~ubuntu-branches/ubuntu/trusty/patch/trusty-security

  • Committer: Package Import Robot
  • Author(s): Tyler Hicks
  • Date: 2015-06-22 14:33:17 UTC
  • mfrom: (13.1.2 trusty-proposed)
  • Revision ID: package-import@ubuntu.com-20150622143317-pqfz8ughspedhv06
Tags: 2.7.1-4ubuntu2.3
* SECURITY UPDATE: Denial of service via crafted patch
  - debian/patches/CVE-2014-9637.patch: Detect and exit upon memory
    allocation failures
  - CVE-2014-9637
* SECURITY UPDATE: Directory traversal via crafted patch
  - debian/patches/CVE-2015-1196.patch: Don't allow symlink targets to point
    outside of the current directory
  - CVE-2015-1196
* SECURITY UPDATE: Directory traversal via crafted patch
  - debian/patches/CVE-2015-1395.patch: Check the validity of both filenames
    during a rename or copy
  - CVE-2015-1395
* SECURITY UPDATE: Directory traversal via crafted patch
  - debian/patches/CVE-2015-1396.patch: Don't allow symlink targets to point
    outside of the current directory. This patch corrects the incomplete fix
    for CVE-2015-1196.
  - CVE-2015-1396
* debian/control: Add automake1.11 as a build-depends since some of the
  patches adjust Makefile.am files
Filename Latest Rev Last Changed Committer Comment Size
..
snippet 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 Diff
File ar-lib 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 5.6 KB Diff Download File
File config.guess 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 43.8 KB Diff Download File
File config.rpath 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 18.2 KB Diff Download File
File config.sub 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 34.8 KB Diff Download File
File depcomp 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 23 KB Diff Download File
File git-version-gen 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 7.6 KB Diff Download File
File gitlog-to-changelog 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 13 KB Diff Download File
File install-sh 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 13.6 KB Diff Download File
File mdate-sh 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 5.9 KB Diff Download File
File missing 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 10.1 KB Diff Download File
texinfo.tex 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 314 KB Diff Download File
File update-copyright 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 9.2 KB Diff Download File
File useless-if-before-free 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 6 KB Diff Download File
File vc-list-files 1.2.3 11 years ago Package Import Robot Import upstream version 2.7.1 3.7 KB Diff Download File
File ylwrap 1.2.1 14 years ago Bazaar Package Importer Import upstream version 2.6.1.85-423d 6 KB Diff Download File