gtk2-2.10.4-29.0.1.AXS3

エラータID: AXSA:2013-34:01

Release date: 
Monday, January 21, 2013 - 13:20
Subject: 
gtk2-2.10.4-29.0.1.AXS3
Affected Channels: 
Asianux Server 3 for x86
Asianux Server 3 for x86_64
Severity: 
High
Description: 

GTK+ is a multi-platform toolkit for creating graphical user interfaces. Offering a complete set of widgets, GTK+ is suitable for projects ranging from small one-off tools to complete application suites.

Security issues fixed with this release:

• CVE-2012-2370
Multiple integer overflows in the read_bitmap_file_data function in io-xbm.c in gdk-pixbuf before 2.26.1 allow remote attackers to cause a denial of service (application crash) via a negative (1) height or (2) width in an XBM file, which triggers a heap-based buffer overflow.

Fixed bugs:

• Fixed the GtkNotebook widget's handling of drag-and-drop operations on tabs: applications using the widget do no crash with a segmentation fault any longer.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. gtk2-2.10.4-29.0.1.AXS3.src.rpm
    MD5: 31af5a610b315b8d23311ea45468df26
    SHA-256: a94ed3a98349b28de770529f3448b8e3ff03dd472871cf61474c4edad5204c60
    Size: 14.23 MB

Asianux Server 3 for x86
  1. gtk2-2.10.4-29.0.1.AXS3.i386.rpm
    MD5: 9aa00b9a17a88854ede6fce71dd1fdcd
    SHA-256: 82da5e1120069fb3bf19a3c913b8cf4ad38d0adc74f289d2c4d96e325038c7e4
    Size: 6.56 MB
  2. gtk2-devel-2.10.4-29.0.1.AXS3.i386.rpm
    MD5: 54ca4bdbaf84e1577cbb5e47d56c081c
    SHA-256: 7210d0f7d8e24ce61c7979d6b8533f31df1bfcf8423367be7e113b58c6693d00
    Size: 2.80 MB

Asianux Server 3 for x86_64
  1. gtk2-2.10.4-29.0.1.AXS3.x86_64.rpm
    MD5: 879aec69ef1fe42f18cf7d2c0f40be1e
    SHA-256: 828062bd27b30011f876e4cdc5ff9e55af033742babe990e35c03eed3ce982aa
    Size: 6.58 MB
  2. gtk2-devel-2.10.4-29.0.1.AXS3.x86_64.rpm
    MD5: 2c39ea2b3c11cf4c80e86194665632d4
    SHA-256: 7bc6dc659b443e4c9b30356674928cfcbcf2d30d76ff0c86ee205de792142c03
    Size: 2.80 MB