[ubuntu/karmic-security] dpkg_1.15.4ubuntu2.3_amd64_translations.tar.gz, dpkg_1.15.4ubuntu2.3_i386_translations.tar.gz, dpkg_1.15.4ubuntu2.3_ia64_translations.tar.gz, dpkg_1.15.4ubuntu2.3_lpia_translations.tar.gz, dpkg_1.15.4ubuntu2.3_sparc_translations.tar.gz (delayed), dpkg_1.15.4ubuntu2.3_armel_translations.tar.gz, dpkg_1.15.4ubuntu2.3_powerpc_translations.tar.gz, dpkg 1.15.4ubuntu2.3 (Accepted)

Ubuntu Installer archive at ubuntu.com
Thu Jan 6 21:08:06 UTC 2011


dpkg (1.15.4ubuntu2.3) karmic-security; urgency=low

  * SECURITY UPDATE: relative directory and symlink following in source pkgs.
    - scripts/Dpkg/Source/Archive.pm, scripts/Dpkg/Source/Patch.pm,
      scripts/Dpkg/Source/Package/V2.pm: applied fixes from Raphael Hertzog,
      thanks to Raphael Geissert.
    - CVE-2010-1679

Date: Thu, 06 Jan 2011 10:28:01 -0800
Changed-By: Kees Cook <kees at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/karmic/+source/dpkg/1.15.4ubuntu2.3
-------------- next part --------------
Format: 1.8
Date: Thu, 06 Jan 2011 10:28:01 -0800
Source: dpkg
Binary: dpkg dpkg-dev dselect
Architecture: source
Version: 1.15.4ubuntu2.3
Distribution: karmic-security
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 dpkg       - Debian package management system
 dpkg-dev   - Debian package development tools
 dselect    - Debian package management front-end
Changes: 
 dpkg (1.15.4ubuntu2.3) karmic-security; urgency=low
 .
   * SECURITY UPDATE: relative directory and symlink following in source pkgs.
     - scripts/Dpkg/Source/Archive.pm, scripts/Dpkg/Source/Patch.pm,
       scripts/Dpkg/Source/Package/V2.pm: applied fixes from Raphael Hertzog,
       thanks to Raphael Geissert.
     - CVE-2010-1679
Checksums-Sha1: 
 8e5a4c29da340f5f1bd0ceebd9549f185aa78c45 1369 dpkg_1.15.4ubuntu2.3.dsc
 4cc37ad3cb5eae95ce4978db2e89415797f13e1d 7046765 dpkg_1.15.4ubuntu2.3.tar.gz
Checksums-Sha256: 
 b2c53211655d20456466fd2df41691d6996a0fdb7786787fe75076461d9f6930 1369 dpkg_1.15.4ubuntu2.3.dsc
 795cb757d8fad663e2c88b15336e34088202a8e3094f668dbdf3e3552fde3f39 7046765 dpkg_1.15.4ubuntu2.3.tar.gz
Files: 
 df5975398ec1f8fa00617dba2a855090 1369 admin required dpkg_1.15.4ubuntu2.3.dsc
 7bd73bcbd5ff74a2083f51b068c3f071 7046765 admin required dpkg_1.15.4ubuntu2.3.tar.gz
Original-Maintainer: Dpkg Developers <debian-dpkg at lists.debian.org>


More information about the Karmic-changes mailing list