~ubuntu-branches/ubuntu/natty/nss/natty-security

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2012-07-30 14:25:20 UTC
  • Revision ID: package-import@ubuntu.com-20120730142520-shnow2x8vxqwfzkv
Tags: 3.12.9+ckbi-1.82-0ubuntu2.2
* SECURITY UPDATE: denial of service in QuickDER decoder
  - debian/patches/CVE-2012-0441.patch: properly handle zero-length basic
    constraints and zero-length fields in
    nss/mozilla/security/nss/lib/softoken/legacydb/keydb.c,
    nss/mozilla/security/nss/lib/softoken/legacydb/lgcreate.c,
    nss/mozilla/security/nss/lib/softoken/legacydb/lowkey.c,
    nss/mozilla/security/nss/lib/softoken/legacydb/lowkeyti.h,
    nss/mozilla/security/nss/lib/util/quickder.c.
  - CVE-2012-0441
* debian/rules: added a workaround to get package built on more recent
  kernels.
Filename Latest Rev Last Changed Committer Comment Size
..
debian 2 16 years ago Bazaar Package Importer Upload to unstable. Diff
mozilla 1 16 years ago Bazaar Package Importer Import upstream version 3.11.5 Diff