Security Advisories (4)
CVE-2006-4484 (2008-10-01)

Buffer overflow in the LWZReadByte_ function in the GD extension in allows remote attackers to have an unknown impact via a GIF file with input_code_size greater than MAX_LWZ_BITS, which triggers an overflow when initializing the table array.

CVE-2007-4772 (2008-01-09)

The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted regular expression.

CVE-2007-6067 (2008-01-09)

Algorithmic complexity vulnerability in the regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows remote authenticated users to cause a denial of service (memory consumption) via a crafted "complex" regular expression with doubly-nested states.

CVE-2007-4769 (2008-01-09)

The regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows remote authenticated users to cause a denial of service (backend crash) via an out-of-bounds backref number.

NAME

Tk::OlWm - Interface to OpenLook properties of toplevel windows.

SYNOPSIS

use Tk::OlWm;

$toplevel->OL_DECOR( 
                     CLOSE  => flag,
                     FOOTER => flag,
                     HEADER => flag, 
                     RESIZE => flag, 
                     PIN => flag, 
                     ICON_NAME => flag, 
                   );

$toplevel->OL_WIN_BUSY( flag );

$toplevel->OL_PIN_STATE( flag );

DESCRIPTION

I simple perl-only module that adds a few methods to Tk::Wm class. These methods manipulate properties of the $toplevel to communicate with an OpenLook window manager, e.g. Sun's olwm or olvwm.

In the synopsis above flag is a "boolean" value - i.e. an integer with 0 meaning false and other values meaning true.

All the name => flag pairs are optional.

STATUS

Works for me, it is in 'Contrib' because I cannot support something which has been developed just by dumping properties of Sun applications and guessing.

AUTHOR

Nick Ing-Simmons <nik@tiuk.ti.com>