inkscape 0.48.2-0ubuntu1.1 source package in Ubuntu


inkscape (0.48.2-0ubuntu1.1) oneiric-security; urgency=low

  * SECURITY UPDATE: arbitrary file disclosure via XML external entity
    - debian/patches/CVE-2012-5656.dpatch: disable loading external
      entities in src/preferences-skeleton.h,
      src/ui/dialog/ocaldialogs.cpp, src/xml/repr-io.cpp.
    - CVE-2012-5656
  * SECURITY UPDATE: possible file loading from /tmp
    - debian/patches/CVE-2012-6076.dpatch: make sure filename is absolute
      in src/extension/implementation/script.cpp.
    - CVE-2012-6076
 -- Marc Deslauriers <email address hidden>   Tue, 29 Jan 2013 13:40:53 -0500

Upload details

Uploaded by:
Marc Deslauriers on 2013-01-29
Uploaded to:
Original maintainer:
Ubuntu Developers
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Oneiric updates on 2013-01-30 main graphics
Oneiric security on 2013-01-30 main graphics


File Size MD5 Checksum
inkscape_0.48.2.orig.tar.gz 25.1 MiB 889dcffb2fc72ea8522ca4bed95427e1
inkscape_0.48.2-0ubuntu1.1.diff.gz 28.1 KiB d821ad5a4fa9cedf5c2e6a979a4e6d10
inkscape_0.48.2-0ubuntu1.1.dsc 2.4 KiB 26f31821116f50e30045b2ee14ee0e3e

View changes file

Binary packages built by this source

inkscape: vector-based drawing program

 Inkscape loads and saves a subset of the SVG (Scalable Vector Graphics)
 format, a standard maintained by the WWW consortium.
 Inkscape user interface should be familiar from CorelDraw and similar
 drawing programs. There are rectangles, ellipses, text items, bitmap
 images and freehand curves.
 As an added bonus, both vector and bitmap objects can have alpha
 transparency and can be arbitrarily transformed.
 Inkscape supports multiple opened files and multiple views per file.
 Graphics can be printed and exported to png bitmaps.
 Some of the import and export features are provided using the packages
 dia, libwmf-bin, pstoedit, skencil, imagemagick, and perlmagick.
 Other extensions use ruby, libxml-xql-perl, python-numpy, and python-lxml.
 You must have these packages to make full use of all extensions and effects.
 If you want to use the spellchecker, you have to install aspell and the
 respective language-pack, e.g. aspell-en or aspell-de.