[ubuntu/bionic-proposed] libxcursor 1:1.1.14-3ubuntu1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Nov 29 20:22:16 UTC 2017


libxcursor (1:1.1.14-3ubuntu1) bionic; urgency=medium

  * SECURITY UPDATE: heap overflows when parsing malicious files
    - debian/patches/CVE-2017-16612.patch: add checks to src/file.c.
    - CVE-2017-16612

Date: Wed, 29 Nov 2017 15:12:48 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/libxcursor/1:1.1.14-3ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 29 Nov 2017 15:12:48 -0500
Source: libxcursor
Binary: libxcursor1 libxcursor1-udeb libxcursor-dev
Architecture: source
Version: 1:1.1.14-3ubuntu1
Distribution: bionic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 libxcursor-dev - X cursor management library (development files)
 libxcursor1 - X cursor management library
 libxcursor1-udeb - X cursor management library (udeb)
Changes:
 libxcursor (1:1.1.14-3ubuntu1) bionic; urgency=medium
 .
   * SECURITY UPDATE: heap overflows when parsing malicious files
     - debian/patches/CVE-2017-16612.patch: add checks to src/file.c.
     - CVE-2017-16612
Checksums-Sha1:
 aae73eba5cefcc37f2688c80b8f420b56649ccbe 2352 libxcursor_1.1.14-3ubuntu1.dsc
 ccb30345ad266b3f2eb6ccd8d181a415eeb97d52 9812 libxcursor_1.1.14-3ubuntu1.debian.tar.xz
 50136ee283ddb3caa7d2ab084a620da50cdfd417 6350 libxcursor_1.1.14-3ubuntu1_source.buildinfo
Checksums-Sha256:
 40b24b26c8636dcd16f5c18c9420e2ccee7281d2f38f5f944884298c09716451 2352 libxcursor_1.1.14-3ubuntu1.dsc
 1843025bc382d12f652ef73c618a78e49a2ec9b108e99a71f96a5d4b9c0f73f0 9812 libxcursor_1.1.14-3ubuntu1.debian.tar.xz
 34796792b417acd679573264bcc98aae7a01fdfe68bbecf29f29c501751754f3 6350 libxcursor_1.1.14-3ubuntu1_source.buildinfo
Files:
 36212b4927b50c7e2661475ca19dc6de 2352 devel optional libxcursor_1.1.14-3ubuntu1.dsc
 934bce3a8b92e7b1718e4a411523bd31 9812 devel optional libxcursor_1.1.14-3ubuntu1.debian.tar.xz
 7b1bd5d3dc1e756eebf9c0327645fc4d 6350 devel optional libxcursor_1.1.14-3ubuntu1_source.buildinfo
Original-Maintainer: Debian X Strike Force <debian-x at lists.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=xNPA
-----END PGP SIGNATURE-----


More information about the Bionic-changes mailing list