[ubuntu/natty-security] ubuntu-sso-client_1.2.1-0ubuntu2.1_i386_translations.tar.gz, ubuntu-sso-client 1.2.1-0ubuntu2.1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Jun 6 13:34:41 UTC 2012


ubuntu-sso-client (1.2.1-0ubuntu2.1) natty-security; urgency=low

  * SECURITY UPDATE: MITM via incorrect ssl cert validation (LP: #882055)
    - debian/patches/CVE-2011-4408.patch: use pycurl instead of urllib2 in
      ubuntu_sso/account.py,
      ubuntu_sso/credentials.py,
      ubuntu_sso/tests/test_credentials.py,
      ubuntu_sso/utils/curllib.py,
      ubuntu_sso/utils/tests/test_curllib.py.
    - debian/control: add python-pycurl dependency.
    - CVE-2011-4408

Date: Tue, 31 Jan 2012 14:01:31 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/ubuntu-sso-client/1.2.1-0ubuntu2.1
-------------- next part --------------
Format: 1.8
Date: Tue, 31 Jan 2012 14:01:31 -0500
Source: ubuntu-sso-client
Binary: ubuntu-sso-client
Architecture: source
Version: 1.2.1-0ubuntu2.1
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 ubuntu-sso-client - Ubuntu Single Sign-On client
Launchpad-Bugs-Fixed: 882055
Changes: 
 ubuntu-sso-client (1.2.1-0ubuntu2.1) natty-security; urgency=low
 .
   * SECURITY UPDATE: MITM via incorrect ssl cert validation (LP: #882055)
     - debian/patches/CVE-2011-4408.patch: use pycurl instead of urllib2 in
       ubuntu_sso/account.py,
       ubuntu_sso/credentials.py,
       ubuntu_sso/tests/test_credentials.py,
       ubuntu_sso/utils/curllib.py,
       ubuntu_sso/utils/tests/test_curllib.py.
     - debian/control: add python-pycurl dependency.
     - CVE-2011-4408
Checksums-Sha1: 
 a418392cefe2f1b6fda42807e7ce827d74f50a61 1926 ubuntu-sso-client_1.2.1-0ubuntu2.1.dsc
 f71c28c6d0789ea88a8b4f4ba9dd94ad3a3739ce 12530 ubuntu-sso-client_1.2.1-0ubuntu2.1.debian.tar.gz
Checksums-Sha256: 
 e1c456c197d8c55ed82e5864cb0f5a0cbe1459e5ce8a53e650a374bc1d280559 1926 ubuntu-sso-client_1.2.1-0ubuntu2.1.dsc
 fe681f8bfbc45cadf5f494689a521c1ed3f24be7c4d83c1f7ecbfbc77542517d 12530 ubuntu-sso-client_1.2.1-0ubuntu2.1.debian.tar.gz
Files: 
 46eaa6ba83ba4ffae4a6856ead72d75e 1926 python extra ubuntu-sso-client_1.2.1-0ubuntu2.1.dsc
 8b194ecc34b6bd72f85e5d6e95458ad7 12530 python extra ubuntu-sso-client_1.2.1-0ubuntu2.1.debian.tar.gz
Original-Maintainer: Natalia Bidart <natalia.bidart at canonical.com>


More information about the Natty-changes mailing list