[ubuntu/xenial-proposed] keepassx 0.4.3+dfsg-0.1ubuntu2 (Accepted)

Tyler Hicks tyhicks at canonical.com
Fri Dec 4 20:13:13 UTC 2015


keepassx (0.4.3+dfsg-0.1ubuntu2) xenial; urgency=medium

  * SECURITY UPDATE: private information disclosure via cancelled XML export
    operation
    - debian/patches/CVE-2015-8378.patch: Properly detect when a user selects
      'cancel' in the file dialog. Based on Debian patch.
    - CVE-2015-8378

Date: Fri, 04 Dec 2015 09:30:35 -0600
Changed-By: Tyler Hicks <tyhicks at canonical.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/keepassx/0.4.3+dfsg-0.1ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Fri, 04 Dec 2015 09:30:35 -0600
Source: keepassx
Binary: keepassx
Architecture: source
Version: 0.4.3+dfsg-0.1ubuntu2
Distribution: xenial
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Tyler Hicks <tyhicks at canonical.com>
Description:
 keepassx   - Cross Platform Password Manager
Changes:
 keepassx (0.4.3+dfsg-0.1ubuntu2) xenial; urgency=medium
 .
   * SECURITY UPDATE: private information disclosure via cancelled XML export
     operation
     - debian/patches/CVE-2015-8378.patch: Properly detect when a user selects
       'cancel' in the file dialog. Based on Debian patch.
     - CVE-2015-8378
Checksums-Sha1:
 9af61cdb5a8fc5cb10bc84cc636ee24414cc0090 2055 keepassx_0.4.3+dfsg-0.1ubuntu2.dsc
 f388bb674af29d969d6fff25da6898601d0274f3 13680 keepassx_0.4.3+dfsg-0.1ubuntu2.debian.tar.xz
Checksums-Sha256:
 f8f139e92412feae5b6dd7cfaff3dba96d062fd8ed0b478b9eef8520852946c8 2055 keepassx_0.4.3+dfsg-0.1ubuntu2.dsc
 89b6e8ce048c94bb4a4328f7f164cc0258c1e2b23a39588e0a630e1f3f7b3dd5 13680 keepassx_0.4.3+dfsg-0.1ubuntu2.debian.tar.xz
Files:
 9d129b1e1ec987ccfb71e0cc47ef7243 2055 utils optional keepassx_0.4.3+dfsg-0.1ubuntu2.dsc
 d3621c94bc91adfb0e9b263990dab7d3 13680 utils optional keepassx_0.4.3+dfsg-0.1ubuntu2.debian.tar.xz
Original-Maintainer: Reinhard Tartler <siretart at tauware.de>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iQIcBAEBCgAGBQJWYfNpAAoJEGVp2FWnRL6TiuwP/iED2qCu0jGtCxaHCeqAIQLg
zRCgaZMCJvWzpK15WA/nSGqBRCXRXRCuXbh2ApG346jHDb7ymm5Wuf+0RS6tiDxe
LeDH78eUui/s/sFcJtNru+XSbKeM7cu8BmYR4eZcthOHl1PPTVeNOQBcJzFkAoFG
rxZq8nBVjHx5Xnoa8rAUX5Ry4uk6Q9Nh+FmndQWYLUL2FC8Lhnlrdn/XhsQrXYrL
w6KnzdHaJw/JGbchpJE/lUAM87okXjLuepy4EfHBppwGBEoVUXF7VqN6RIRELpxg
hrkzWaO4NtxukfQl9T0roLLY4u0WPFM5e2R4vfHHJ0SbmVBTFE3ZIyOplLS98L/K
fgErfL8xw7vinvFPTwEe1DBBN6qHMbR21heCG3LIajH8LdRsIPsyQIzNJEvZr4YM
P3yKEG9ydfMT58x93T1WIzB1mloUM4D2exTFOGbbUvLo16OJ1lS/+xA9x6DKpsll
TZjAxRK1GAn2mu9vZ6LuuQvnUMvomX7ObINt+WZmbXN8QKFuS4OcVpfUqTSYhPSM
6MkH96xBRsNbaLcU9zL0iRH60JelrGhIbmqqR0yWMFig074bqVgspyrm73LMRRWc
C5BvcI9wwKJuu9uI9iAtY8XUcrWTWO092JGg4rzvPqK+PamadGpHU7FZjNRXddNc
7LrSkqPDczUSro3E22Qf
=tPaH
-----END PGP SIGNATURE-----


More information about the Xenial-changes mailing list