inkscape: Inkscape Vector Illustration Program ---------------------------------------------------------------------- File: inkscape-0.44.1-26.2.ppc.rpm Patchrpm: inkscape-0.44.1-26.2.ppc.patch.rpm Version: 0.44.1-26.2 Size: 9623 kB Patchsize: 5387 kB Date: Fri 06 Apr 2007 0:54:50 CEST Source: inkscape-0.44.1-26.2.src.rpm Security: Yes ---------------------------------------------------------------------- Description: Several format string problems where fixed in inkscape. CVE-2007-1463: A format string vulnerability in Inkscape allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a URI, which is not properly handled by certain dialogs. CVE-2007-1464: Format string vulnerability in the whiteboard Jabber protocol in Inkscape allows user-assisted remote attackers to execute arbitrary code via unspecified vectors.