-------------------------------------------------------------------------------- Fedora EPEL Update Notification FEDORA-EPEL-2009-0173 2009-07-31 21:06:28.090492 --------------------------------------------------------------------------------
Name : OpenEXR Product : Fedora EPEL 5 Version : 1.4.0a Release : 5.el5 URL : http://www.openexr.com/ Summary : A high dynamic-range (HDR) image file format Description : OpenEXR is a high dynamic-range (HDR) image file format developed by Industrial Light & Magic for use in computer imaging applications. This package contains libraries and sample applications for handling the format.
-------------------------------------------------------------------------------- References:
[ 1 ] Bug #513995 - CVE-2009-1720 OpenEXR: Multiple integer overflows https://bugzilla.redhat.com/show_bug.cgi?id=513995 [ 2 ] Bug #514003 - CVE-2009-1721 OpenEXR: Invalid pointer free by image decompression https://bugzilla.redhat.com/show_bug.cgi?id=514003 [ 3 ] Bug #514016 - CVE-2009-1722 OpenEXR: Integer overflow in decompression of range of values in the pixel data https://bugzilla.redhat.com/show_bug.cgi?id=514016 --------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use su -c 'yum update OpenEXR' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora EPEL GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------
epel-package-announce@lists.fedoraproject.org