[ubuntu/zesty-security] liblouis 3.0.0-3ubuntu0.2 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Mon Sep 4 14:11:08 UTC 2017


liblouis (3.0.0-3ubuntu0.2) zesty-security; urgency=medium

  * SECURITY UPDATE: Illegal address access in getALine
    - debian/patches/CVE-2017-13738-and-2017-13744.patch: fix
      possible out-of-bounds write in liblouis/compileTranslationTable.c.
    - CVE-2017-13738
    - CVE-2017-13744
  * SECURITY UPDATE: heap-based buffer overflow
    - debian/patches/CVE-2017-13739-and-2017-13740-and-2017-13742.patch:
      fix buffer overflow parsing malformed table in
      liblouis/compilerTranslationTable.c.
    - CVE-2017-13739
    - CVE-2017-13740
    - CVE-2017-13742

Date: 2017-08-31 20:36:19.056759+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/liblouis/3.0.0-3ubuntu0.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Zesty-changes mailing list