Comment 3 for bug 1335597

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mumble - 1.2.4-0.2ubuntu1.1

---------------
mumble (1.2.4-0.2ubuntu1.1) trusty-security; urgency=medium

  * SECURITY UPDATE: denial of service through SVG images (LP: #1335597)
    - debian/patches/Mumble-SA-2014-005.patch: patch from upstream
    - CVE-2014-3755
  * SECURITY UPDATE: unproperly HTML-escaped external strings
    - debian/patches/Mumble-SA-2014-006.patch: patch from upstream
    - CVE-2014-3756
 -- Felix Geyer <email address hidden> Sun, 29 Jun 2014 11:34:25 +0200