~ubuntu-branches/ubuntu/natty/nss/natty-updates

Viewing all changes in revision 30.

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2012-07-30 14:25:20 UTC
  • Revision ID: package-import@ubuntu.com-20120730142520-shnow2x8vxqwfzkv
Tags: 3.12.9+ckbi-1.82-0ubuntu2.2
* SECURITY UPDATE: denial of service in QuickDER decoder
  - debian/patches/CVE-2012-0441.patch: properly handle zero-length basic
    constraints and zero-length fields in
    nss/mozilla/security/nss/lib/softoken/legacydb/keydb.c,
    nss/mozilla/security/nss/lib/softoken/legacydb/lgcreate.c,
    nss/mozilla/security/nss/lib/softoken/legacydb/lowkey.c,
    nss/mozilla/security/nss/lib/softoken/legacydb/lowkeyti.h,
    nss/mozilla/security/nss/lib/util/quickder.c.
  - CVE-2012-0441
* debian/rules: added a workaround to get package built on more recent
  kernels.

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: