[ubuntu/quantal-proposed] dbus 1.6.4-1ubuntu2 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Thu Sep 20 12:15:15 UTC 2012
dbus (1.6.4-1ubuntu2) quantal-proposed; urgency=low
* SECURITY UPDATE: privilege escalation via unsanitized environment
- debian/patches/CVE-2012-3524-dbus.patch: Don't access environment
variables or run dbus-launch when setuid in configure.ac,
dbus/dbus-keyring.c, dbus/dbus-sysdeps*
- CVE-2012-3524
Date: Fri, 14 Sep 2012 08:57:33 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/quantal/+source/dbus/1.6.4-1ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Fri, 14 Sep 2012 08:57:33 -0400
Source: dbus
Binary: dbus dbus-x11 libdbus-1-3 dbus-1-doc libdbus-1-dev dbus-1-dbg
Architecture: source
Version: 1.6.4-1ubuntu2
Distribution: quantal-proposed
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
dbus - simple interprocess messaging system (daemon and utilities)
dbus-1-dbg - simple interprocess messaging system (debug symbols)
dbus-1-doc - simple interprocess messaging system (documentation)
dbus-x11 - simple interprocess messaging system (X11 deps)
libdbus-1-3 - simple interprocess messaging system (library)
libdbus-1-dev - simple interprocess messaging system (development headers)
Changes:
dbus (1.6.4-1ubuntu2) quantal-proposed; urgency=low
.
* SECURITY UPDATE: privilege escalation via unsanitized environment
- debian/patches/CVE-2012-3524-dbus.patch: Don't access environment
variables or run dbus-launch when setuid in configure.ac,
dbus/dbus-keyring.c, dbus/dbus-sysdeps*
- CVE-2012-3524
Checksums-Sha1:
e289b910fc506caad16e385d077dce46b583d5b7 2584 dbus_1.6.4-1ubuntu2.dsc
5140d299bd92d5968840dd8a429944493210f0d1 45589 dbus_1.6.4-1ubuntu2.debian.tar.gz
Checksums-Sha256:
aba291d5cb18558ccde2f6973ef285659604c29c572750f10058618ec248dd0e 2584 dbus_1.6.4-1ubuntu2.dsc
3db5fca49b9115bbe38f50cb61e621a31e8270b19e42d33988da8d90af4d189e 45589 dbus_1.6.4-1ubuntu2.debian.tar.gz
Files:
2d53213e426feee57f506dcc53cbe9ea 2584 admin optional dbus_1.6.4-1ubuntu2.dsc
e9a6011abcec71b7432275ec656f5061 45589 admin optional dbus_1.6.4-1ubuntu2.debian.tar.gz
Original-Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
iQIcBAEBCgAGBQJQWwf1AAoJEGVp2FWnRL6TCSgQALiV+kwERGrvIwTs2hlAX4VL
L1fHISZ5lw9hDswcoDpChgq+lwlD5tpvWLTrSYZD/HVzhFimdVss7DwWO+5i0YnS
W6Sxn2L9JGwA/fWmniKRZ+s1/ACb8ESfdoPjUcgszY02Owmdlt95U2UCCAnzGjaC
/Tra8TodJNy2LI9GGJUL+Y8B1VbwbXC6o1co6WZJTPHwPP+9vxg8cqebh7RIMxim
VGHj4Qawl56phjauJdI4+Xh2zTB5EbmzqAGyXwAmMbVllzy3OgHniAA8uWw886i4
wrvqVGX36uGWC6khX/k5BGAxoRs1kQyjqPaFz/5KtWctONKt6NGpHftL1zbVxxsb
wHJF8RELUCb6n+oN07p7u3YWtd8RITrlMg7R5uoMIZqkQpisKtZIcVvvG2U7Gxj0
pa23f4vHrhIB9CkVrhCpzQNzVJx58kE1Mc48YIG/Jko1QKzbYMFbRSNfw0wcjPun
rTVW9u+GFt7n/vcjrBazegz1SN/pT5HaVRHAe+IpZ8n3SHwJrFj1Ecko7bP/LCpo
vs7fJPHSSke+wX3/Jfd2zPVkjpPf/FvQxXcWrYkwjrKDBHlVDuafMAMExKUEts43
MySzBP4aOn4v6BcjijH9wZD6+UxfGMuDdHRqG/FP1xxQTG60oPLrnFvU7cstR7bX
PkR1a2YgP/G+wgEROHh9
=It8K
-----END PGP SIGNATURE-----
More information about the Quantal-changes
mailing list