Re: pnm loader fixes and tests



Understood...

But having fixes for known holes merged only in the unstable and
unreleased version is especially sucky.  I was hoping that some attempt
was being made to avoid it.  

Federico do you have any plan to deal with this stuff?

--Larry

On Wed, 2001-08-29 at 16:44, Owen Taylor wrote:
> 
> Havoc Pennington <hp redhat com> writes:
> 
> > Larry Ewing <lewing ximian com> writes:
> > > Is anyone backporting these fixes to the stable branch where they are
> > > still absolutely critical?
> > 
> > It's nontrivial because the code has changed quite a bit. I think for
> > the most part the stable branch will need its own test suite action
> > and someone to work on it for a week or so. 
> > 
> > I don't have a week...
> > 
> > Agree it's critical. Evolution is pretty darn easy to crash via
> > malicious email while it remains unfixed, right.
> 
> Note however, than none of the fixes that we are making at the
> current time actually address the issue of _auditing_ the image
> loaders, and until that is done, there will be easy ways of crashing
> (or worse) any program using GdkPixbuf.
> 
> Regards,
>                                         Owen





[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]