Mon Apr 04 2022 Benjamin A. Beasley <code@musicinmybrain.net> - 1:2.68a-9
- Backport a6700362 “Memory: add MEM_malloc_arrayN() function to protect against
overflow.” – a prerequisite for several security fixes
- Backport d30cc1ea “Fix buffer overflows in TIFF, PNG, IRIS, DPX, HDR and AVI
loading.” Fix CVE-2017-2899 (fix RHBZ#1610813),
fix CVE-2017-2900 (fix RHBZ#1610816), fix CVE-2017-2901 (fix RHBZ#1610819),
fix CVE-2017-2902 (fix RHBZ#1610822), fix CVE-2017-2903 (fix RHBZ#1610824),
fix CVE-2017-2904 (fix RHBZ#1610827), fix CVE-2017-2905 (fix RHBZ#1610829),
fix CVE-2017-2906 (fix RHBZ#1610832), fix CVE-2017-2907 (fix RHBZ#1610834),
fix CVE-2017-2918 (fix RHBZ#1610843)
- Backport 07aed40 “Fix buffer overflow vulernability in thumbnail file
reading.” Fix CVE-2017-2908 (fix RHBZ#1610836)
- Backport e04d7c4 “Fix buffer overflow vulnerabilities in mesh code.”
Fix CVE-2017-12081 (fix RHBZ#1610865), fix CVE-2017-12082 (fix RHBZ#1610862),
fix CVE-2017-12086 (fix RHBZ#1571612), fix CVE-2017-12099 (fix RHBZ#1610860),
fix CVE-2017-12100 (fix RHBZ#1610858), fix CVE-2017-12101 (fix RHBZ#1610856),
fix CVE-2017-12105 (fix RHBZ#1610840)
- Backport e6df028 “Fix buffer overflow vulnerability in curve, font, particles code.”
Fix CVE-2017-12102 (fix RHBZ#1610851), fix CVE-2017-12103 (fix RHBZ#1610848),
fix CVE-2017-12104 (fix RHBZ#1610846)