[ubuntu/precise-updates] e2fsprogs 1.42-1ubuntu2.2 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Mon Feb 23 18:58:35 UTC 2015


e2fsprogs (1.42-1ubuntu2.2) precise-security; urgency=medium

  * SECURITY UPDATE: heap overflow via block group descriptor information
    - debian/patches/CVE-2015-0247.patch: limit first_meta_bg in
      lib/ext2fs/closefs.c, lib/ext2fs/openfs.c.
    - CVE-2015-0247
  * SECURITY UPDATE: buffer overflow in closefs()
    - debian/patches/CVE-2015-1572.patch: properly check against
      fs->desc_blocks in lib/ext2fs/closefs.c.
    - CVE-2015-1572

Date: 2015-02-16 19:15:12.356412+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/e2fsprogs/1.42-1ubuntu2.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list