[ubuntu/utopic-security] apport 2.14.7-0ubuntu8.3 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue Apr 14 13:40:01 UTC 2015


apport (2.14.7-0ubuntu8.3) utopic-security; urgency=medium

  * SECURITY UPDATE: privilege escalation through namespaces and crafted
    chroot (LP: #1438345)
    - data/apport: If crash comes from a container, rather than
      chrooting into it, detect what LXC container it is and then use the
      attach_wait API call to execute apport in the container.
    - data/apport: Don't fail when encountering unicode characters.
      (Thanks to Martin Pitt)
    - test/test_signal_crashes.py: Test for the unicode fix.
      (Thanks to Martin Pitt)
    - CVE-2015-1318

Date: 2015-04-10 12:32:21.183832+00:00
Changed-By: Stéphane Graber <stgraber at stgraber.org>
Maintainer: Martin Pitt <martin.pitt at ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/apport/2.14.7-0ubuntu8.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the Utopic-changes mailing list