[ubuntu/bionic-proposed] openexr 2.2.0-11.1ubuntu1 (Accepted)

Nishanth Aravamudan nish.aravamudan at canonical.com
Sat Jan 13 00:17:14 UTC 2018


openexr (2.2.0-11.1ubuntu1) bionic; urgency=medium

  * Merge with Debian unstable (LP: #1742243). Remaining changes:
    - Add ppc64el to the archs where to ignore test results.

openexr (2.2.0-11.1) unstable; urgency=high

  * Non-maintainer upload.
  * Fix CVE-2017-9110, CVE-2017-9112 and CVE-2017-9116.
    Brandon Perry discovered that openexr was affected by an integer overflow
    vulnerability and missing boundary checks that would allow a remote
    attacker to cause a denial of service (application crash) via specially
    crafted image files. (Closes: #864078)

Date: Tue, 09 Jan 2018 10:49:25 -0800
Changed-By: Nishanth Aravamudan <nish.aravamudan at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/openexr/2.2.0-11.1ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Tue, 09 Jan 2018 10:49:25 -0800
Source: openexr
Binary: openexr openexr-doc libopenexr-dev libopenexr22
Architecture: source
Version: 2.2.0-11.1ubuntu1
Distribution: bionic
Urgency: high
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Nishanth Aravamudan <nish.aravamudan at canonical.com>
Description:
 libopenexr-dev - development files for the OpenEXR image library
 libopenexr22 - runtime files for the OpenEXR image library
 openexr    - command-line tools for the OpenEXR image format
 openexr-doc - documentation and examples for the OpenEXR image format
Closes: 864078
Launchpad-Bugs-Fixed: 1742243
Changes:
 openexr (2.2.0-11.1ubuntu1) bionic; urgency=medium
 .
   * Merge with Debian unstable (LP: #1742243). Remaining changes:
     - Add ppc64el to the archs where to ignore test results.
 .
 openexr (2.2.0-11.1) unstable; urgency=high
 .
   * Non-maintainer upload.
   * Fix CVE-2017-9110, CVE-2017-9112 and CVE-2017-9116.
     Brandon Perry discovered that openexr was affected by an integer overflow
     vulnerability and missing boundary checks that would allow a remote
     attacker to cause a denial of service (application crash) via specially
     crafted image files. (Closes: #864078)
Checksums-Sha1:
 8164baca9cb5e2a375e6040935a6458083df417f 2058 openexr_2.2.0-11.1ubuntu1.dsc
 ab6ab7fde7948c7e29abbebb561aace3dd606e71 17728 openexr_2.2.0-11.1ubuntu1.debian.tar.xz
 719a65b3ddbfaad4aea8cec888cdcee8e368ec5c 5092 openexr_2.2.0-11.1ubuntu1_source.buildinfo
Checksums-Sha256:
 e91eb8260980f260ccde4792784e334587b1b7a2551df29963cd42e05cf2f6c5 2058 openexr_2.2.0-11.1ubuntu1.dsc
 1ae670d5984a415a09e7355683c3e19ee48c642bcc106650e56581172acf6f94 17728 openexr_2.2.0-11.1ubuntu1.debian.tar.xz
 6ca3ba6f60ce73f45fb38d557884d13b9fb58b6d266d50a5137ff9d5ef30e7e5 5092 openexr_2.2.0-11.1ubuntu1_source.buildinfo
Files:
 6f0ce1567f770b0576551dc21ad7c1ec 2058 graphics optional openexr_2.2.0-11.1ubuntu1.dsc
 e52227e5959779a3851f47f50f800eb3 17728 graphics optional openexr_2.2.0-11.1ubuntu1.debian.tar.xz
 ecbe4d87c4368998fd1dd23e507afca2 5092 graphics optional openexr_2.2.0-11.1ubuntu1_source.buildinfo
Original-Maintainer: Debian PhotoTools Maintainers <pkg-phototools-devel at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----

iQE7BAEBCAAlBQJaWU+aHhxuaXNoLmFyYXZhbXVkYW5AY2Fub25pY2FsLmNvbQAK
CRADRGyeZjIE+M0vB/933uKUT07BZMttkGO9zLEvX6zr1mQVODPC/48Z8YP4Xpb4
y24mFQViw96xnnplBiNMCnvFmXnQMozJgEl6znE5WVqg7O6rZmkGv06PcPB4QtV/
QTbXK885yANKOVyhyV5VKXWV89Rk0NaxRKPVo7SC30jWTv5Qa9VaIRwccb45p6rM
qOu7W0BS/BZcqbXS0Awy0g6eKQXCgUgNkLbp6AByVocZ1bed9sbs9QWJ3XZyttF6
p4q+DAmDITNNI5ft+G8WMVj0/JhAMSbRiBzWLQIZAILazfJEE3FnhpCHHCnjBW+z
eaYZgYUgf52CV5/fdoytllJKfmJXcwwjP2PQFkMI
=ev5H
-----END PGP SIGNATURE-----


More information about the Bionic-changes mailing list