[ubuntu/wily-proposed] icu 55.1-4ubuntu1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Fri Sep 11 16:47:17 UTC 2015


icu (55.1-4ubuntu1) wily; urgency=medium

  * SECURITY UPDATE: denial of service via mishandling of converter names
    with initial x- substrings
    - debian/patches/CVE-2015-1270.patch: fix patch so it actually applies.
    - CVE-2015-1270
  * SECURITY UPDATE: information disclosure via overflows
    - debian/patches/CVE-2015-2632.patch: properly calculate index in
      source/layout/Features.cpp, check for overflows in
      source/layout/LETableReference.h.
    - CVE-2015-2632

Date: Fri, 11 Sep 2015 08:24:31 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/icu/55.1-4ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 11 Sep 2015 08:24:31 -0400
Source: icu
Binary: libicu55 libicu55-dbg libicu-dev icu-devtools icu-doc
Architecture: source
Version: 55.1-4ubuntu1
Distribution: wily
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 icu-devtools - Development utilities for International Components for Unicode
 icu-doc    - API documentation for ICU classes and functions
 libicu-dev - Development files for International Components for Unicode
 libicu55   - International Components for Unicode
 libicu55-dbg - International Components for Unicode
Changes:
 icu (55.1-4ubuntu1) wily; urgency=medium
 .
   * SECURITY UPDATE: denial of service via mishandling of converter names
     with initial x- substrings
     - debian/patches/CVE-2015-1270.patch: fix patch so it actually applies.
     - CVE-2015-1270
   * SECURITY UPDATE: information disclosure via overflows
     - debian/patches/CVE-2015-2632.patch: properly calculate index in
       source/layout/Features.cpp, check for overflows in
       source/layout/LETableReference.h.
     - CVE-2015-2632
Checksums-Sha1:
 844b5bd67d220902a6dd0a3daf8cac82c08832b8 2140 icu_55.1-4ubuntu1.dsc
 b1e61b9a258b34624a708d488fdbe4a6c2860643 21284 icu_55.1-4ubuntu1.debian.tar.xz
Checksums-Sha256:
 4e225360fbbb1701d5a25f06835710f17454a5a88587afe68554cf14e4aa1a72 2140 icu_55.1-4ubuntu1.dsc
 a428258f8f917a6f8790488688d07571140071166f9b782261f3d9803f9facfe 21284 icu_55.1-4ubuntu1.debian.tar.xz
Files:
 f6f9350676374d04f4cf3f3ac6ae4778 2140 libs optional icu_55.1-4ubuntu1.dsc
 2a2510363b793ce698049d0f46e647e7 21284 libs optional icu_55.1-4ubuntu1.debian.tar.xz
Original-Maintainer: Laszlo Boszormenyi (GCS) <gcs at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=JKDC
-----END PGP SIGNATURE-----


More information about the Wily-changes mailing list