[ubuntu-cloud-archive/folsom-proposed] libvirt (Accepted)

James Page james.page at ubuntu.com
Mon Sep 23 16:03:13 UTC 2013


 libvirt (0.9.13-0ubuntu12.5~cloud0) precise-folsom; urgency=low
 .
   * New update for the Ubuntu Cloud Archive.
 .
 libvirt (0.9.13-0ubuntu12.5) quantal-security; urgency=low
 .
   * SECURITY UPDATE: possible privilege escalation via pkcheck race.
     - debian/patches/CVE-2013-4311.patch: add uid to pkcheck call in
       configure.ac, daemon/remote.c, src/Makefile.am,
       src/rpc/virnetserverclient.*, src/rpc/virnetsocket.c*,
       src/util/virprocess.*, src/util/virstring.*.
     - debian/rules: use autoreconf.mk.
     - debian/control: specify version of policykit-1 security update, add
       libpolkit-gobject-1-dev, dh-autoreconf and autopoint to Build-Depends
     - CVE-2013-4311
   * SECURITY UPDATE: denial of service in remoteDispatchDomainMemoryStats
     - debian/patches/CVE-2013-4296.patch: properly initialize stats in
       daemon/remote.c.
     - CVE-2013-4296

Date: Wed, 18 Sep 2013 10:00:12 -0700
Changed-By: Adam Gandelman <adamg at ubuntu.com>
Signed-By: Adam Gandelman
Published-By: James Page <james.page at ubuntu.com>


More information about the Cloud-archive-changes mailing list