unofficial mirror of guix-patches@gnu.org 
 help / color / mirror / code / Atom feed
From: Leo Famulari <leo@famulari.name>
To: Julien Lepiller <julien@lepiller.eu>
Cc: 27937@debbugs.gnu.org
Subject: [bug#27937] Update php to 7.1.8
Date: Fri, 4 Aug 2017 11:01:38 -0400	[thread overview]
Message-ID: <20170804150138.GC14950@jasmine.lan> (raw)
In-Reply-To: <1C708BD2-82DE-4838-8FDD-DE1B3AA71E36@lepiller.eu>

[-- Attachment #1: Type: text/plain, Size: 1338 bytes --]

On Fri, Aug 04, 2017 at 08:30:08AM +0200, Julien Lepiller wrote:
> >> +From: LEPILLER Julien <julien.lepiller@irisa.fr>
> >> +Date: Thu, 3 Aug 2017 17:04:17 +0200
> >> +Subject: [PATCH] Fix #399: Buffer over-read into uninitialized
> >memory.
> >> +
> >> +The stack allocated color map buffers were not zeroed before usage,
> >and
> >> +so undefined palette indexes could cause information leakage.
> >> +
> >> +This is CVE-2017-7890.
> >
> >Would this patch be valuable for the "regular" gd package as well, or
> >is
> >it specific to gd-for-php?
> 
> It could be used for gd, but I think it would trigger a lot of
> rebuilds. I'm not confident with how the graft mechanism works, so I
> would need some help.

Okay, I'll look into it this weekend, unless somebody beats me to it.

Next time there are lots of Guix people gathered together, I want to
hold some kind of "security updates workshop", with the goal of helping
more people feel comfortable working in this area.

For gd in particular, if you have some specific questions, I can answer
them over email. Surely more people have questions, too. The discussion
could result in improvements to the manual's section on this topic.

> Arg... those are tabs I guess. Thanks for the review! I will push it
> this evening if everything is ok.

Great!

[-- Attachment #2: signature.asc --]
[-- Type: application/pgp-signature, Size: 833 bytes --]

  reply	other threads:[~2017-08-04 15:02 UTC|newest]

Thread overview: 6+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2017-08-03 18:22 [bug#27937] Update php to 7.1.8 Julien Lepiller
2017-08-03 22:20 ` Leo Famulari
2017-08-04  6:30   ` Julien Lepiller
2017-08-04 15:01     ` Leo Famulari [this message]
2017-08-05  8:02       ` Julien Lepiller
2017-09-04 13:16         ` bug#27937: " Ludovic Courtès

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

  List information: https://guix.gnu.org/

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20170804150138.GC14950@jasmine.lan \
    --to=leo@famulari.name \
    --cc=27937@debbugs.gnu.org \
    --cc=julien@lepiller.eu \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
Code repositories for project(s) associated with this public inbox

	https://git.savannah.gnu.org/cgit/guix.git

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).