[ubuntu/noble-security] gnome-shell 46.0-0ubuntu6~24.04.3 (Accepted)
Marc Deslauriers
marc.deslauriers at canonical.com
Thu Aug 15 13:12:06 UTC 2024
gnome-shell (46.0-0ubuntu6~24.04.3) noble-security; urgency=medium
* SECURITY UPDATE: resource consumption via portal helper
- debian/patches/CVE-2024-36472-1.patch: use default_size instead of
set_size_request for size in js/portalHelper/main.js.
- debian/patches/CVE-2024-36472-2.patch: split out CaptivePortalHandler
class in js/ui/status/network.js.
- debian/patches/CVE-2024-36472-3.patch: show notification when
detecting captive portal in js/ui/status/network.js.
- debian/patches/CVE-2024-36472-4.patch: add option to disable
portal-helper in data/icons/meson.build, data/meson.build,
js/meson.build, js/misc/config.js.in, js/misc/meson.build,
js/ui/status/network.js, meson.build, meson_options.txt,
src/meson.build.
- debian/rules: build with portal_helper=false to use the default
browser instead of the embedded webkit2gtk browser.
- CVE-2024-36472
gnome-shell (46.0-0ubuntu6~24.04.1) noble; urgency=medium
* debian: Prepare for noble branching
* d/p/ubuntu-authd: Revert unwanted change causing ibus not to launch
(LP: #2069381)
* d/p: Do not allocate memory or call async-signal-unsafe code on spawn
* d/p/ubuntu-authd: Properly draw qr-codes for longer URIs (LP: #2067610)
* d/p/ubuntu-authd: Fix dialog text color when using light theme
(LP: #2067661)
* d/p/ubuntu-authd: Use right colors to draw the qr code in light mode
(LP: #2067661)
* d/p/ubuntu-authd: Properly handle new-password messages requests
(LP: #2068080)
* d/p/ubuntu-authd: Add translatable js files to POTFILES.in (LP: #2068912)
* d/p: Resize tray icon windows to respect their actor representation
(LP: #2012388)
* d/p: Do not make tray icons to take any input event directly.
This is all handled through their actor proxy representation (LP: #2012388)
Date: 2024-08-15 11:47:10.644117+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/gnome-shell/46.0-0ubuntu6~24.04.3
-------------- next part --------------
Sorry, changesfile not available.
More information about the noble-changes
mailing list