[ubuntu/hardy-security] libtasn1-3 1.1-1ubuntu0.1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed May 2 12:04:04 UTC 2012


libtasn1-3 (1.1-1ubuntu0.1) hardy-security; urgency=low

  * SECURITY UPDATE: denial of service and possible code execution via
    certain large length values.
    - debian/patches/CVE-2012-1569.patch: return an error when the decoded
      length value plus @len would exceed @der_len in lib/decoding.c.
    - CVE-2012-1569

Date: Tue, 24 Apr 2012 15:09:05 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/libtasn1-3/1.1-1ubuntu0.1
-------------- next part --------------
Format: 1.7
Date: Tue, 24 Apr 2012 15:09:05 -0400
Source: libtasn1-3
Binary: libtasn1-3-dev libtasn1-3-dbg libtasn1-3 libtasn1-3-bin
Architecture: source
Version: 1.1-1ubuntu0.1
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libtasn1-3 - Manage ASN.1 structures (runtime)
 libtasn1-3-bin - Manage ASN.1 structures (binaries)
 libtasn1-3-dbg - Manage ASN.1 structures (development)
 libtasn1-3-dev - Manage ASN.1 structures (development)
Changes: 
 libtasn1-3 (1.1-1ubuntu0.1) hardy-security; urgency=low
 .
   * SECURITY UPDATE: denial of service and possible code execution via
     certain large length values.
     - debian/patches/CVE-2012-1569.patch: return an error when the decoded
       length value plus @len would exceed @der_len in lib/decoding.c.
     - CVE-2012-1569
Files: 
 b77ccc4326529ed69e5a8678b48c4b57 1605 libs important libtasn1-3_1.1-1ubuntu0.1.dsc
 ae54d9744c8201272fa56e53fef967d9 22897 libs important libtasn1-3_1.1-1ubuntu0.1.diff.gz
Original-Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint at lists.alioth.debian.org>


More information about the Hardy-changes mailing list