[ubuntu/focal-security] whoopsie 0.2.69ubuntu0.1 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue Aug 4 17:08:26 UTC 2020


whoopsie (0.2.69ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: integer overflow in bson parsing (LP: #1872560)
    - lib/bson/*: updated to latest upstream release.
    - CVE-2020-12135
  * SECURITY UPDATE: resource exhaustion via memory leak (LP: #1881982)
    - src/whoopsie.c, src/tests/test_parse_report.c: properly handle
      GHashTable.
    - CVE-2020-11937
  * SECURITY UPDATE: DoS via large data length (LP: #1882180)
    - src/whoopsie.c, src/whoopsie.h, src/tests/test_parse_report.c: limit
      the size of a report file.
    - CVE-2020-15570

Date: 2020-07-28 15:52:18.031327+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Maintainer: Evan <evan.dandrea at canonical.com>
https://launchpad.net/ubuntu/+source/whoopsie/0.2.69ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list