[ubuntu/lucid] gzip 1.3.12-9ubuntu1 (Accepted)

Martin Pitt martin.pitt at ubuntu.com
Wed Jan 27 10:25:32 GMT 2010


gzip (1.3.12-9ubuntu1) lucid; urgency=low

  * Merge from debian testing.  Remaining changes:
    - debian/{control,rules}: Remove the Win32 build (and mingw32
      build-dependency), since mingw32 is in universe, and will remain so for
      the forseeable future.

gzip (1.3.12-9) unstable; urgency=high

  * fix applied for CVE-2010-0001 which identified an integer underflow when
    decompressing files that are compressed using the LZW algorithm. This
    could lead to the execution of arbitrary code when trying to decompress
    a crafted LZW compressed gzip archive.
  * switch to using dh_lintian for override delivery

Date: Wed, 27 Jan 2010 09:38:45 +0100
Changed-By: Martin Pitt <martin.pitt at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/gzip/1.3.12-9ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Wed, 27 Jan 2010 09:38:45 +0100
Source: gzip
Binary: gzip
Architecture: source
Version: 1.3.12-9ubuntu1
Distribution: lucid
Urgency: high
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Martin Pitt <martin.pitt at ubuntu.com>
Description: 
 gzip       - GNU compression utilities
Changes: 
 gzip (1.3.12-9ubuntu1) lucid; urgency=low
 .
   * Merge from debian testing.  Remaining changes:
     - debian/{control,rules}: Remove the Win32 build (and mingw32
       build-dependency), since mingw32 is in universe, and will remain so for
       the forseeable future.
 .
 gzip (1.3.12-9) unstable; urgency=high
 .
   * fix applied for CVE-2010-0001 which identified an integer underflow when
     decompressing files that are compressed using the LZW algorithm. This
     could lead to the execution of arbitrary code when trying to decompress
     a crafted LZW compressed gzip archive.
   * switch to using dh_lintian for override delivery
Checksums-Sha1: 
 c1cded4d1735d3f00f0b9615182581a0c99dbcf5 1086 gzip_1.3.12-9ubuntu1.dsc
 ac3b3d858b1f028b1ba04b694f7e071f60d894ee 15764 gzip_1.3.12-9ubuntu1.diff.gz
Checksums-Sha256: 
 454dbb09ecf7b7a801c6f83f59cc4af65f55f8f8074dd724c954143b28326703 1086 gzip_1.3.12-9ubuntu1.dsc
 e2f08773fb8482991ac151519e06399c6ce18ae5d7c956d24a32aa9ee24ef4fb 15764 gzip_1.3.12-9ubuntu1.diff.gz
Files: 
 39d5f00d6764048cf538f3c8a9b92403 1086 utils required gzip_1.3.12-9ubuntu1.dsc
 8578e8219868c6111ebfeb5087c3432c 15764 utils required gzip_1.3.12-9ubuntu1.diff.gz
Original-Maintainer: Bdale Garbee <bdale at gag.com>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAktf+7IACgkQDecnbV4Fd/JVSQCdG6a78gbcfWmMKss5z81L7xJm
RvUAnAke07T4AivdpyV5priuXJFYbcVC
=zTT9
-----END PGP SIGNATURE-----


More information about the Lucid-changes mailing list