[ubuntu/karmic-security] pango1.0, pango1.0 (delayed) 1.26.0-1ubuntu0.1 (Accepted)

Ubuntu Installer archive at ubuntu.com
Wed Mar 2 15:03:57 UTC 2011


pango1.0 (1.26.0-1ubuntu0.1) karmic-security; urgency=low

  * SECURITY UPDATE: denial of service via crafted font file
    - debian/patches/20_CVE-2010-0421.patch: initialize memory and properly
      calculate size in pango/opentype/hb-ot-layout.cc.
    - CVE-2010-0421
  * SECURITY UPDATE: denial of service and possible code execution via
    crafted font file (LP: #696616)
    - debian/patches/21_CVE-2011-0020.patch: check for overflow in
      pango/pangoft2-render.c.
    - CVE-2011-0020
  * SECURITY UPDATE: denial of service and possible code execution via
    unchecked realloc failures
    - debian/patches/22_CVE-2011-0064.patch: check for realloc failures in
      pango/opentype/hb-buffer.*, pango/opentype/hb-buffer-private.h.
    - CVE-2011-0064

Date: Tue, 01 Mar 2011 10:49:46 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/karmic/+source/pango1.0/1.26.0-1ubuntu0.1
-------------- next part --------------
Format: 1.8
Date: Tue, 01 Mar 2011 10:49:46 -0500
Source: pango1.0
Binary: libpango1.0-0 libpango1.0-udeb libpango1.0-common libpango1.0-dev libpango1.0-0-dbg libpango1.0-doc
Architecture: source
Version: 1.26.0-1ubuntu0.1
Distribution: karmic-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libpango1.0-0 - Layout and rendering of internationalized text
 libpango1.0-0-dbg - The Pango library and debugging symbols
 libpango1.0-common - Modules and configuration files for the Pango
 libpango1.0-dev - Development files for the Pango
 libpango1.0-doc - Documentation files for the Pango
 libpango1.0-udeb - Layout and rendering of internationalized text - minimal runtime (udeb)
Changes: 
 pango1.0 (1.26.0-1ubuntu0.1) karmic-security; urgency=low
 .
   * SECURITY UPDATE: denial of service via crafted font file
     - debian/patches/20_CVE-2010-0421.patch: initialize memory and properly
       calculate size in pango/opentype/hb-ot-layout.cc.
     - CVE-2010-0421
   * SECURITY UPDATE: denial of service and possible code execution via
     crafted font file (LP: #696616)
     - debian/patches/21_CVE-2011-0020.patch: check for overflow in
       pango/pangoft2-render.c.
     - CVE-2011-0020
   * SECURITY UPDATE: denial of service and possible code execution via
     unchecked realloc failures
     - debian/patches/22_CVE-2011-0064.patch: check for realloc failures in
       pango/opentype/hb-buffer.*, pango/opentype/hb-buffer-private.h.
     - CVE-2011-0064
Checksums-Sha1: 
 c860c9228057e2eca2e35eaab69ebef1c9e2dc93 2378 pango1.0_1.26.0-1ubuntu0.1.dsc
 f83d7a004e650298d05be1c88f1b779b19df2625 37892 pango1.0_1.26.0-1ubuntu0.1.diff.gz
Checksums-Sha256: 
 7a59fc401618e275593ecb059a1322462ac7035f5cf2df47301096894a0128cf 2378 pango1.0_1.26.0-1ubuntu0.1.dsc
 aa28dcde12d63836d58d6cfeffb58583b31573b9686c8e4f56dda46f7b66a023 37892 pango1.0_1.26.0-1ubuntu0.1.diff.gz
Files: 
 bee4e7d537321edd41480b81b113a83e 2378 libs optional pango1.0_1.26.0-1ubuntu0.1.dsc
 f85297d4cc9b591c621db6f7fc9b8985 37892 libs optional pango1.0_1.26.0-1ubuntu0.1.diff.gz
Launchpad-Bugs-Fixed: 696616
Original-Maintainer: Sebastien Bacher <seb128 at debian.org>


More information about the Karmic-changes mailing list