Overview

Request 133225 accepted

- fixed bnc#724628
VUL-0: CVE-2012-3481: gimp: GIF plugin 'height' / 'len' integer overflow leading to heap-based buffer overflow
- fixed bnc#763595
VUL-0: CVE-2012-2763: gimp: buffer overflow in script-fu's server component
- fixed bnc#769565
VUL-1: CVE-2012-3236: gimp: NULL ptr crash in fit format handler
- fixed bnc#775433
VUL-0: CVE-2012-3403: gimp: Heap buffer overflow when loading external palette files

- Call relevant macros in %post/%postun:
+ %desktop_database_post/postun because the package ships at
least one desktop file.
+ %icon_theme_cache_post/postun because the package ships themed
icons.
- Pass %{?no_lang_C} to %find_lang so that english documentation
can be packaged with the program, and not in the lang subpackage.

- Move ownership from various directories from gimp to
libgimp-2_0-0, to not force external gimp plug-ins/modules/etc.
to have a gimp BuildRequires for directory ownership.

- Split gimp libraries in libgimp-2_0-0 and libgimpui-2_0-0
subpackages, and add baselibs.conf for those. Fix bnc#660439.
- Change accordingly the Requires of the devel package, and the
scriptlets to run ldconfig.
- Remove explicit glib2-devel and gtk2-devel Requires in devel
package: they will automatically be added the pkgconfig() way.
- Move the gimptool-2.0 man page to the devel subpackage, where the
binary lives.

Loading...
Request History
Stefan Lijewski's avatar

lijews created request

- fixed bnc#724628
VUL-0: CVE-2012-3481: gimp: GIF plugin 'height' / 'len' integer overflow leading to heap-based buffer overflow
- fixed bnc#763595
VUL-0: CVE-2012-2763: gimp: buffer overflow in script-fu's server component
- fixed bnc#769565
VUL-1: CVE-2012-3236: gimp: NULL ptr crash in fit format handler
- fixed bnc#775433
VUL-0: CVE-2012-3403: gimp: Heap buffer overflow when loading external palette files

- Call relevant macros in %post/%postun:
+ %desktop_database_post/postun because the package ships at
least one desktop file.
+ %icon_theme_cache_post/postun because the package ships themed
icons.
- Pass %{?no_lang_C} to %find_lang so that english documentation
can be packaged with the program, and not in the lang subpackage.

- Move ownership from various directories from gimp to
libgimp-2_0-0, to not force external gimp plug-ins/modules/etc.
to have a gimp BuildRequires for directory ownership.

- Split gimp libraries in libgimp-2_0-0 and libgimpui-2_0-0
subpackages, and add baselibs.conf for those. Fix bnc#660439.
- Change accordingly the Requires of the devel package, and the
scriptlets to run ldconfig.
- Remove explicit glib2-devel and gtk2-devel Requires in devel
package: they will automatically be added the pkgconfig() way.
- Move the gimptool-2.0 man page to the devel subpackage, where the
binary lives.


Stefan Lijewski's avatar

lijews accepted request

openSUSE Build Service is sponsored by