summaryrefslogtreecommitdiffstats
path: root/x11/kdelibs4
diff options
context:
space:
mode:
authorlofi <lofi@FreeBSD.org>2005-05-06 16:53:11 +0000
committerlofi <lofi@FreeBSD.org>2005-05-06 16:53:11 +0000
commit6e000c52350f1ea87506d069e0240e4ee98aa5fb (patch)
treebebccbe2f9f4cc308b93b57f0593a06576e8628a /x11/kdelibs4
parente9952c471e0848395113cb77ec5980561f832106 (diff)
downloadFreeBSD-ports-6e000c52350f1ea87506d069e0240e4ee98aa5fb.zip
FreeBSD-ports-6e000c52350f1ea87506d069e0240e4ee98aa5fb.tar.gz
Fix regressions introduced in the previous KDE security updates:
The Kimgio patch broke reading of .rgb images in most cases due to a fence-post error. The Kommander patch was incorrect and still allowed execution of files served from /tmp. Security: References: http://www.kde.org/info/security/advisory-20050421-1.txt http://www.kde.org/info/security/advisory-20050420-1.txt
Diffstat (limited to 'x11/kdelibs4')
-rw-r--r--x11/kdelibs4/Makefile2
-rw-r--r--x11/kdelibs4/files/patch-post-3.4.0-kdelibs-kimgio9
2 files changed, 1 insertions, 10 deletions
diff --git a/x11/kdelibs4/Makefile b/x11/kdelibs4/Makefile
index fd21ee0..078c64a 100644
--- a/x11/kdelibs4/Makefile
+++ b/x11/kdelibs4/Makefile
@@ -8,7 +8,7 @@
PORTNAME= kdelibs
PORTVERSION= ${KDE_VERSION}
-PORTREVISION= 2
+PORTREVISION= 3
CATEGORIES= x11 kde
MASTER_SITES= ${MASTER_SITE_KDE}
MASTER_SITE_SUBDIR= stable/${PORTVERSION:S/.0//}/src
diff --git a/x11/kdelibs4/files/patch-post-3.4.0-kdelibs-kimgio b/x11/kdelibs4/files/patch-post-3.4.0-kdelibs-kimgio
index f799010..c1ede2b 100644
--- a/x11/kdelibs4/files/patch-post-3.4.0-kdelibs-kimgio
+++ b/x11/kdelibs4/files/patch-post-3.4.0-kdelibs-kimgio
@@ -620,15 +620,6 @@ diff -u -3 -d -p -r1.31 -r1.31.2.1
for (x = 0; x < m_xsize; x++, c++)
*c = qRgba(qRed(*c), qGreen(*c), qBlue(*c), line[x]);
}
-@@ -270,7 +272,7 @@ bool SGIImage::readImage(QImage& img)
- // sanity ckeck
- if (m_rle)
- for (uint o = 0; o < m_numrows; o++)
-- if (m_starttab[o] + m_lengthtab[o] > m_data.size()) {
-+ if (m_starttab[o] + m_lengthtab[o] >= m_data.size()) {
- kdDebug(399) << "image corrupt (sanity check failed)" << endl;
- return false;
- }
diff -u -3 -d -p -r1.14 -r1.14.2.1
--- kimgio/tiffr.cpp 22 Nov 2004 03:52:18 -0000 1.14
+++ kimgio/tiffr.cpp 19 Apr 2005 10:48:00 -0000 1.14.2.1
OpenPOWER on IntegriCloud