<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="6ad80b526d067f2779ff20ae5d54035a"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="imlib2-loaders-2244"
    timestamp="1163003559"
    engine="1.0">
  <yum:name>imlib2-loaders</yum:name>
  <summary lang="en">imlib2: Fixed various security problems in imlib2-loaders</summary>
  <summary lang="de">imlib2: Behebt einige Probleme in den imlib2-loaders</summary>
  <description lang="en">Various security problems have been fixed in the imlib2
image loaders:

CVE-2006-4809: A stack buffer overflow in loader_pnm.c
could be used by attackers to execute code by supplying a
handcrafted PNM image.

CVE-2006-4808: A heap buffer overflow in loader_tga.c could
potentially be used by attackers to execute code by
supplying a handcrafted TGA image.

CVE-2006-4807: A out of bounds memory read in loader_tga.c
could be used to crash the imlib2 using application with a
handcrafted TGA image.

CVE-2006-4806: Various integer overflows in width*height
calculations could lead to heap overflows which could
potentially be used to execute code. Affected here are the
ARGB, PNG, LBM, JPEG and TIFF loaders.

Additionaly loading of TIFF images on 64bit systems is now
possible.
</description>
  <description lang="de">Mehrere Sicherheitsproblem wurden in den Bildladeroutinen
der imlib2 Bibliothek gefunden:

CVE-2006-4809: Ein Stack?berlauf in loader_pnm.c konnte
durch Angreifer benutzt werden um Code auszuf?hren durch
Laden eines pr?parierten PNM Bildes.

CVE-2006-4808: Ein Heap?berlauf in loader_tga.c konnte
potentiell von einem Angreifer benutzt werden um Code
auszuf?hren durch Laden eines pr?parierten TGA Bildes.

CVE-2006-4807: Ein ausserhalb von Arraygrenzen Lesen in
loader_tga.c konnte von einem Angreifer zum Absturzbringen
eines Programmes das TGA Bilder l?dt benutzt werden.

CVE-2006-4806: Verschiedene Integer?berl?ufe in H?he*Breite
Berechnungen konnten zu Heap?berl?ufen f?hren, die
potentielle zum Ausf?hren von Code benutzt werden k?nnen.
Betroffen hier sind die Laderoutinen von  ARGB, PNG, LBM,
JPEG und TIFF Bildern.

Weiterhin ist jetzt das Laden von TIFF Bildern auf 64bit
Systemen m?glich.
</description>
  <yum:version ver="2244" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="imlib2-loaders" epoch="0" ver="1.2.1" rel="17.7" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>imlib2-loaders</name>
      <arch>i586</arch>
      <version epoch="0" ver="1.2.1" rel="17.7"/>
      <checksum type="sha" pkgid="YES">6f9a399a9b886cfbbaa60743df9041a6a5c9407b</checksum>
      <time file="1163092634" build="1163003559"/>
      <size package="41986" installed="109229" archive="113084"/>
      <location href="rpm/i586/imlib2-loaders-1.2.1-17.7.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="imlib2-loaders" epoch="0" ver="1.2.1" rel="17.7" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="imlib2-loaders"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <patchrpm>
          <location href="rpm/i586/imlib2-loaders-1.2.1-17.7.i586.patch.rpm"/>
          <checksum type="sha">7cf02477628662d8614bf4e5a40f3f695c129d49</checksum>
          <time file="1163095211" build="1163003559"/>
          <size package="40725" archive="100784"/>
          <base-version epoch="0" ver="1.2.1" rel="17"/>
        </patchrpm>
        <deltarpm>
          <location href="rpm/i586/imlib2-loaders-1.2.1-17_17.7.i586.delta.rpm"/>
          <checksum type="sha">9c57e6eab9e591402569cb3e11c802f1546105be</checksum>
          <time file="1163095212" build="1163003559"/>
          <size package="17328" archive="0"/>
          <base-version epoch="0" ver="1.2.1" rel="17" md5sum="35df13922d1f74fca0a7bfb4446243e8" buildtime="1146556219" sequence_info="imlib2-loaders-1.2.1-17-282b137a10bcfa3c004ee41e9fa9c650a3"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>imlib2-loaders</name>
      <arch>ppc</arch>
      <version epoch="0" ver="1.2.1" rel="17.7"/>
      <checksum type="sha" pkgid="YES">33a76584f8975755d519faa142adf1b1a98a730e</checksum>
      <time file="1163092676" build="1163003472"/>
      <size package="52883" installed="170133" archive="173988"/>
      <location href="rpm/ppc/imlib2-loaders-1.2.1-17.7.ppc.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="imlib2-loaders" epoch="0" ver="1.2.1" rel="17.7" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="imlib2-loaders"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <patchrpm>
          <location href="rpm/ppc/imlib2-loaders-1.2.1-17.7.ppc.patch.rpm"/>
          <checksum type="sha">81d75800c1936948bf7d80a57e7fe588156aa8a6</checksum>
          <time file="1163095214" build="1163003472"/>
          <size package="49900" archive="150844"/>
          <base-version epoch="0" ver="1.2.1" rel="17"/>
        </patchrpm>
        <deltarpm>
          <location href="rpm/ppc/imlib2-loaders-1.2.1-17_17.7.ppc.delta.rpm"/>
          <checksum type="sha">29a600998a0a089a8446342165d26dbe8c118c78</checksum>
          <time file="1163095215" build="1163003472"/>
          <size package="17359" archive="0"/>
          <base-version epoch="0" ver="1.2.1" rel="17" md5sum="d3c456130eeff4cb665409e81d3ddbc0" buildtime="1146556427" sequence_info="imlib2-loaders-1.2.1-17-08409ce5d59ef53d527795546cddace0a3"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>imlib2-loaders</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="1.2.1" rel="17.7"/>
      <checksum type="sha" pkgid="YES">373955455ad0c584feb6ccbe77f5888384058945</checksum>
      <time file="1163092471" build="1163003475"/>
      <size package="42121" installed="128729" archive="132624"/>
      <location href="rpm/x86_64/imlib2-loaders-1.2.1-17.7.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="imlib2-loaders" epoch="0" ver="1.2.1" rel="17.7" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="imlib2-loaders"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <patchrpm>
          <location href="rpm/x86_64/imlib2-loaders-1.2.1-17.7.x86_64.patch.rpm"/>
          <checksum type="sha">74ff90d0d45f42a1fd8e589a0a169aabce8efcca</checksum>
          <time file="1163095217" build="1163003475"/>
          <size package="40937" archive="120196"/>
          <base-version epoch="0" ver="1.2.1" rel="17"/>
        </patchrpm>
        <deltarpm>
          <location href="rpm/x86_64/imlib2-loaders-1.2.1-17_17.7.x86_64.delta.rpm"/>
          <checksum type="sha">33f09461d8c867e4f4e4dbb977907041af972bf7</checksum>
          <time file="1163095217" build="1163003475"/>
          <size package="16462" archive="0"/>
          <base-version epoch="0" ver="1.2.1" rel="17" md5sum="5f31e71e722f4da784f039cb5c24f657" buildtime="1146557596" sequence_info="imlib2-loaders-1.2.1-17-299792fd77930dae7f85c0c7486d3539a3"/>
        </deltarpm>
      </pkgfiles>
    </package>
  </atoms>
</patch>
