[ubuntu/eoan-proposed] kconfig 5.60.0-0ubuntu2 (Accepted)

Rik Mills rikmills at kubuntu.org
Thu Aug 8 08:14:12 UTC 2019


kconfig (5.60.0-0ubuntu2) eoan; urgency=medium

  * SECURITY UPDATE: malicious .desktop files (and others) would execute
    code (LP: #1839432).
    - debian/patches/CVE-2019-14744.diff: removes the affected feature as
      currently 'unused'.
    - CVE-2019-14744

Date: Thu, 08 Aug 2019 09:13:45 +0100
Changed-By: Rik Mills <rikmills at kubuntu.org>
Maintainer: Debian/Kubuntu Qt/KDE Maintainers <debian-qt-kde at lists.debian.org>
https://launchpad.net/ubuntu/+source/kconfig/5.60.0-0ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 08 Aug 2019 09:13:45 +0100
Source: kconfig
Binary: libkf5config-bin libkf5config-data libkf5config-dev libkf5config-dev-bin libkf5config-doc libkf5configcore5 libkf5configgui5
Architecture: source
Version: 5.60.0-0ubuntu2
Distribution: eoan
Urgency: medium
Maintainer: Debian/Kubuntu Qt/KDE Maintainers <debian-qt-kde at lists.debian.org>
Changed-By: Rik Mills <rikmills at kubuntu.org>
Description:
 libkf5config-bin - configuration settings framework for Qt
 libkf5config-data - configuration settings framework for Qt
 libkf5config-dev - configuration settings framework for Qt
 libkf5config-dev-bin - configuration settings framework for Qt -- binary package
 libkf5config-doc - configuration settings framework for Qt (documentation)
 libkf5configcore5 - configuration settings framework for Qt
 libkf5configgui5 - configuration settings framework for Qt
Launchpad-Bugs-Fixed: 1839432
Changes:
 kconfig (5.60.0-0ubuntu2) eoan; urgency=medium
 .
   * SECURITY UPDATE: malicious .desktop files (and others) would execute
     code (LP: #1839432).
     - debian/patches/CVE-2019-14744.diff: removes the affected feature as
       currently 'unused'.
     - CVE-2019-14744
Checksums-Sha1:
 d970f370f3c2bcfc16f91fc1498e5cab97ecfe10 2782 kconfig_5.60.0-0ubuntu2.dsc
 37469244423a513f25ead53cae3ba4e041b70602 18616 kconfig_5.60.0-0ubuntu2.debian.tar.xz
 6a70bea5f7f75b724aeeaedf50e766037c2b408c 17628 kconfig_5.60.0-0ubuntu2_source.buildinfo
Checksums-Sha256:
 de7f02c2ffa93f472397f5afd56846ef65218ef61bb6fc53a971238f2be0ec48 2782 kconfig_5.60.0-0ubuntu2.dsc
 7136bda316bb7fbdda62b08efe80cecbf00a48d20102b91f6e69fa7b81e903e4 18616 kconfig_5.60.0-0ubuntu2.debian.tar.xz
 94f9f7d1a0a4dd4c4f596bea9fb5461e37dc36b64f3dc1986a79036c73ff9c76 17628 kconfig_5.60.0-0ubuntu2_source.buildinfo
Files:
 6a6696aa147c1d934a0d890c55a8cbca 2782 libs optional kconfig_5.60.0-0ubuntu2.dsc
 c62acd887e2f2965da09dc5d7c1d8bd3 18616 libs optional kconfig_5.60.0-0ubuntu2.debian.tar.xz
 fd92465c3784b91a1fcc04e521a9bca8 17628 libs optional kconfig_5.60.0-0ubuntu2_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=lC7Z
-----END PGP SIGNATURE-----


More information about the Eoan-changes mailing list