File _patchinfo of Package patchinfo
<patchinfo incident="inkscape"> <packager>lijews</packager> <issue tracker="cve" id="CVE-2012-6076"></issue> <issue tracker="cve" id="CVE-2012-5656"></issue> <issue tracker="bnc" id="796306">VUL-1: CVE-2012-6076: inkscape: reads .eps files from /tmp instead of the cwd</issue> <issue tracker="bnc" id="794958">VUL-0: inkscape: XXE vulnerability during rasterization of SVG images</issue> <category>security</category> <rating>moderate</rating> <summary>inkscape: two security fixes</summary> <description>Inkscape was updated to fix two security issues: - inkscape occasionaly tries to open EPS files from /tmp (bnc#796306, CVE-2012-6076). - inkscape could load XML from external hosts (bnc#794958, CWE-827, CVE-2012-5656).</description> </patchinfo>