~ubuntu-branches/ubuntu/trusty/gnupg/trusty-updates

Viewing all changes in revision 43.

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2013-10-08 07:40:27 UTC
  • Revision ID: package-import@ubuntu.com-20131008074027-agbb4mp6ur2ruqu0
Tags: 1.4.14-1ubuntu2
* SECURITY UPDATE: incorrect no-usage-permitted flag handling
  - debian/patches/CVE-2013-4351.patch: correctly handle empty key flags
    in g10/getkey.c, g10/keygen.c, include/cipher.h.
  - CVE-2013-4351
* SECURITY UPDATE: denial of service via infinite recursion
  - debian/patches/CVE-2013-4402.patch: set limits on number of filters
    and nested packets in util/iobuf.c, g10/mainproc.c.
  - CVE-2013-4402

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: