click 0.4.21.1ubuntu0.2 source package in Ubuntu

Changelog

click (0.4.21.1ubuntu0.2) trusty-security; urgency=medium

  * SECURITY UPDATE: fix privilege escalation via crafted data.tar.gz that
    can be used to install alternate security policy than what is defined
    - click/install.py: Forbid installing packages with data tarball members
      whose names do not start with "./". Based on patch from Colin Watson.
    - CVE-2015-XXXX
    - LP: #1506467

 -- Jamie Strandboge <email address hidden>  Thu, 15 Oct 2015 10:05:35 -0500

Upload details

Uploaded by:
Jamie Strandboge on 2015-10-15
Uploaded to:
Trusty
Original maintainer:
Colin Watson
Architectures:
any all
Section:
admin
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Trusty updates on 2015-10-15 main admin
Trusty security on 2015-10-15 main admin

Downloads

File Size SHA-256 Checksum
click_0.4.21.1ubuntu0.2.tar.gz 121.0 KiB 00c8c0dad572e3e543eff8159b0e7340a384e26378325101e9de6cac105ce33f
click_0.4.21.1ubuntu0.2.dsc 2.3 KiB 3ca33d50771954ad6bcdfd47e46fbdc6c589d4330d67b6451076414f7edd378b

View changes file

Binary packages built by this source

click: Click packages

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides common files, including the main click program.

click-dbgsym: debug symbols for package click

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides common files, including the main click program.

click-dev: build Click packages

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 click-dev provides support for building these packages.

click-doc: Click packages (documentation)

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides documentation for click.

gir1.2-click-0.4: GIR bindings for Click package management library

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package can be used by other packages using the GIRepository format to
 generate dynamic bindings.

libclick-0.4-0: run-time Click package management library

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides a shared library for managing Click packages.

libclick-0.4-0-dbgsym: debug symbols for package libclick-0.4-0

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides a shared library for managing Click packages.

libclick-0.4-dev: development files for Click package management library

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides development files needed to build programs for
 managing Click packages.

packagekit-plugin-click: Click packages (PackageKit plugin)

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides a PackageKit plugin adding support for Click
 packages.

packagekit-plugin-click-dbgsym: debug symbols for package packagekit-plugin-click

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides a PackageKit plugin adding support for Click
 packages.

python3-click: Click packages (Python 3 interface)

 Click is a simplified packaging format that installs in a separate part of
 the file system, suitable for third-party applications.
 .
 This package provides Python 3 modules used by click, which may also be
 used directly.