[ubuntu/saucy-proposed] libkdcraw 4:4.10.4-0ubuntu2 (Accepted)

Scott Kitterman scott at kitterman.com
Thu Jun 20 20:10:14 UTC 2013


libkdcraw (4:4.10.4-0ubuntu2) saucy; urgency=low

  * SECURITY UPDATE: denial of service and possible code execution via
    broken full-color images and a buffer overflow (LP: #1193065)
    - debian/patches/CVE2013-2126.diff: fix error handling in
      libraw/src/libraw_cxx.cpp.
    - CVE-2013-2126
    - debian/patches/CVE2013-2127.diff: fix wrong data_maximum calcluation
      in libraw/src/libraw_cxx.cpp.
    - CVE-2013-2127

Date: Thu, 20 Jun 2013 15:54:44 -0400
Changed-By: Scott Kitterman <scott at kitterman.com>
Maintainer: Kubuntu Developers <kubuntu-devel at lists.ubuntu.com>
https://launchpad.net/ubuntu/saucy/+source/libkdcraw/4:4.10.4-0ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 20 Jun 2013 15:54:44 -0400
Source: libkdcraw
Binary: libkdcraw22 libkdcraw-dev libkdcraw-data libkdcraw22-dbg
Architecture: source
Version: 4:4.10.4-0ubuntu2
Distribution: saucy
Urgency: low
Maintainer: Kubuntu Developers <kubuntu-devel at lists.ubuntu.com>
Changed-By: Scott Kitterman <scott at kitterman.com>
Description: 
 libkdcraw-data - RAW picture decoding library -- data files
 libkdcraw-dev - RAW picture decoding library -- development files
 libkdcraw22 - RAW picture decoding library
 libkdcraw22-dbg - RAW picture decoding library -- debugging symbols
Launchpad-Bugs-Fixed: 1193065
Changes: 
 libkdcraw (4:4.10.4-0ubuntu2) saucy; urgency=low
 .
   * SECURITY UPDATE: denial of service and possible code execution via
     broken full-color images and a buffer overflow (LP: #1193065)
     - debian/patches/CVE2013-2126.diff: fix error handling in
       libraw/src/libraw_cxx.cpp.
     - CVE-2013-2126
     - debian/patches/CVE2013-2127.diff: fix wrong data_maximum calcluation
       in libraw/src/libraw_cxx.cpp.
     - CVE-2013-2127
Checksums-Sha1: 
 cd458db5025347f4041f31e32e7bdcd94573d831 1704 libkdcraw_4.10.4-0ubuntu2.dsc
 d0e003c97fc412a59aa2ab64c3dbf0429d24b2d3 11663 libkdcraw_4.10.4-0ubuntu2.debian.tar.gz
Checksums-Sha256: 
 80d004723b2909c4b63f2140a9e8f7ed10adcd4b04a9ebdb84eae9b214abf15c 1704 libkdcraw_4.10.4-0ubuntu2.dsc
 056930b41a2387ffbc8e6396372f0488b01b5ca74afe0bfdee2490696234cfed 11663 libkdcraw_4.10.4-0ubuntu2.debian.tar.gz
Files: 
 bc0d7a3053ed68cca83944200e816023 1704 kde optional libkdcraw_4.10.4-0ubuntu2.dsc
 f4372f20597ff9fb1e74dcd70628802c 11663 kde optional libkdcraw_4.10.4-0ubuntu2.debian.tar.gz
Original-Maintainer: Debian Qt/KDE Maintainers <debian-qt-kde at lists.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iEYEARECAAYFAlHDXjMACgkQHajaM93NaGpkpQCghZ8pFZu+jAID1CGBJGyDUDWf
nCUAn3yZYEGPOtF93YGD5MvlpYXvKo+V
=67QM
-----END PGP SIGNATURE-----


More information about the Saucy-changes mailing list