inkscape: Inkscape Vector Illustration Program ---------------------------------------------------------------------- File: inkscape-0.43-20.5.3.i586.rpm Patchrpm: inkscape-0.43-20.5.3.i586.patch.rpm Version: 0.43-20.5.3 Size: 6928 kB Patchsize: 4067 kB Date: Fri 06 Apr 2007 2:32:42 CEST Source: inkscape-0.43-20.5.3.src.rpm Security: Yes ---------------------------------------------------------------------- Description: Several format string problems where fixed in inkscape. CVE-2007-1463: A format string vulnerability in Inkscape allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a URI, which is not properly handled by certain dialogs. CVE-2007-1464: Format string vulnerability in the whiteboard Jabber protocol in Inkscape allows user-assisted remote attackers to execute arbitrary code via unspecified vectors.