libgit2 1.1.0+dfsg.1-4.1ubuntu0.1 source package in Ubuntu

Changelog

libgit2 (1.1.0+dfsg.1-4.1ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Improper Verification of Cryptographic Signature
    - debian/patches/CVE-2023-22742.patch: perform host key checking
      by default when using ssh.
    - CVE-2023-22742
  * SECURITY UPDATE: use-after-free
    - debian/patches/CVE-2024-24577.patch: correct index check in
      has_dir_name function used by git_index_add.
    - CVE-2024-24577

 -- Fabian Toepfer <email address hidden>  Wed, 28 Feb 2024 08:11:53 +0100

Upload details

Uploaded by:
Fabian Toepfer
Uploaded to:
Jammy
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Jammy updates universe libs
Jammy security universe libs

Downloads

File Size SHA-256 Checksum
libgit2_1.1.0+dfsg.1.orig.tar.xz 2.8 MiB d3eba7909c5df1023c25a44ead8ee97cfc36da91a84ca50837d90f4521cf4e04
libgit2_1.1.0+dfsg.1-4.1ubuntu0.1.debian.tar.xz 20.2 KiB db97779ef0cfeb2d141a543bd778802f08eedbeba9f1ca16fcb112337d21b671
libgit2_1.1.0+dfsg.1-4.1ubuntu0.1.dsc 2.4 KiB aa7c53c46bffac3cd0f79b3d02ef9a88b8b6758ad61cb7462dd9b90fd763fbb4

View changes file

Binary packages built by this source

libgit2-1.1: low-level Git library

 libgit2 is a portable, pure C implementation of the Git
 distributed version control system core methods provided as a
 re-entrant link-able library with a solid API.

libgit2-1.1-dbgsym: debug symbols for libgit2-1.1
libgit2-dev: low-level Git library (development files)

 libgit2 is a portable, pure C implementation of the Git
 distributed version control system core methods provided as a
 re-entrant link-able library with a solid API.
 .
 This package contains the development files for libgit2.

libgit2-fixtures: low-level Git library - test suite examples

 libgit2 is a portable, pure C implementation of the Git
 distributed version control system core methods provided as a
 re-entrant link-able library with a solid API.
 .
 This package provides the test examples of the library, which
 can be useful for other pieces of software relying on libgit2,
 for testing purposes.