patch 2.7.1-5ubuntu0.3 source package in Ubuntu

Changelog

patch (2.7.1-5ubuntu0.3) utopic-security; urgency=medium

  * SECURITY UPDATE: Denial of service via crafted patch
    - debian/patches/CVE-2014-9637.patch: Detect and exit upon memory
      allocation failures
    - CVE-2014-9637
  * SECURITY UPDATE: Directory traversal via crafted patch
    - debian/patches/CVE-2015-1196.patch: Don't allow symlink targets to point
      outside of the current directory
    - CVE-2015-1196
  * SECURITY UPDATE: Directory traversal via crafted patch
    - debian/patches/CVE-2015-1395.patch: Check the validity of both filenames
      during a rename or copy
    - CVE-2015-1395
  * SECURITY UPDATE: Directory traversal via crafted patch
    - debian/patches/CVE-2015-1396.patch: Don't allow symlink targets to point
      outside of the current directory. This patch corrects the incomplete fix
      for CVE-2015-1196.
    - CVE-2015-1396
  * debian/rules: Fix FTBFS caused by ed check. Based on Debian change
    suggested by Simon McVittie.
  * debian/control: Add automake1.11 as a build-depends since some of the
    patches adjust Makefile.am files

 -- Tyler Hicks <email address hidden>  Mon, 22 Jun 2015 14:34:29 -0500

Upload details

Uploaded by:
Tyler Hicks
Uploaded to:
Utopic
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
vcs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
patch_2.7.1.orig.tar.bz2 781.8 KiB aae676de9e95051f425af4507fcc9a019941a2a1f78405e7dbd40bccf786aa11
patch_2.7.1-5ubuntu0.3.debian.tar.xz 22.2 KiB 6c39f3ce7dfc4fbd2dc0769bcb5b8cca1bc2c4cc45e06f12eeb8744e73dd74a6
patch_2.7.1-5ubuntu0.3.dsc 1.8 KiB 295fe59713bc8d076742f2a178584f6d03e1710c65f13cf49930f7ff81d4dd9a

View changes file

Binary packages built by this source

patch: No summary available for patch in ubuntu utopic.

No description available for patch in ubuntu utopic.

patch-dbgsym: No summary available for patch-dbgsym in ubuntu utopic.

No description available for patch-dbgsym in ubuntu utopic.