[ubuntu/lucid-security] graphviz 2.20.2-8ubuntu3.2 (Accepted)

Seth Arnold seth.arnold at canonical.com
Tue Dec 9 00:51:13 UTC 2014


graphviz (2.20.2-8ubuntu3.2) lucid-security; urgency=medium

  * SECURITY UPDATE: Format string vulnerability may allow attackers to
    cause a denial of service or possibly execute code.
    - debian/patches/CVE-2014-9157.patch: Fix format string vulnerability in
      lib/cgraph/scan.l yyerror() routine.
    - CVE-2014-9157

Date: 2014-12-05 03:21:10.707581+00:00
Changed-By: Seth Arnold <seth.arnold at canonical.com>
https://launchpad.net/ubuntu/+source/graphviz/2.20.2-8ubuntu3.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Lucid-changes mailing list