Accepted libx11 2:1.0.3-0ubuntu4 (source)

Kees Cook kees at ubuntu.com
Fri Oct 20 10:22:01 BST 2006


Accepted:
libx11 2:1.0.3-0ubuntu4 was ACCEPTED.
	Component: main Section: x11

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Sat, 14 Oct 2006 17:53:07 -0700
Source: libx11
Binary: libx11-6-dbg libx11-data libx11-6 libx11-dev
Architecture: source
Version: 2:1.0.3-0ubuntu4
Distribution: edgy
Urgency: low
Maintainer: Debian X Strike Force <debian-x at lists.debian.org>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 libx11-6   - X11 client-side library
 libx11-6-dbg - X11 client-side library (debug package)
 libx11-data - X11 client-side library
 libx11-dev - X11 client-side library (development headers)
Changes: 
 libx11 (2:1.0.3-0ubuntu4) edgy; urgency=low
 .
   * SECURITY UPDATE: file descriptor opened from environment variable
     leaked, allowing elevated read access to files.
   * Add 'debian/patches/018_ximcp_double_open.diff' to stop a file descriptor
     leak in the ximcp module.
   * References
     https://launchpad.net/distros/ubuntu/+source/libx11/+bug/66776
     CVE-2006-5397
Files: 
 f7a39369f60dc422a9f0fd42a5c51f56 994 x11 optional libx11_1.0.3-0ubuntu4.dsc
 d5a6cc84f9617451d88fa893185b97e5 94519 x11 optional libx11_1.0.3-0ubuntu4.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFFN/LEQxo87aLX0pIRAp6jAJ9yC34Zmgu1OYzoWEIPts0gNLvKBwCgpPCY
ruvRGY7IjhehiKWFFvAiXk0=
=GM2v
-----END PGP SIGNATURE-----





More information about the edgy-changes mailing list