json-c 0.11-4ubuntu1 source package in Ubuntu

Changelog

json-c (0.11-4ubuntu1) utopic; urgency=medium

  * SECURITY UPDATE: denial of service via hash collision (LP: #1311397)
    - debian/patches/0001-Patch-to-address-the-following-issues.patch:
    Upstream patch to enable hash randomization.
    - CVE-2013-6371
  * SECURITY UPDATE: denial of service via buffer overflow (LP: #1311397)
    - debian/patches/0001-Patch-to-address-the-following-issues.patch:
    Upstream patch to guard against negative and maximum buffer sizes.
    - CVE-2013-6370

json-c (0.11-4) unstable; urgency=low

  * Add upstream patch to fix two security vulnerabilities (Closes: #744008)
    + [CVE-2013-6371]: hash collision denial of service
    + [CVE-2013-6370]: buffer overflow if size_t is larger than int
 -- Dimitri John Ledkov <email address hidden>   Wed, 23 Apr 2014 01:12:44 +0100

Upload details

Uploaded by:
Dimitri John Ledkov
Uploaded to:
Utopic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
json-c_0.11.orig.tar.gz 544.2 KiB 28dfc65145dc0d4df1dfe7701ac173c4e5f9347176c8983edbfac9149494448c
json-c_0.11-4ubuntu1.debian.tar.gz 389.3 KiB 7ac3c430a22173ad742289716a2e4e5d347dfb6135fcb74e32df6a77478be712
json-c_0.11-4ubuntu1.dsc 2.2 KiB 5c645138ee35953d78747cc44c47da028abc7710e977f93b6a845b3930a1e6e4

Available diffs

View changes file

Binary packages built by this source

libjson-c-dev: No summary available for libjson-c-dev in ubuntu utopic.

No description available for libjson-c-dev in ubuntu utopic.

libjson-c-doc: No summary available for libjson-c-doc in ubuntu utopic.

No description available for libjson-c-doc in ubuntu utopic.

libjson-c2: No summary available for libjson-c2 in ubuntu vivid.

No description available for libjson-c2 in ubuntu vivid.

libjson-c2-dbg: No summary available for libjson-c2-dbg in ubuntu vivid.

No description available for libjson-c2-dbg in ubuntu vivid.

libjson0: No summary available for libjson0 in ubuntu utopic.

No description available for libjson0 in ubuntu utopic.

libjson0-dev: No summary available for libjson0-dev in ubuntu vivid.

No description available for libjson0-dev in ubuntu vivid.