Format: 1.8 Date: Wed, 23 Oct 2013 13:27:12 -0700 Source: libvirt Binary: libvirt-bin libvirt0 libvirt0-dbg libvirt-doc libvirt-dev python-libvirt Architecture: source Version: 1.0.2-0ubuntu11.13.04.5~cloud1 Distribution: precise Urgency: low Maintainer: Ubuntu Developers Changed-By: James Page Description: libvirt-bin - programs for the libvirt library libvirt-dev - development files for the libvirt library libvirt-doc - documentation for the libvirt library libvirt0 - library for interfacing with different virtualization systems libvirt0-dbg - library for interfacing with different virtualization systems python-libvirt - libvirt Python bindings Launchpad-Bugs-Fixed: 1219435 Changes: libvirt (1.0.2-0ubuntu11.13.04.5~cloud1) precise-grizzly; urgency=low . * Backport security fixes for the Ubuntu Cloud Archive: - debian/control: Tweak versions of policykit-1 and libpolkit-gobject-1-dev for security fixes in Ubuntu 12.04. . libvirt (1.0.2-0ubuntu11.13.04.5) raring-proposed; urgency=low . * Cherrypick upstream patch (LP: #1219435) - conf-fix-a-failure-when-detaching-a-usb-device . libvirt (1.0.2-0ubuntu11.13.04.4) raring-security; urgency=low . * SECURITY UPDATE: possible privilege escalation via pkcheck race. - debian/patches/CVE-2013-4311.patch: add uid to pkcheck call in configure.ac, daemon/remote.c, src/locking/lock_daemon.c, src/rpc/virnetserverclient.*, src/rpc/virnetsocket.*, src/util/virprocess.*, src/util/virstring.*. - debian/rules: use DEB_AUTO_UPDATE_AUTOCONF and DEB_AUTO_UPDATE_AUTOHEADER. - debian/control: specify version of policykit-1 security update, add libpolkit-gobject-1-dev to Build-Depends. - CVE-2013-4311 * SECURITY UPDATE: denial of service in remoteDispatchDomainMemoryStats - debian/patches/CVE-2013-4296.patch: properly initialize stats in daemon/remote.c. - CVE-2013-4296 * SECURITY UPDATE: denial of service via bitmap string out of bounds - debian/patches/CVE-2013-5651.patch: replace virBitmapIsSet usage in src/util/virbitmap.c, properly handle errors in - CVE-2013-5651 . libvirt (1.0.2-0ubuntu11.13.04.2) raring-security; urgency=low . * SECURITY UPDATE: remote denial of service via file descriptor leak - debian/patches/CVE-2013-1962.patch: properly free pool in daemon/remote.c. - CVE-2013-1962 Checksums-Sha1: 240adec25f263eea4795c31122d61a3ee5f6aa66 3098 libvirt_1.0.2-0ubuntu11.13.04.5~cloud1.dsc ad8063794bb70e7538a3437412dd0c75950b81e2 22971729 libvirt_1.0.2.orig.tar.gz 021347a530e8fdbec2f4e29b11c6103343596f25 105858 libvirt_1.0.2-0ubuntu11.13.04.5~cloud1.debian.tar.gz Checksums-Sha256: 9372fff496f226c8b8b075e86af7e1c5f83e4ea949cfa62473fb262e7752dfbc 3098 libvirt_1.0.2-0ubuntu11.13.04.5~cloud1.dsc 9b8c2752f78658b65ef1c608b3775be0978d60855a9b5e2778f79c113201c179 22971729 libvirt_1.0.2.orig.tar.gz 8ebc5856d4fc89da704de87cd84efd0b571e36ba5090d53dcf78f6819fd66c1a 105858 libvirt_1.0.2-0ubuntu11.13.04.5~cloud1.debian.tar.gz Files: 9c411e2b4685a41bc3ff9611eb3d2a4e 3098 libs optional libvirt_1.0.2-0ubuntu11.13.04.5~cloud1.dsc 7e268ed702c4331d393e5b43449cae13 22971729 libs optional libvirt_1.0.2.orig.tar.gz 29fed32a94037585cb52282e386ab802 105858 libs optional libvirt_1.0.2-0ubuntu11.13.04.5~cloud1.debian.tar.gz Original-Maintainer: Debian Libvirt Maintainers