Accepted: bzip2 1.0.4-2ubuntu4 (source)

Kees Cook kees at ubuntu.com
Fri Mar 21 10:01:13 GMT 2008


Accepted:
 OK: bzip2_1.0.4.orig.tar.gz
 OK: bzip2_1.0.4-2ubuntu4.diff.gz
 OK: bzip2_1.0.4-2ubuntu4.dsc
     -> Component: main Section: utils

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Wed, 19 Mar 2008 13:11:42 -0700
Source: bzip2
Binary: libbz2-1.0 libbz2-dev bzip2 lib64bz2-1.0 lib64bz2-dev lib32bz2-1.0 lib32bz2-dev bzip2-doc
Architecture: source
Version: 1.0.4-2ubuntu4
Distribution: hardy
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 bzip2      - high-quality block-sorting file compressor - utilities
 bzip2-doc  - high-quality block-sorting file compressor - documentation
 lib32bz2-1.0 - high-quality block-sorting file compressor library - 32bit runtim
 lib32bz2-dev - high-quality block-sorting file compressor library - 32bit develo
 lib64bz2-1.0 - high-quality block-sorting file compressor library - 64bit runtim
 lib64bz2-dev - high-quality block-sorting file compressor library - 64bit develo
 libbz2-1.0 - high-quality block-sorting file compressor library - runtime
 libbz2-dev - high-quality block-sorting file compressor library - development
Changes: 
 bzip2 (1.0.4-2ubuntu4) hardy; urgency=low
 .
   * SECURITY UPDATE: denial of service via heap memory corruption.
   * bzlib.c, bzlib_private.h: upstream patch from 1.0.5 applied inline.
   * References
     CVE-2008-1372
Files: 
 33946eb049366ae90bda92837cc79547 968 utils important bzip2_1.0.4-2ubuntu4.dsc
 da6fa4a13bca920a1fb3daac008cf871 74448 utils important bzip2_1.0.4-2ubuntu4.diff.gz
Original-Maintainer: Anibal Monsalve Salazar <anibal at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFH4vERH/9LqRcGPm0RAkxyAJ9/n/5ZFv32m5jVmNyY2KVzlQg0TwCeJb8W
uE4Ze5byjUVDUSBRQLCv79U=
=h6bR
-----END PGP SIGNATURE-----





More information about the Hardy-changes mailing list