CVS the backports to wv have already been made too, so AbiWord 2.4.6
will automatically get the fixes. I'll update AbiWord 2.3.5 in the meantime with
a patch as well.

Also note that the fix described in comment 2 prevents the overflow, but _will
crash_ on the documents that triggered the overflow in the first place. Please
apply the attached diff as well.

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the Fedora-security-list mailing list