[ubuntu/xenial-security] liblouis 2.6.4-2ubuntu0.1 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Mon Sep 4 14:11:12 UTC 2017


liblouis (2.6.4-2ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Illegal address access in getALine
    - debian/patches/CVE-2017-13738-and-2017-13744.patch: fix
      possible out-of-bounds write in liblouis/compileTranslationTable.c.
    - CVE-2017-13738
    - CVE-2017-13744
  * SECURITY UPDATE: heap-based buffer overflow
    - debian/patches/CVE-2017-13739-and-2017-13740-and-2017-13742.patch:
      fix buffer overflow parsing malformed table in
      liblouis/compilerTranslationTable.c.
    - CVE-2017-13739
    - CVE-2017-13740
    - CVE-2017-13742

Date: 2017-08-31 21:19:12.905470+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/liblouis/2.6.4-2ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Xenial-changes mailing list