oss-sec mailing list archives

CVE-2005-2096 and gamera


From: Raphael Geissert <geissert () debian org>
Date: Sat, 17 Jan 2015 12:55:41 +0100

Hi,

While lurking around the Debian archive and codesearch[0], I noticed that 
gamera[1] embeds a copy of zlib that is vulnerable to CVE-2005-2096.

Oh joy.

(Debian's package doesn't seem to be affected, as it does an rm -r on the 
embedded copy)

[0]http://codesearch.debian.net/
[1]http://gamera.sourceforge.net/

Cheers,
-- 
Raphael Geissert - Debian Developer
www.debian.org - get.debian.net


Current thread: