Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report. https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=192538 Summary: CVE-2006-2480: dia format string vulnerability Product: Fedora Core Version: fc4 Platform: All URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006- 2480 OS/Version: Linux Status: NEW Severity: normal Priority: normal Component: dia AssignedTo: caolanm@xxxxxxxxxx ReportedBy: ville.skytta@xxxxxx CC: fedora-security-list@xxxxxxxxxx +++ This bug was initially created as a clone of Bug #192535 +++ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2480 Reproducer in GNOME Bugzilla, appears to affect 0.95 too: http://bugzilla.gnome.org/show_bug.cgi?id=342111 The CVE notes that this may not be a vulnerability, but it is a reproducible crash in any case. (Note: I haven't tested the FC4 package, but at least the FE5 one has this problem.) -- Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is.