[ubuntu/plucky-proposed] adsys 0.16.0ubuntu1 (Accepted)

Hlib Korzhynskyy hlib.korzhynskyy at canonical.com
Fri Jan 10 19:08:15 UTC 2025


adsys (0.16.0ubuntu1) plucky; urgency=medium

  * SECURITY UPDATE: Denial of service in parse function.
    - Use strings.EqualFold instead of direct comparison and
      strings.ToLower in .../html/doctype.go, .../html/foreign.go, and
      .../html/parse.go. Based on
      https://go.googlesource.com/net/+/8e66b04771e35c4e4125e8c60334b34e2423effb
      upstream patch.
    - CVE-2024-45338

Date: Tue, 07 Jan 2025 15:17:57 -0330
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/adsys/0.16.0ubuntu1
-------------- next part --------------
Format: 1.8
Date: Tue, 07 Jan 2025 15:17:57 -0330
Source: adsys
Built-For-Profiles: noudeb
Architecture: source
Version: 0.16.0ubuntu1
Distribution: plucky
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Changes:
 adsys (0.16.0ubuntu1) plucky; urgency=medium
 .
   * SECURITY UPDATE: Denial of service in parse function.
     - Use strings.EqualFold instead of direct comparison and
       strings.ToLower in .../html/doctype.go, .../html/foreign.go, and
       .../html/parse.go. Based on
       https://go.googlesource.com/net/+/8e66b04771e35c4e4125e8c60334b34e2423effb
       upstream patch.
     - CVE-2024-45338
Checksums-Sha1:
 a6605afa7ac14d1b5b5ea642afe15bf969a27250 2150 adsys_0.16.0ubuntu1.dsc
 65f3fa819bb5d73b87860b686e1469e1214426c4 7264912 adsys_0.16.0ubuntu1.tar.xz
 8fc7e713ba7e3b1360571ae0bec4d3f972ff4584 10517 adsys_0.16.0ubuntu1_source.buildinfo
Checksums-Sha256:
 f71fbd8129b366594bfb0acbe9cd5debdad7a215b0af6f9ada4355012780f4bd 2150 adsys_0.16.0ubuntu1.dsc
 24b01803bbaf7e2e366800e4a88f5b946786f7de2f25cdc54642a0864bc35cc0 7264912 adsys_0.16.0ubuntu1.tar.xz
 813bdf5a0d2ebd7fee4758ffdc9d05d4efd9f6fcf5df87c0e3a5dbb325b5cc42 10517 adsys_0.16.0ubuntu1_source.buildinfo
Files:
 c5aa3f41b19351fc8a4fa3993a77c7af 2150 admin optional adsys_0.16.0ubuntu1.dsc
 0803fda9cc24f2ea34a8a9c60a5dabcf 7264912 admin optional adsys_0.16.0ubuntu1.tar.xz
 46f4d561c433d30c710d0df1882619d6 10517 admin optional adsys_0.16.0ubuntu1_source.buildinfo


More information about the plucky-changes mailing list