[ubuntu/lucid] cuetools 1.3.1-7ubuntu1 (Accepted)
Stephan Hermann
sh at sourcecode.de
Tue Feb 16 16:25:36 GMT 2010
cuetools (1.3.1-7ubuntu1) lucid; urgency=low
* debian/patches/10-buffer-overflow-fix.dpatch: (LP: #392372)
+ it turns out that the problem was a buffer whose size was
too small to include the null character at the end.
A sprintf() of a string of size 9 into a 9 bytes buffer:
sprintf(msf, "%02d:%02d:%02d", minutes, seconds, frames);
Thx Christian Hudon <chrish at debian.org> for the patch
Date: Tue, 16 Feb 2010 16:14:53 +0000
Changed-By: Stephan Hermann <sh at sourcecode.de>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/cuetools/1.3.1-7ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Tue, 16 Feb 2010 16:14:53 +0000
Source: cuetools
Binary: cuetools
Architecture: source
Version: 1.3.1-7ubuntu1
Distribution: lucid
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Stephan Hermann <sh at sourcecode.de>
Description:
cuetools - tools for manipulating CUE/TOC files
Launchpad-Bugs-Fixed: 392372
Changes:
cuetools (1.3.1-7ubuntu1) lucid; urgency=low
.
* debian/patches/10-buffer-overflow-fix.dpatch: (LP: #392372)
+ it turns out that the problem was a buffer whose size was
too small to include the null character at the end.
A sprintf() of a string of size 9 into a 9 bytes buffer:
sprintf(msf, "%02d:%02d:%02d", minutes, seconds, frames);
Thx Christian Hudon <chrish at debian.org> for the patch
Checksums-Sha1:
4e1631f4009d5d351157ebf00923d0b08050f517 1142 cuetools_1.3.1-7ubuntu1.dsc
dc98bd48db4d353c74b1c335a8ab49ebe046ac92 13505 cuetools_1.3.1-7ubuntu1.diff.gz
Checksums-Sha256:
80405dba9066ae7ddfc7fa847ec9b3a86a039bc7813c30558c09adacaee7ee26 1142 cuetools_1.3.1-7ubuntu1.dsc
4bfae394c069b829015a58ce460fc138a18875d90d1d93b10800a38c554e9f2a 13505 cuetools_1.3.1-7ubuntu1.diff.gz
Files:
40228bc0f875f44f3753655a4ed1a2b1 1142 utils extra cuetools_1.3.1-7ubuntu1.dsc
d5912a17d7af0828126d7a8317a6f522 13505 utils extra cuetools_1.3.1-7ubuntu1.diff.gz
Original-Maintainer: Patrick Matthäi <pmatthaei at debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
iEYEARECAAYFAkt6xiYACgkQwYnnM8CY76gVNACgjrEmQ20z3J9BCdmFY3UqEu7/
1kIAn3avFiOsbAz9TpZ3fK5IgO7MgHAn
=nVQm
-----END PGP SIGNATURE-----
More information about the Lucid-changes
mailing list