freebsd-ports/print/ghostscript8/files
Hiroki Sato 6fefb478d6 Fix multiple integer overflows and lack of boundary check found
and marked as CVE-2009-583 and CVE-2009-584:

CVE-2009-583:

  Multiple integer overflows in icc.c in the International Color
  Consortium (ICC) Format library (aka icclib), as used in
  Ghostscript 8.64 and earlier and Argyll Color Management
  System (CMS) 1.0.3 and earlier, allow context-dependent
  attackers to cause a denial of service (heap-based buffer
  overflow and application crash) or possibly execute arbitrary
  code by using a device file for a translation request that
  operates on a crafted image file and targets a certain "native
  color space," related to an ICC profile in a (1) PostScript
  or (2) PDF file with embedded images.

CVE-2009-584:

  icc.c in the International Color Consortium (ICC) Format
  library (aka icclib), as used in Ghostscript 8.64 and earlier
  and Argyll Color Management System (CMS) 1.0.3 and earlier,
  allows context-dependent attackers to cause a denial of
  service (application crash) or possibly execute arbitrary code
  by using a device file for processing a crafted image file
  associated with large integer values for certain sizes, related
  to an ICC profile in a (1) PostScript or (2) PDF file with
  embedded images.

Security:	CVE-2009-583
Security:	CVE-2009-584
Approved by:	portmgr (pav)
2009-04-20 08:08:50 +00:00
..
epag.contrib.mak
lqx70ch.upp
lqx70cl.upp
lqx70cm.upp
Makefile.dmprt
Makefile.epag
Makefile.pcl3
patch-base-contrib.mak
patch-base-devs.mak
patch-base-errors.h
patch-base-gdevl256.c
patch-base-gdevperm.c
patch-base-gdevvglb.c
patch-base-gxobj.h
patch-base-Makefile.in
patch-base-unix-gcc.mak
patch-base-unixinst.mak
patch-contrib__japanese__dmp_site.ps
patch-contrib__japanese__gdevdmpr.c
patch-CVE-2009-0583,0584 Fix multiple integer overflows and lack of boundary check found 2009-04-20 08:08:50 +00:00
patch-epag__gdevepag.c
patch-jbig2dec__os_types.h
patch-lib-FAPIcidfmap
patch-lib-FAPIconfig
patch-psi-fapi_ft.c
patch-psi-zicc.c
patch-Resource-Init-cidfmap
patch-Resource-Init-gs_statd.ps
patch-Resource-Init-gs_ttf.ps
patch-Resource-Init-pdf_font.ps
pkg-message.in