Comment 4 for bug 1279805

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package libyaml - 0.1.4-3ubuntu2

---------------
libyaml (0.1.4-3ubuntu2) trusty; urgency=medium

  * SECURITY REGRESSION: parsing regression in security update
    (LP: #1279805)
    - debian/patches/CVE-2013-6393.patch: use upstream commits from 0.1.5.
    - debian/patches/libyaml-string-overflow.patch: removed
    - debian/patches/libyaml-node-id-hardening.patch: removed
    - debian/patches/libyaml-indent-column-overflow-v2.patch: removed
 -- Marc Deslauriers <email address hidden> Thu, 13 Feb 2014 09:02:35 -0500