UbuntuUpdates.org

Package "graphviz-doc"

Name: graphviz-doc

Description:

additional documentation for graphviz

Latest version: 2.26.3-10ubuntu1.2
Release: precise (12.04)
Level: updates
Repository: main
Head package: graphviz
Homepage: http://www.graphviz.org/

Links


Download "graphviz-doc"


Other versions of "graphviz-doc" in Precise

Repository Area Version
base main 2.26.3-10ubuntu1
security main 2.26.3-10ubuntu1.2

Changelog

Version: 2.26.3-10ubuntu1.2 2014-12-09 03:06:21 UTC

  graphviz (2.26.3-10ubuntu1.2) precise-security; urgency=medium

  * SECURITY UPDATE: Format string vulnerability may allow attackers to
    cause a denial of service or possibly execute code.
    - debian/patches/CVE-2014-9157.patch: Fix format string vulnerability in
      lib/cgraph/scan.l yyerror() routine.
    - CVE-2014-9157
 -- Seth Arnold <email address hidden> Thu, 04 Dec 2014 16:26:23 -0800

Source diff to previous version
CVE-2014-9157 Format string vulnerability in the yyerror function in lib/cgraph/scan.l in Graphviz allows remote attackers to have unspecified impact via format st

Version: 2.26.3-10ubuntu1.1 2014-01-16 14:07:07 UTC

  graphviz (2.26.3-10ubuntu1.1) precise-security; urgency=low

  * SECURITY UPDATE: buffer overflow in yyerror()
    - debian/patches/CVE-2014-0978.patch: don't overflow buf in
      lib/cgraph/scan.l.
    - CVE-2014-0978
  * SECURITY UPDATE: buffer overflow in yyerror() security fix
    - debian/patches/CVE-2014-1235.patch: once again, don't overflow buf
      in lib/cgraph/scan.l.
    - CVE-2014-1235
  * SECURITY UPDATE: buffer overflow in chkNum of scanner
    - debian/patches/CVE-2014-1236.patch: don't overflow buf in
      lib/cgraph/scan.l.
    - CVE-2014-1236
 -- Marc Deslauriers <email address hidden> Tue, 14 Jan 2014 13:36:27 -0500

CVE-2014-0978 Stack-based buffer overflow in the yyerror function in ...
CVE-2014-1236 Stack-based buffer overflow in the chkNum function in ...



About   -   Send Feedback to @ubuntu_updates