USN-217-1: Inkscape vulnerability

21 November 2005

inkscape vulnerability

A security issue affects these releases of Ubuntu and its derivatives:

  • Ubuntu 5.10

Software Description

Details

A buffer overflow has been discovered in the SVG importer of Inkscape. By tricking an user into opening a specially crafted SVG image this could be exploited to execute arbitrary code with the privileges of the Inkscape user.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 5.10
inkscape

To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.

References