[ubuntu/jaunty-security] bzip2, bzip2 (delayed) 1.0.5-1ubuntu1.1 (Accepted)
Ubuntu Installer
archive at ubuntu.com
Mon Sep 20 14:09:52 BST 2010
bzip2 (1.0.5-1ubuntu1.1) jaunty-security; urgency=low
* SECURITY UPDATE: fix integer overflow in BZ2_decompress()
- decompress.c: return error if N is larger than 2*1024^2 which keeps es
from overflowing but leaves enough room for the 900k maximum value of
the RUNA/RUNB encoding
- patch from upstream
- CVE-2010-0405
Date: Thu, 09 Sep 2010 10:16:51 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/jaunty/+source/bzip2/1.0.5-1ubuntu1.1
-------------- next part --------------
Format: 1.8
Date: Thu, 09 Sep 2010 10:16:51 -0500
Source: bzip2
Binary: libbz2-1.0 libbz2-dev bzip2 lib64bz2-1.0 lib64bz2-dev lib32bz2-1.0 lib32bz2-dev bzip2-doc
Architecture: source
Version: 1.0.5-1ubuntu1.1
Distribution: jaunty-security
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
bzip2 - high-quality block-sorting file compressor - utilities
bzip2-doc - high-quality block-sorting file compressor - documentation
lib32bz2-1.0 - high-quality block-sorting file compressor library - 32bit runtim
lib32bz2-dev - high-quality block-sorting file compressor library - 32bit develo
lib64bz2-1.0 - high-quality block-sorting file compressor library - 64bit runtim
lib64bz2-dev - high-quality block-sorting file compressor library - 64bit develo
libbz2-1.0 - high-quality block-sorting file compressor library - runtime
libbz2-dev - high-quality block-sorting file compressor library - development
Changes:
bzip2 (1.0.5-1ubuntu1.1) jaunty-security; urgency=low
.
* SECURITY UPDATE: fix integer overflow in BZ2_decompress()
- decompress.c: return error if N is larger than 2*1024^2 which keeps es
from overflowing but leaves enough room for the 900k maximum value of
the RUNA/RUNB encoding
- patch from upstream
- CVE-2010-0405
Checksums-Sha1:
faa07a9dbd8fd02dfd6106e2ee82d3d565204dfc 1369 bzip2_1.0.5-1ubuntu1.1.dsc
f2aeb1667a98f914b909bb28b0207e401674ef47 75597 bzip2_1.0.5-1ubuntu1.1.diff.gz
Checksums-Sha256:
8ce83b02044c683937f66d6b339547a14399797b642d88a2e78c4c68ec11aa80 1369 bzip2_1.0.5-1ubuntu1.1.dsc
f154aa531fd19e215f58310b7a0892308f148ca835fe9a18caaabcfdd4106aa9 75597 bzip2_1.0.5-1ubuntu1.1.diff.gz
Files:
9a0c218520b10a44a2cdf91c0be37240 1369 utils important bzip2_1.0.5-1ubuntu1.1.dsc
024461de3c060a50cbd8a5ee3b3d4f6e 75597 utils important bzip2_1.0.5-1ubuntu1.1.diff.gz
Original-Maintainer: Anibal Monsalve Salazar <anibal at debian.org>
More information about the Jaunty-changes
mailing list