Gentoo Archives: gentoo-commits

From: "Nirbheek Chauhan (nirbheek)" <nirbheek@g.o>
To: gentoo-commits@l.g.o
Subject: [gentoo-commits] gentoo-x86 commit in net-libs/webkit-gtk/files: webkit-gtk-CVE-2009-0945.patch
Date: Sat, 27 Jun 2009 11:34:55
Message-Id: E1MKWBK-0001Q8-1C@stork.gentoo.org
1 nirbheek 09/06/27 11:34:54
2
3 Added: webkit-gtk-CVE-2009-0945.patch
4 Log:
5 Fix bug 271861 (Array indexing vulnerability (CVE-2009-0945))
6 (Portage version: 2.2_rc33/cvs/Linux i686)
7
8 Revision Changes Path
9 1.1 net-libs/webkit-gtk/files/webkit-gtk-CVE-2009-0945.patch
10
11 file : http://sources.gentoo.org/viewcvs.py/gentoo-x86/net-libs/webkit-gtk/files/webkit-gtk-CVE-2009-0945.patch?rev=1.1&view=markup
12 plain: http://sources.gentoo.org/viewcvs.py/gentoo-x86/net-libs/webkit-gtk/files/webkit-gtk-CVE-2009-0945.patch?rev=1.1&content-type=text/plain
13
14 Index: webkit-gtk-CVE-2009-0945.patch
15 ===================================================================
16 Patch against Webkit-0 for CVE-2009-0945, bug 271861.
17
18 diff -ru a/WebKit-r40220/WebCore/svg/SVGList.h b/WebKit-r40220/WebCore/svg/SVGList.h
19 --- a/WebKit-r40220/WebCore/svg/SVGList.h 2009-01-21 06:14:24.000000000 +0100
20 +++ b/WebKit-r40220/WebCore/svg/SVGList.h 2009-06-27 01:47:15.000000000 +0200
21 @@ -96,7 +96,11 @@
22
23 Item insertItemBefore(Item newItem, unsigned int index, ExceptionCode&)
24 {
25 - m_vector.insert(index, newItem);
26 + if (index < m_vector.size()) {
27 + m_vector.insert(index, newItem);
28 + } else {
29 + m_vector.append(newItem);
30 + }
31 return newItem;
32 }