[ubuntu/utopic-proposed] lzo2 2.06-1.2ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Thu Jul 24 13:55:14 UTC 2014


lzo2 (2.06-1.2ubuntu2) utopic; urgency=medium

  * SECURITY UPDATE: denial of service or possible code execution via
    integer overflow
    - debian/patches/CVE-2014-4607.patch: check for overflow in
      minilzo/minilzo.c, src/lzo1_d.ch, src/lzo1b_d.ch, src/lzo1f_d.ch,
      src/lzo1x_d.ch, src/lzo2a_d.ch.
    - CVE-2014-4607

Date: Fri, 11 Jul 2014 08:39:53 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/utopic/+source/lzo2/2.06-1.2ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 11 Jul 2014 08:39:53 -0400
Source: lzo2
Binary: liblzo2-dev liblzo2-2 liblzo2-2-udeb
Architecture: source
Version: 2.06-1.2ubuntu2
Distribution: utopic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 liblzo2-2  - data compression library
 liblzo2-2-udeb - data compression library (udeb)
 liblzo2-dev - data compression library (development files)
Changes:
 lzo2 (2.06-1.2ubuntu2) utopic; urgency=medium
 .
   * SECURITY UPDATE: denial of service or possible code execution via
     integer overflow
     - debian/patches/CVE-2014-4607.patch: check for overflow in
       minilzo/minilzo.c, src/lzo1_d.ch, src/lzo1b_d.ch, src/lzo1f_d.ch,
       src/lzo1x_d.ch, src/lzo2a_d.ch.
     - CVE-2014-4607
Checksums-Sha1:
 aefe2f3ab09f0cc5a166220e1930620ea76f1ad6 1937 lzo2_2.06-1.2ubuntu2.dsc
 b14cc0de9d349f74b43dfa930e86700300e542d5 4920 lzo2_2.06-1.2ubuntu2.debian.tar.xz
Checksums-Sha256:
 8bec3fd96f6e51ff1e75949f8bae6915d247526c4f0594d3a2d4ea487b788269 1937 lzo2_2.06-1.2ubuntu2.dsc
 c3b479bb5d7f595b67519ef2b0999090d2b4e372c31e50dfea076d9fb4ee07a7 4920 lzo2_2.06-1.2ubuntu2.debian.tar.xz
Files:
 def465e129d11dbe61b666b662d7eb8b 1937 libs optional lzo2_2.06-1.2ubuntu2.dsc
 dfc1b3cc26b3e2e8f181a4db5b7a804b 4920 libs optional lzo2_2.06-1.2ubuntu2.debian.tar.xz
Original-Maintainer: Peter Eisentraut <petere at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=+ZoP
-----END PGP SIGNATURE-----


More information about the Utopic-changes mailing list