[ubuntu/xenial-security] bzr 2.7.0-2ubuntu3.1 (Accepted)
Steve Beattie
sbeattie at ubuntu.com
Tue Sep 5 23:57:50 UTC 2017
bzr (2.7.0-2ubuntu3.1) xenial-security; urgency=medium
* SECURITY UPDATE: Possible arbitrary code execution on clients
through malicious bzr+ssh URLs
- debian/patches/24_ssh_hostnames-lp1710979: ensure that host
arguments to ssh cannot be treated as ssh options.
- LP: #1710979
Date: 2017-08-29 06:10:19.962954+00:00
Changed-By: Steve Beattie <sbeattie at ubuntu.com>
https://launchpad.net/ubuntu/+source/bzr/2.7.0-2ubuntu3.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the Xenial-changes
mailing list