[ubuntu/precise] colord 0.1.12-1ubuntu3 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Dec 7 17:00:18 UTC 2011


colord (0.1.12-1ubuntu3) precise; urgency=low

  * SECURITY UPDATE: arbitrary database modification via SQL injection
    - debian/patches/CVE-2011-4349.diff: Use sqlite3_mprintf in
      src/cd-device-db.c, src/cd-mapping-db.c.
    - CVE-2011-4349

Date: Tue, 29 Nov 2011 08:52:57 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Christopher James Halse Rogers <raof at ubuntu.com>
https://launchpad.net/ubuntu/precise/+source/colord/0.1.12-1ubuntu3
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 29 Nov 2011 08:52:57 -0500
Source: colord
Binary: libcolord-dev libcolord1 colord gir1.2-colord-1.0
Architecture: source
Version: 0.1.12-1ubuntu3
Distribution: precise
Urgency: low
Maintainer: Christopher James Halse Rogers <raof at ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 colord     - system service to manage device colour profiles -- system daemon
 gir1.2-colord-1.0 - GObject introspection data for the colord library
 libcolord-dev - system service to manage device colour profiles -- development fi
 libcolord1 - system service to manage device colour profiles -- runtime
Changes: 
 colord (0.1.12-1ubuntu3) precise; urgency=low
 .
   * SECURITY UPDATE: arbitrary database modification via SQL injection
     - debian/patches/CVE-2011-4349.diff: Use sqlite3_mprintf in
       src/cd-device-db.c, src/cd-mapping-db.c.
     - CVE-2011-4349
Checksums-Sha1: 
 7500b63ccfa9911459b0292f12edc5d37dbb7371 2233 colord_0.1.12-1ubuntu3.dsc
 386f8fd43e7715b06214e5f593ff650d37b467d7 8405 colord_0.1.12-1ubuntu3.debian.tar.gz
Checksums-Sha256: 
 0bdf9a16951433612a24f246cdd8f6c63fc9c7d8b1285317f904f1ebcd7e3ac9 2233 colord_0.1.12-1ubuntu3.dsc
 00ef5fef3abfd9cff18c49b7e46bf1ef51779ce0d09f6ba9be3e06300156f1f0 8405 colord_0.1.12-1ubuntu3.debian.tar.gz
Files: 
 651575061bf41eea0341521c4cfb158b 2233 graphics optional colord_0.1.12-1ubuntu3.dsc
 54c3acf526ed6733e7e9d06df77fde1f 8405 graphics optional colord_0.1.12-1ubuntu3.debian.tar.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
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=qAtN
-----END PGP SIGNATURE-----


More information about the Precise-changes mailing list