kdelibs 4:3.5.10.dfsg.1-2ubuntu5 source package in Ubuntu

Changelog

kdelibs (4:3.5.10.dfsg.1-2ubuntu5) karmic; urgency=low

  * SECURITY UPDATE: fix vulnerability with NULL byte in Subject Alternate
    Names field of X.509 certificates
    - debian/patches/security_04_CVE-2009-2702.diff: verify that the
      QString length of the SAN is not shorter than the ASN1 length
    - CVE-2009-2702
  * kubuntu_glibc_2.8_ftbfs.diff: fix FTBFS when using gcc 4.4 or higher
  * Following patches forward ported from http://www.ubuntu.com/usn/USN-822-1
    (by Marc Deslauriers)
  * SECURITY UPDATE: arbitrary code execution via JavaScript garbage
    collector allocation failures
    - debian/patches/security_01_CVE-2009-1687.diff: make sure we don't
      overflow before doing the realloc in kjs/collector.cpp.
    - CVE-2009-1687
  * SECURITY UPDATE: arbitrary code execution via use-after-free
    - debian/patches/security_02_CVE-2009-1690.diff: use head.get() in
      khtml/html/htmlparser.cpp, and backport khtml/html/{AlwaysInline,
      htmlparser,Platform,RefPtr}.h.
    - CVE-2009-1690
  * SECURITY UPDATE: arbitrary code execution via CSS attr function call
    with a large numerical argument
    - debian/patches/security_03_CVE-2009-1698.diff: add extra checks to
      khtml/css/cssparser.cpp and implement CSSPrimitiveValue::CSS_ATTR in
      khtml/css/css_valueimpl.cpp.
    - CVE-2009-1698

 -- Jamie Strandboge <email address hidden>   Tue, 15 Sep 2009 14:38:04 -0500

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Karmic
Original maintainer:
Kubuntu Members
Architectures:
any
Section:
kde
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
kdelibs_3.5.10.dfsg.1.orig.tar.gz 17.8 MiB 09119022c615547284beaa262ccc06fc9328f1dc66ebd030ab97d66819eb9f0d
kdelibs_3.5.10.dfsg.1-2ubuntu5.diff.gz 864.6 KiB b5f7d429b9dedd0e032a9c9f2451e7f3dd594e37ce5633fa0d626367afe08ae9
kdelibs_3.5.10.dfsg.1-2ubuntu5.dsc 2.3 KiB 4acc08c74a7c009359ae4096184a284b184283b15b7c68b9a7655088571bb80a

View changes file

Binary packages built by this source

kdelibs: No summary available for kdelibs in ubuntu karmic.

No description available for kdelibs in ubuntu karmic.

kdelibs-data: No summary available for kdelibs-data in ubuntu karmic.

No description available for kdelibs-data in ubuntu karmic.

kdelibs-dbg: No summary available for kdelibs-dbg in ubuntu karmic.

No description available for kdelibs-dbg in ubuntu karmic.

kdelibs4-dev: No summary available for kdelibs4-dev in ubuntu karmic.

No description available for kdelibs4-dev in ubuntu karmic.

kdelibs4c2a: No summary available for kdelibs4c2a in ubuntu karmic.

No description available for kdelibs4c2a in ubuntu karmic.