[ubuntu/hardy-security] cmake, cmake (delayed) 2.4.7-1ubuntu0.1 (Accepted)

Ubuntu Installer archive at ubuntu.com
Thu Apr 15 20:05:49 BST 2010


cmake (2.4.7-1ubuntu0.1) hardy-security; urgency=low

  * SECURITY UPDATE: fix DoS via malformed XML
    - debian/patches/CVE_2009_3720.patch: xmltok_impl.c to not access beyond
      end of input string
    - CVE-2009-3720
  * SECURITY UPDATE: fix DoS via malformed UTF-8 sequences
    - debian/patches/CVE_2009_3560.patch: update xmlparse.c to properly
      recognize the end of a token
    - CVE-2009-3560

Date: Tue, 13 Apr 2010 20:58:35 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/cmake/2.4.7-1ubuntu0.1
-------------- next part --------------
Format: 1.7
Date: Tue, 13 Apr 2010 20:58:35 -0500
Source: cmake
Binary: cmake
Architecture: source
Version: 2.4.7-1ubuntu0.1
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 cmake      - A cross-platform, open-source make system
Changes: 
 cmake (2.4.7-1ubuntu0.1) hardy-security; urgency=low
 .
   * SECURITY UPDATE: fix DoS via malformed XML
     - debian/patches/CVE_2009_3720.patch: xmltok_impl.c to not access beyond
       end of input string
     - CVE-2009-3720
   * SECURITY UPDATE: fix DoS via malformed UTF-8 sequences
     - debian/patches/CVE_2009_3560.patch: update xmlparse.c to properly
       recognize the end of a token
     - CVE-2009-3560
Files: 
 2c34c737d1e386a07a5c76a7dd13a944 754 devel optional cmake_2.4.7-1ubuntu0.1.dsc
 4847577a13e831bf4c9362c095c57469 19304 devel optional cmake_2.4.7-1ubuntu0.1.diff.gz
Original-Maintainer: A. Maitland Bottoms <bottoms at debian.org>


More information about the Hardy-changes mailing list