[ubuntu/oneiric-security] commons-daemon 1.0.6-1ubuntu0.1 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Mon Dec 12 17:03:43 UTC 2011
commons-daemon (1.0.6-1ubuntu0.1) oneiric-security; urgency=low
* SECURITY UPDATE: permissions bypass via incorrect capability dropping
- debian/patches/CVE-2011-2729.diff: correctly drop capabilities in
src/native/unix/native/jsvc-unix.c.
- CVE-2011-2729
Date: Tue, 29 Nov 2011 11:15:23 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/oneiric/+source/commons-daemon/1.0.6-1ubuntu0.1
-------------- next part --------------
Format: 1.8
Date: Tue, 29 Nov 2011 11:15:23 -0500
Source: commons-daemon
Binary: libcommons-daemon-java jsvc
Architecture: source
Version: 1.0.6-1ubuntu0.1
Distribution: oneiric-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
jsvc - wrapper to launch Java applications as daemons
libcommons-daemon-java - library to launch Java applications as daemons
Changes:
commons-daemon (1.0.6-1ubuntu0.1) oneiric-security; urgency=low
.
* SECURITY UPDATE: permissions bypass via incorrect capability dropping
- debian/patches/CVE-2011-2729.diff: correctly drop capabilities in
src/native/unix/native/jsvc-unix.c.
- CVE-2011-2729
Checksums-Sha1:
454f9200daf4201d86d7e3176e22ec505a9f6b26 2270 commons-daemon_1.0.6-1ubuntu0.1.dsc
0263d78d565963cce5c39a2d4ca330f2c0a58284 8065 commons-daemon_1.0.6-1ubuntu0.1.debian.tar.gz
Checksums-Sha256:
b4673093a47e4438f4643874316f97568257c1f86659d465a279ce4db85d6d59 2270 commons-daemon_1.0.6-1ubuntu0.1.dsc
9361d8ba026d53dfd556c2490e47cc47e842efd3b593290f3f79980cf46eca8f 8065 commons-daemon_1.0.6-1ubuntu0.1.debian.tar.gz
Files:
23d650301c8d4617f0311410b16a7ed8 2270 java optional commons-daemon_1.0.6-1ubuntu0.1.dsc
6c9274410118ddc4b75a9ebe478a484d 8065 java optional commons-daemon_1.0.6-1ubuntu0.1.debian.tar.gz
Original-Maintainer: Debian Java Maintainers <pkg-java-maintainers at lists.alioth.debian.org>
More information about the Oneiric-changes
mailing list