kdelibs 4:3.5.10.dfsg.1-2ubuntu5 source package in Ubuntu
Changelog
kdelibs (4:3.5.10.dfsg.1-2ubuntu5) karmic; urgency=low * SECURITY UPDATE: fix vulnerability with NULL byte in Subject Alternate Names field of X.509 certificates - debian/patches/security_04_CVE-2009-2702.diff: verify that the QString length of the SAN is not shorter than the ASN1 length - CVE-2009-2702 * kubuntu_glibc_2.8_ftbfs.diff: fix FTBFS when using gcc 4.4 or higher * Following patches forward ported from http://www.ubuntu.com/usn/USN-822-1 (by Marc Deslauriers) * SECURITY UPDATE: arbitrary code execution via JavaScript garbage collector allocation failures - debian/patches/security_01_CVE-2009-1687.diff: make sure we don't overflow before doing the realloc in kjs/collector.cpp. - CVE-2009-1687 * SECURITY UPDATE: arbitrary code execution via use-after-free - debian/patches/security_02_CVE-2009-1690.diff: use head.get() in khtml/html/htmlparser.cpp, and backport khtml/html/{AlwaysInline, htmlparser,Platform,RefPtr}.h. - CVE-2009-1690 * SECURITY UPDATE: arbitrary code execution via CSS attr function call with a large numerical argument - debian/patches/security_03_CVE-2009-1698.diff: add extra checks to khtml/css/cssparser.cpp and implement CSSPrimitiveValue::CSS_ATTR in khtml/css/css_valueimpl.cpp. - CVE-2009-1698 -- Jamie Strandboge <email address hidden> Tue, 15 Sep 2009 14:38:04 -0500
Upload details
- Uploaded by:
- Jamie Strandboge
- Uploaded to:
- Karmic
- Original maintainer:
- Kubuntu Members
- Architectures:
- any
- Section:
- kde
- Urgency:
- Low Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
kdelibs_3.5.10.dfsg.1.orig.tar.gz | 17.8 MiB | 09119022c615547284beaa262ccc06fc9328f1dc66ebd030ab97d66819eb9f0d |
kdelibs_3.5.10.dfsg.1-2ubuntu5.diff.gz | 864.6 KiB | b5f7d429b9dedd0e032a9c9f2451e7f3dd594e37ce5633fa0d626367afe08ae9 |
kdelibs_3.5.10.dfsg.1-2ubuntu5.dsc | 2.3 KiB | 4acc08c74a7c009359ae4096184a284b184283b15b7c68b9a7655088571bb80a |
Available diffs
Binary packages built by this source
- kdelibs: No summary available for kdelibs in ubuntu karmic.
No description available for kdelibs in ubuntu karmic.
- kdelibs-data: No summary available for kdelibs-data in ubuntu karmic.
No description available for kdelibs-data in ubuntu karmic.
- kdelibs-dbg: No summary available for kdelibs-dbg in ubuntu karmic.
No description available for kdelibs-dbg in ubuntu karmic.
- kdelibs4-dev: No summary available for kdelibs4-dev in ubuntu karmic.
No description available for kdelibs4-dev in ubuntu karmic.
- kdelibs4c2a: No summary available for kdelibs4c2a in ubuntu karmic.
No description available for kdelibs4c2a in ubuntu karmic.