[ubuntu/cosmic-proposed] libgd2 2.2.5-4ubuntu1 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Mon Sep 10 18:34:13 UTC 2018


libgd2 (2.2.5-4ubuntu1) cosmic; urgency=medium

  * SECURITY UPDATE: Double free
    - debian/patches/CVE-2018-1000222.patch: fix in
      src/gd_bmp.c.
    - CVE-2018-1000222
  * SECURITY UPDATE: Infinite loop
    - debian/patches/CVE-2018-5711.patch: fix in
      src/gd_gif_in.c.
    - CVE-2018-5711
  * Removing flag -lgd from tests-make-a-little-change*
    patch.

Date: Mon, 10 Sep 2018 13:12:09 -0300
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/libgd2/2.2.5-4ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 10 Sep 2018 13:12:09 -0300
Source: libgd2
Binary: libgd-tools libgd-dev libgd3
Architecture: source
Version: 2.2.5-4ubuntu1
Distribution: cosmic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas S. Barbosa <leo.barbosa at canonical.com>
Description:
 libgd-dev  - GD Graphics Library (development version)
 libgd-tools - GD command line tools and example code
 libgd3     - GD Graphics Library
Changes:
 libgd2 (2.2.5-4ubuntu1) cosmic; urgency=medium
 .
   * SECURITY UPDATE: Double free
     - debian/patches/CVE-2018-1000222.patch: fix in
       src/gd_bmp.c.
     - CVE-2018-1000222
   * SECURITY UPDATE: Infinite loop
     - debian/patches/CVE-2018-5711.patch: fix in
       src/gd_gif_in.c.
     - CVE-2018-5711
   * Removing flag -lgd from tests-make-a-little-change*
     patch.
Checksums-Sha1:
 fcc92541383320393961189f2d337fef4ff62e8b 2341 libgd2_2.2.5-4ubuntu1.dsc
 01282ccbb4a8fcea546d459e8e2779f4d8e00425 33300 libgd2_2.2.5-4ubuntu1.debian.tar.xz
 9e13fde1467beee6b41e302d50e38827d0ab7cc5 7312 libgd2_2.2.5-4ubuntu1_source.buildinfo
Checksums-Sha256:
 c0b6f4700a3ac4c726c0db0d2cd384248a2c92fae231109095d96561fc0322f7 2341 libgd2_2.2.5-4ubuntu1.dsc
 7edc0d5ff93cd38a9ae5aaee2d98339ad81ed2bf06a67146b20bf7c9ce2d51de 33300 libgd2_2.2.5-4ubuntu1.debian.tar.xz
 af984b0b43a58b5d95ce0e94047b726a4b8b2d27098c57ddfd5369d333a48297 7312 libgd2_2.2.5-4ubuntu1_source.buildinfo
Files:
 a4fa4cca3594e3bc3261fb7c76570bca 2341 graphics optional libgd2_2.2.5-4ubuntu1.dsc
 1a7d7ffeea5793e00b6938d77e003f4b 33300 graphics optional libgd2_2.2.5-4ubuntu1.debian.tar.xz
 0c87b3fefd2fd62d8e46daf8a0b42b0c 7312 graphics optional libgd2_2.2.5-4ubuntu1_source.buildinfo
Original-Maintainer: GD team <pkg-gd-devel at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
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=CuRj
-----END PGP SIGNATURE-----


More information about the Cosmic-changes mailing list