[ubuntu/artful-proposed] liblouis 3.0.0-3ubuntu1 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Tue Sep 5 17:50:15 UTC 2017


liblouis (3.0.0-3ubuntu1) artful; urgency=medium

  * SECURITY UPDATE: Illegal address access in getALine
    - debian/patches/CVE-2017-13738-and-2017-13744.patch: fix
      possible out-of-bounds write in liblouis/compileTranslationTable.c.
    - CVE-2017-13738
    - CVE-2017-13744
  * SECURITY UPDATE: heap-based buffer overflow
    - debian/patches/CVE-2017-13739-and-2017-13740-and-2017-13742.patch:
      fix buffer overflow parsing malformed table in
      liblouis/compilerTranslationTable.c.
    - CVE-2017-13739
    - CVE-2017-13740
    - CVE-2017-13742

Date: Mon, 04 Sep 2017 10:08:02 -0300
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Jamie Strandboge <jamie at ubuntu.com>
https://launchpad.net/ubuntu/+source/liblouis/3.0.0-3ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 04 Sep 2017 10:08:02 -0300
Source: liblouis
Binary: liblouis-dev liblouis12 liblouis-data liblouis-bin python-louis python3-louis
Architecture: source
Version: 3.0.0-3ubuntu1
Distribution: artful
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas S. Barbosa <leo.barbosa at canonical.com>
Description:
 liblouis-bin - Braille translation library - utilities
 liblouis-data - Braille translation library - data
 liblouis-dev - Braille translation library - static libs and headers
 liblouis12 - Braille translation library - shared libs
 python-louis - Python bindings for liblouis
 python3-louis - Python bindings for liblouis
Changes:
 liblouis (3.0.0-3ubuntu1) artful; urgency=medium
 .
   * SECURITY UPDATE: Illegal address access in getALine
     - debian/patches/CVE-2017-13738-and-2017-13744.patch: fix
       possible out-of-bounds write in liblouis/compileTranslationTable.c.
     - CVE-2017-13738
     - CVE-2017-13744
   * SECURITY UPDATE: heap-based buffer overflow
     - debian/patches/CVE-2017-13739-and-2017-13740-and-2017-13742.patch:
       fix buffer overflow parsing malformed table in
       liblouis/compilerTranslationTable.c.
     - CVE-2017-13739
     - CVE-2017-13740
     - CVE-2017-13742
Checksums-Sha1:
 c6e0bc92950cc53acf5ba7291385d9c4462740ac 2453 liblouis_3.0.0-3ubuntu1.dsc
 b9f4905d8caa815fefecbc0750787d10aedec698 7376 liblouis_3.0.0-3ubuntu1.debian.tar.xz
 bbb06cc1763ca51341de4d8eeb0e2d0e447bac21 6874 liblouis_3.0.0-3ubuntu1_source.buildinfo
Checksums-Sha256:
 6b9c7f7f89dd265bd469c633bc5ef5dc616aae1cda0aa5e06effc17ae93ce72a 2453 liblouis_3.0.0-3ubuntu1.dsc
 1d2fe97f033b13674121d8fbbdc02da9e396a517f1f5aff50700eab228a055b6 7376 liblouis_3.0.0-3ubuntu1.debian.tar.xz
 6fc5c2f10527e429c1e5cc97411e4162441f296c5ffe02dcf2685d7d964ce7a3 6874 liblouis_3.0.0-3ubuntu1_source.buildinfo
Files:
 a2878134ad946bdd907eec82800d6af0 2453 libs extra liblouis_3.0.0-3ubuntu1.dsc
 feb661806dd3bd4f5ca585e430a2d2ba 7376 libs extra liblouis_3.0.0-3ubuntu1.debian.tar.xz
 ea7408b08693230bb9b70ed4c9cdf57f 6874 libs extra liblouis_3.0.0-3ubuntu1_source.buildinfo
Original-Maintainer: Debian Accessibility Team <debian-accessibility at lists.debian.org>

-----BEGIN PGP SIGNATURE-----
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=yhme
-----END PGP SIGNATURE-----


More information about the Artful-changes mailing list