[Bug 923889] Re: Sync super 3.30.0-6 (universe) from Debian testing (main)

Steve Beattie sbeattie at ubuntu.com
Mon Jan 30 18:54:50 UTC 2012


Confirmed to build successfully in i386 and amd64 precise schroots
w/sbuild. Purpose for syncing is to address CVE-2011-2776.

Thanks.

-- 
You received this bug notification because you are a member of Ubuntu
Sponsors Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/923889

Title:
  Sync super 3.30.0-6 (universe) from Debian testing (main)

Status in “super” package in Ubuntu:
  New

Bug description:
  Please sync super 3.30.0-6 (universe) from Debian testing (main)

  Changelog entries since current precise version 3.30.0-5:

  super (3.30.0-6) unstable; urgency=high

    * Add 12-Use-vsnprintf.patch to fix buffer overflow error occurring
      when logging via syslog is enabled (CVE-2011-2776).
    * Add 13-Potential-format-string-vulnerability.patch to fix
      a vulnerability that might occur if the user of file name or file
      name used in the tag contains a '%' character.
    * Rename & refresh other patches with gbp-pq import/export.
    * debian/control:
      + Add VCS fields;
      + Standards-Version: 3.9.2 (no changes).
      + Sort dependency fields with wrap and sort.

   -- Robert Luberda <robert at debian.org>  Mon, 09 Jan 2012 00:34:16
  +0100

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/super/+bug/923889/+subscriptions



More information about the Ubuntu-sponsors mailing list