Fwd: Bug#699870: [CVE-2013-0254] Qt Project Security Advisory: System V shared memory segments created world-writeable

Jonathan Riddell jr at jriddell.org
Sun Aug 18 19:57:03 UTC 2013


---------- Forwarded message ----------
From: Salvatore Bonaccorso <carnil at debian.org>
Date: 18 August 2013 20:50
Subject: Bug#699870: [CVE-2013-0254] Qt Project Security Advisory: System V
shared memory segments created world-writeable
To: Luciano Bello <luciano at debian.org>, 699870 at bugs.debian.org


Hi Qt/KDE Maintainers,

On Wed, Feb 06, 2013 at 03:18:07AM +0100, Luciano Bello wrote:
> Package: qt4-x11
> Severity: important
> Tags: security patch
> Justification: user security hole
>
> Hi Qt/KDE Maintainers,
>      This vulnerability had been reported against qt4-x11:
>  http://permalink.gmane.org/gmane.comp.lib.qt.devel/9759
>      The patch for 4.8 (which is in testing and sid) is available. For
4.6 looks
> quite easy to port. Can build and test a patch for stable in order to
release a
> DSA?

Did you had a chance to look at this already? The patch for 4.7 is at
[1].

 [1]
http://qt.gitorious.org/qt/qt/commit/57756e72adf2081137b97f0e689dd16c770d10b1

Regards,
Salvatore


--
To UNSUBSCRIBE, email to debian-qt-kde-REQUEST at lists.debian.org
with a subject of "unsubscribe". Trouble? Contact
listmaster at lists.debian.org
Archive: http://lists.debian.org/20130818195019.GA25877@eldamar.local
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/kubuntu-devel/attachments/20130818/590a61b3/attachment.html>


More information about the kubuntu-devel mailing list