IMLib Multiple Remote Integer Overflow Vulnerabilities Solution:
TurboLinux has released a security announcement and fixes to address these and other vulnerabilities. Please see the referenced announcement for further information regarding obtaining and applying appropriate updates.
Mandrake has released an advisory (MDKSA-2005:007) and updates to address these and other vulnerabilities. Please see the referenced advisory for further information regarding obtaining and applying appropriate updates.
SuSE Linux has made fixes available dealing with these issues.
It is reported that patches originally used to create fixes for BIDs 11830 and 11837 are very likely the same. Users of affected packages should review both BIDs and apply all relevant fixes.
Debian has released advisory DSA 618-1 dealing with this and other issues. Please see the referenced advisory for more information.
Debian has released advisory DSA 628-1 to address this issue for IMLib2. Please see the referenced advisory for more information.
Ubuntu Linux has released advisory USN-55-1 to address this, and other issues. Please see the referenced advisory for further information.
Gentoo has released advisory GLSA 200501-19 to address these issues. Gentoo users may update their computers by carrying out the following commands:
emerge --sync
emerge --ask --oneshot --verbose ">=media-libs/imlib2-1.2.0"
Please see the referenced advisory for more information.
Enlightenment Imlib2 1.0.5
Imlib Imlib 1.9
Imlib Imlib 1.9.1
Imlib Imlib 1.9.10
Imlib Imlib 1.9.11
Imlib Imlib 1.9.12
Imlib Imlib 1.9.13
Imlib Imlib 1.9.14
Imlib Imlib 1.9.2
Imlib Imlib 1.9.3
Imlib Imlib 1.9.4
Imlib Imlib 1.9.5
Imlib Imlib 1.9.6
Imlib Imlib 1.9.7
Imlib Imlib 1.9.8
Imlib Imlib 1.9.9