[ubuntu/precise-updates] e2fsprogs 1.42-1ubuntu2.5 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Mon May 3 13:30:51 UTC 2021


e2fsprogs (1.42-1ubuntu2.5) precise-security; urgency=medium

  * SECURITY UPDATE: Out-of-bounds write
    - debian/patches/CVE-2019-5188-*.patch:  abort if there is a corrupted
      directory block when rehashing and don't try to rehash a deleted directory
      in e2fsck/rehash.c, e2fsck/pass1b.c.
    - CVE-2019-5188

e2fsprogs (1.42-1ubuntu2.4) precise-security; urgency=medium

  * SECURITY UPDATE: Out-of-bounds write on the heap
    - debian/patches/CVE-2019-5094.patch: add checks to prevent
      buffer overrun in quota code in lib/quota/quotaio_tree.c,
      lib/quota/quotaio_v2.c.
    - CVE-2019-5094

Date: 2020-01-22 13:07:17.480873+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/e2fsprogs/1.42-1ubuntu2.5
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list