~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2013-0252

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2013-02-05
2
 
Candidate: CVE-2013-0252
3
 
PublicDate: 2013-03-12
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0252
6
 
 http://www.boost.org/users/news/boost_locale_security_notice.html
7
 
 https://usn.ubuntu.com/usn/usn-1727-1
8
 
Description:
9
 
 boost::locale::utf::utf_traits in the Boost.Locale library in Boost 1.48
10
 
 through 1.52 does not properly detect certain invalid UTF-8 sequences,
11
 
 which might allow remote attackers to bypass input validation protection
12
 
 mechanisms via crafted trailing bytes.
13
 
Ubuntu-Description:
14
 
Notes:
15
 
 jdstrand> Ubuntu 10.04 LTS and 11.10 not affected
16
 
Bugs:
17
 
 https://svn.boost.org/trac/boost/ticket/7743
18
 
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699649 (1.49)
19
 
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=699650 (1.50)
20
 
Priority: medium
21
 
Discovered-by:
22
 
Assigned-to: mdeslaur
23
 
 
24
 
Patches_boost1.40:
25
 
upstream_boost1.40: not-affected
26
 
hardy_boost1.40: DNE
27
 
lucid_boost1.40: not-affected (code-not-present)
28
 
oneiric_boost1.40: DNE
29
 
precise_boost1.40: DNE
30
 
precise/esm_boost1.40: DNE
31
 
quantal_boost1.40: DNE
32
 
raring_boost1.40: DNE
33
 
saucy_boost1.40: DNE
34
 
trusty_boost1.40: DNE
35
 
utopic_boost1.40: DNE
36
 
vivid_boost1.40: DNE
37
 
vivid/stable-phone-overlay_boost1.40: DNE
38
 
vivid/ubuntu-core_boost1.40: DNE
39
 
wily_boost1.40: DNE
40
 
xenial_boost1.40: DNE
41
 
yakkety_boost1.40: DNE
42
 
zesty_boost1.40: DNE
43
 
devel_boost1.40: DNE
44
 
 
45
 
Patches_boost1.42:
46
 
upstream_boost1.42: not-affected
47
 
hardy_boost1.42: DNE
48
 
lucid_boost1.42: DNE
49
 
oneiric_boost1.42: not-affected (code-not-present)
50
 
precise_boost1.42: DNE
51
 
precise/esm_boost1.42: DNE
52
 
quantal_boost1.42: DNE
53
 
raring_boost1.42: DNE
54
 
saucy_boost1.42: DNE
55
 
trusty_boost1.42: DNE
56
 
utopic_boost1.42: DNE
57
 
vivid_boost1.42: DNE
58
 
vivid/stable-phone-overlay_boost1.42: DNE
59
 
vivid/ubuntu-core_boost1.42: DNE
60
 
wily_boost1.42: DNE
61
 
xenial_boost1.42: DNE
62
 
yakkety_boost1.42: DNE
63
 
zesty_boost1.42: DNE
64
 
devel_boost1.42: DNE
65
 
 
66
 
Patches_boost1.48:
67
 
 upstream: cppcms.com/files/locale/boost_locale_utf.patch
68
 
upstream_boost1.48: needs-triage
69
 
hardy_boost1.48: DNE
70
 
lucid_boost1.48: DNE
71
 
oneiric_boost1.48: DNE
72
 
precise_boost1.48: ignored (reached end-of-life)
73
 
precise/esm_boost1.48: DNE (precise was needed)
74
 
quantal_boost1.48: DNE
75
 
raring_boost1.48: DNE
76
 
saucy_boost1.48: DNE
77
 
trusty_boost1.48: DNE
78
 
utopic_boost1.48: DNE
79
 
vivid_boost1.48: DNE
80
 
vivid/stable-phone-overlay_boost1.48: DNE
81
 
vivid/ubuntu-core_boost1.48: DNE
82
 
wily_boost1.48: DNE
83
 
xenial_boost1.48: DNE
84
 
yakkety_boost1.48: DNE
85
 
zesty_boost1.48: DNE
86
 
devel_boost1.48: DNE
87
 
 
88
 
Patches_boost1.49:
89
 
 upstream: cppcms.com/files/locale/boost_locale_utf.patch
90
 
 upstream: https://svn.boost.org/trac/boost/changeset/81590
91
 
upstream_boost1.49: released (1.49.0-3.2)
92
 
hardy_boost1.49: DNE
93
 
lucid_boost1.49: DNE
94
 
oneiric_boost1.49: DNE
95
 
precise_boost1.49: DNE
96
 
precise/esm_boost1.49: DNE
97
 
quantal_boost1.49: released (1.49.0-3.1ubuntu1.2)
98
 
raring_boost1.49: released (1.49.0-3.2ubuntu1)
99
 
saucy_boost1.49: released (1.49.0-3.2ubuntu1)
100
 
trusty_boost1.49: DNE
101
 
utopic_boost1.49: DNE
102
 
vivid_boost1.49: DNE
103
 
vivid/stable-phone-overlay_boost1.49: DNE
104
 
vivid/ubuntu-core_boost1.49: DNE
105
 
wily_boost1.49: DNE
106
 
xenial_boost1.49: DNE
107
 
yakkety_boost1.49: DNE
108
 
zesty_boost1.49: DNE
109
 
devel_boost1.49: DNE
110
 
 
111
 
Patches_boost1.50:
112
 
 upstream: cppcms.com/files/locale/boost_locale_utf.patch
113
 
upstream_boost1.50: needs-triage
114
 
hardy_boost1.50: DNE
115
 
lucid_boost1.50: DNE
116
 
oneiric_boost1.50: DNE
117
 
precise_boost1.50: DNE
118
 
precise/esm_boost1.50: DNE
119
 
quantal_boost1.50: ignored (reached end-of-life)
120
 
raring_boost1.50: DNE
121
 
saucy_boost1.50: DNE
122
 
trusty_boost1.50: DNE
123
 
utopic_boost1.50: DNE
124
 
vivid_boost1.50: DNE
125
 
vivid/stable-phone-overlay_boost1.50: DNE
126
 
vivid/ubuntu-core_boost1.50: DNE
127
 
wily_boost1.50: DNE
128
 
xenial_boost1.50: DNE
129
 
yakkety_boost1.50: DNE
130
 
zesty_boost1.50: DNE
131
 
devel_boost1.50: DNE