[Bug 242416] Review Request: texlive - Binaries for the TeX formatting system

bugzilla at redhat.com bugzilla at redhat.com
Thu Nov 29 12:08:59 UTC 2007


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: Review Request: texlive - Binaries for the TeX formatting system


https://bugzilla.redhat.com/show_bug.cgi?id=242416





------- Additional Comments From jnovy at redhat.com  2007-11-29 07:08 EST -------
So the 0.15 is now out. The most important news are:

- fix t1lib flaw CVE-2007-4033 (#352271)
- fix CVE-2007-4352 CVE-2007-5392 CVE-2007-5393, various xpdf flaws (#345121)
- xdvi won't segfault if DVI file contains character which
  is not present in font (#243630)
- fix dvips -z buffer overflow with long href (#368591)
- fix insecure usage of temporary file in dviljk (#368611, #368641)
- link against poppler, not internal xpdf
- include arabtex

It reads that TeXLive now links against poppler (thanks to Jiri Cerny), arabtex
is included and some pending security issues are fixed. The new poppler is now
part of my texlive repository until it's applied in fedora (bug 403211).

If you want to fix something, please send patches!

Thanks!

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the QA contact for the bug, or are watching the QA contact.




More information about the package-review mailing list