[ubuntu/lucid] python2.4 2.4.6-1ubuntu5 (Accepted)

Jamie Strandboge jamie at ubuntu.com
Thu Jan 21 19:10:15 GMT 2010


python2.4 (2.4.6-1ubuntu5) lucid; urgency=low

  * SECURITY UPDATE: fix DoS via malformed XML
    - debian/patches/CVE-2009-3720.dpatch: update Modules/expat/xmltok_impl.c
      to not access beyond end of input string
    - CVE-2009-3720
  * SECURITY UPDATE: fix DoS via malformed UTF-8 sequences
    - debian/patches/CVE-2009-3560.dpatch: update Modules/expat/xmlparse.c to
      properly recognize the end of a token
    - CVE-2009-3560

Date: Thu, 21 Jan 2010 10:30:58 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/python2.4/2.4.6-1ubuntu5
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 21 Jan 2010 10:30:58 -0600
Source: python2.4
Binary: python2.4 python2.4-minimal python2.4-examples python2.4-dev idle-python2.4 python2.4-doc python2.4-dbg
Architecture: source
Version: 2.4.6-1ubuntu5
Distribution: lucid
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 idle-python2.4 - An IDE for Python (v2.4) using Tkinter
 python2.4  - An interactive high-level object-oriented language (version 2.4)
 python2.4-dbg - Debug Build of the Python Interpreter (version 2.4)
 python2.4-dev - Header files and a static library for Python (v2.4)
 python2.4-doc - Documentation for the high-level object-oriented language Python 
 python2.4-examples - Examples for the Python language (v2.4)
 python2.4-minimal - A minimal subset of the Python language (version 2.4)
Changes: 
 python2.4 (2.4.6-1ubuntu5) lucid; urgency=low
 .
   * SECURITY UPDATE: fix DoS via malformed XML
     - debian/patches/CVE-2009-3720.dpatch: update Modules/expat/xmltok_impl.c
       to not access beyond end of input string
     - CVE-2009-3720
   * SECURITY UPDATE: fix DoS via malformed UTF-8 sequences
     - debian/patches/CVE-2009-3560.dpatch: update Modules/expat/xmlparse.c to
       properly recognize the end of a token
     - CVE-2009-3560
Checksums-Sha1: 
 14f2f2adf832d961c560f294c38664a4f5dd7315 1804 python2.4_2.4.6-1ubuntu5.dsc
 6e4493b7b3a84768c3541b6f3ec400deffc5623d 2713454 python2.4_2.4.6-1ubuntu5.diff.gz
Checksums-Sha256: 
 db878c17583ca4b62743ac08e0d67d6e89c5e19da84747afbce67bebfb85b7ab 1804 python2.4_2.4.6-1ubuntu5.dsc
 fdb0322096df36698982c6d1befc3cf325c39b9ad3f327b692df2fa110ced128 2713454 python2.4_2.4.6-1ubuntu5.diff.gz
Files: 
 e52530fdca4356912ba970957635f37f 1804 python optional python2.4_2.4.6-1ubuntu5.dsc
 c5fe2993090aa5da715bbadcfc065fe6 2713454 python optional python2.4_2.4.6-1ubuntu5.diff.gz
Original-Maintainer: Matthias Klose <doko at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAktYmA4ACgkQW0JvuRdL8BrVqwCfWN3YKGn0dwx7mDc6vTRMSo3A
vw4An2vJV7bC0uzeNPAdApHlSxIRLpH2
=JMZe
-----END PGP SIGNATURE-----


More information about the Lucid-changes mailing list