~ubuntu-branches/ubuntu/lucid/wget/lucid-updates

« back to all changes in this revision

Viewing changes to debian/patches/00list

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2014-10-30 10:10:03 UTC
  • Revision ID: package-import@ubuntu.com-20141030101003-j9dk3c5g3c8b9q9m
Tags: 1.12-1.1ubuntu2.2
* SECURITY UPDATE: remote code execution via absolute path traversal
  vulnerability in FTP
  - debian/patches/CVE-2014-4877.dpatch: don't create local symlinks in
    src/init.c, check for duplicate file nodes in src/ftp.c, updated
    documentation in doc/wget.texi.
  - CVE-2014-4877

Show diffs side-by-side

added added

removed removed

Lines of Context:
4
4
wget-passive_ftp-default
5
5
#wget-infopod_generated_manpage.dpatch
6
6
CVE-2010-2252
 
7
CVE-2014-4877