[ubuntu/hardy-security] dbus 1.1.20-1ubuntu3.5 (Accepted)
Jamie Strandboge
jamie at ubuntu.com
Tue Jul 26 22:04:02 UTC 2011
dbus (1.1.20-1ubuntu3.5) hardy-security; urgency=low
* SECURITY UPDATE: denial of service via messages with non-native byte order
- debian/patches/85-CVE-2011-2200.patch: update dbus-marshal-header.c
to verify header->data byte order and header->byte_order match in
_dbus_header_byteswap()
- CVE-2011-2200
Date: Fri, 22 Jul 2011 09:08:45 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/dbus/1.1.20-1ubuntu3.5
-------------- next part --------------
Format: 1.7
Date: Fri, 22 Jul 2011 09:08:45 -0500
Source: dbus
Binary: dbus dbus-x11 libdbus-1-3 dbus-1-doc libdbus-1-dev
Architecture: source
Version: 1.1.20-1ubuntu3.5
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
dbus - simple interprocess messaging system
dbus-1-doc - simple interprocess messaging system (documentation)
dbus-x11 - simple interprocess messaging system (X11 deps)
libdbus-1-3 - simple interprocess messaging system
libdbus-1-dev - simple interprocess messaging system (development headers)
Changes:
dbus (1.1.20-1ubuntu3.5) hardy-security; urgency=low
.
* SECURITY UPDATE: denial of service via messages with non-native byte order
- debian/patches/85-CVE-2011-2200.patch: update dbus-marshal-header.c
to verify header->data byte order and header->byte_order match in
_dbus_header_byteswap()
- CVE-2011-2200
Files:
1b94fca5d92d79c34166000c836f40db 1910 devel optional dbus_1.1.20-1ubuntu3.5.dsc
f51fa0b400cb6ae610ea54b53ee2daeb 31245 devel optional dbus_1.1.20-1ubuntu3.5.diff.gz
Original-Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers at lists.alioth.debian.org>
More information about the Hardy-changes
mailing list