[ubuntu/maverick] gnupg2 2.0.14-1.1ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Aug 11 19:35:25 BST 2010


gnupg2 (2.0.14-1.1ubuntu2) maverick; urgency=low

  * SECURITY UPDATE: denial of service and possible arbitrary code
    execution via certificate with large number of Subject Alternate Names
    - debian/patches/CVE-2010-2547.patch: fix use-after-free in
      kbx/keybox-blob.c.
    - CVE-2010-2547

Date: Wed, 11 Aug 2010 13:56:02 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/maverick/+source/gnupg2/2.0.14-1.1ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Wed, 11 Aug 2010 13:56:02 -0400
Source: gnupg2
Binary: gnupg-agent gpgsm gnupg2
Architecture: source
Version: 2.0.14-1.1ubuntu2
Distribution: maverick
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 gnupg-agent - GNU privacy guard - password agent
 gnupg2     - GNU privacy guard - a free PGP replacement (new v2.x)
 gpgsm      - GNU privacy guard - S/MIME version
Changes: 
 gnupg2 (2.0.14-1.1ubuntu2) maverick; urgency=low
 .
   * SECURITY UPDATE: denial of service and possible arbitrary code
     execution via certificate with large number of Subject Alternate Names
     - debian/patches/CVE-2010-2547.patch: fix use-after-free in
       kbx/keybox-blob.c.
     - CVE-2010-2547
Checksums-Sha1: 
 3d4f2e411a49385c852cb699e4a816cce965eb2f 1529 gnupg2_2.0.14-1.1ubuntu2.dsc
 bf6d16782041697f65effb88967c3fe2ecb5b387 40493 gnupg2_2.0.14-1.1ubuntu2.debian.tar.bz2
Checksums-Sha256: 
 13e233a71a0d0220e8a9977f7c1b68cbc87582a01b7c8974376d46871c01a9b4 1529 gnupg2_2.0.14-1.1ubuntu2.dsc
 47e6e6bd36e177d7d3599f561f231e6f8b422b1641190750d479c54aea52eef3 40493 gnupg2_2.0.14-1.1ubuntu2.debian.tar.bz2
Files: 
 21d81f1b5ca84e9939aaacb26597d4fb 1529 utils optional gnupg2_2.0.14-1.1ubuntu2.dsc
 fa0e1d956aa1bbb8e998304550df2f4e 40493 utils optional gnupg2_2.0.14-1.1ubuntu2.debian.tar.bz2
Original-Maintainer: Eric Dorland <eric at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkxi7IAACgkQLMAs/0C4zNpztgCglxTcBcWZ9aeXOJiyFwhENbMa
1+MAoMNLGLb+ym6CcTFD8upUvE5Smtfy
=skA5
-----END PGP SIGNATURE-----


More information about the Maverick-changes mailing list