Format: 1.8 Date: Fri, 13 Jul 2018 07:53:14 -0400 Source: policykit-1 Binary: policykit-1 policykit-1-doc libpolkit-gobject-1-0 libpolkit-gobject-1-dev libpolkit-agent-1-0 libpolkit-agent-1-dev libpolkit-backend-1-0 libpolkit-backend-1-dev gir1.2-polkit-1.0 Architecture: powerpc powerpc_translations Version: 0.105-4ubuntu3.14.04.2 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: gir1.2-polkit-1.0 - GObject introspection data for PolicyKit libpolkit-agent-1-0 - PolicyKit Authentication Agent API libpolkit-agent-1-dev - PolicyKit Authentication Agent API - development files libpolkit-backend-1-0 - PolicyKit backend API libpolkit-backend-1-dev - PolicyKit backend API - development files libpolkit-gobject-1-0 - PolicyKit Authorization API libpolkit-gobject-1-dev - PolicyKit Authorization API - development files policykit-1 - framework for managing administrative policies and privileges policykit-1-doc - documentation for PolicyKit-1 Changes: policykit-1 (0.105-4ubuntu3.14.04.2) trusty-security; urgency=medium . * SECURITY UPDATE: DoS via invalid object path - debian/patches/CVE-2015-3218.patch: handle invalid object paths in src/polkitbackend/polkitbackendinteractiveauthority.c. - CVE-2015-3218 * SECURITY UPDATE: privilege escalation via duplicate action IDs - debian/patches/CVE-2015-3255.patch: fix GHashTable usage in src/polkitbackend/polkitbackendactionpool.c. - CVE-2015-3255 * SECURITY UPDATE: privilege escalation via duplicate cookie values - debian/patches/CVE-2015-4625-1.patch: use unpredictable cookie values in configure.ac, src/polkitagent/polkitagenthelper-pam.c, src/polkitagent/polkitagenthelper-shadow.c, src/polkitagent/polkitagenthelperprivate.c, src/polkitagent/polkitagenthelperprivate.h, src/polkitagent/polkitagentsession.c, src/polkitbackend/polkitbackendinteractiveauthority.c. - debian/patches/CVE-2015-4625-2.patch: bind use of cookies to specific uids in data/org.freedesktop.PolicyKit1.AuthenticationAgent.xml, data/org.freedesktop.PolicyKit1.Authority.xml, docs/polkit/docbook-interface-org.freedesktop.PolicyKit1.Authority.xml, docs/polkit/overview.xml, src/polkit/polkitauthority.c, src/polkitbackend/polkitbackendauthority.c, src/polkitbackend/polkitbackendauthority.h, src/polkitbackend/polkitbackendinteractiveauthority.c. - debian/patches/CVE-2015-4625-3.patch: update docs in data/org.freedesktop.PolicyKit1.AuthenticationAgent.xml, data/org.freedesktop.PolicyKit1.Authority.xml, docs/polkit/docbook-interface-org.freedesktop.PolicyKit1.AuthenticationAgent.xml, docs/polkit/docbook-interface-org.freedesktop.PolicyKit1.Authority.xml, docs/polkit/overview.xml, src/polkit/polkitauthority.c, src/polkitagent/polkitagentlistener.c, src/polkitbackend/polkitbackendauthority.c. - CVE-2015-4625 * SECURITY UPDATE: DoS and information disclosure - debian/patches/CVE-2018-1116.patch: properly check UID in src/polkit/polkitprivate.h, src/polkit/polkitunixprocess.c, src/polkitbackend/polkitbackendinteractiveauthority.c, src/polkitbackend/polkitbackendsessionmonitor-systemd.c, src/polkitbackend/polkitbackendsessionmonitor.c, src/polkitbackend/polkitbackendsessionmonitor.h. - debian/libpolkit-gobject-1-0.symbols: updated for new private symbol. - CVE-2018-1116 Checksums-Sha1: c0f3e502ed7c4529609a386e35d980199f8b53a5 50104 policykit-1_0.105-4ubuntu3.14.04.2_powerpc.deb fab6327fffb8b097660232efee31de2fb14af720 31148 libpolkit-gobject-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb c8b91b6cc0c9fcb7ce39899d0c019f31e0970d02 49754 libpolkit-gobject-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 04630f762dd8faee76d30859184fbd0c30b11a88 13732 libpolkit-agent-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb 9fe5c2b5f6827de82ee7136d5f1ca2c1ac6d830c 19958 libpolkit-agent-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 25a98b143f90051c1601df80aac5755124be050c 32814 libpolkit-backend-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb db00577186e97c9ba1cfca7adb98b0f25e00bdef 38150 libpolkit-backend-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 973dad968f87d8d31ec2433c5990b9d303028523 7054 gir1.2-polkit-1.0_0.105-4ubuntu3.14.04.2_powerpc.deb 757885962359ed3e24165e9081364a30e1802902 50328 policykit-1-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 92d7647a9db58dd8454df66ddced0ad3a24fc80c 88722 libpolkit-gobject-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb c4c4a293a3de6563eb69b2e161e3e5acb77b7637 35704 libpolkit-agent-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 1b086fcf14860c1686df024132b3cf736d420407 89080 libpolkit-backend-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb aba127a6e5d548a26fa6f6219e883542ddb6f3fe 1814 policykit-1_0.105-4ubuntu3.14.04.2_powerpc_translations.tar.gz Checksums-Sha256: 2c568118dbe7b53f0a4eaf0ad91423f8ffca0059f40994236cf6e772107611b7 50104 policykit-1_0.105-4ubuntu3.14.04.2_powerpc.deb 4455e2031a6b0e610894a81fa59ee835b27026c8df11574404b80aea3a4c45ff 31148 libpolkit-gobject-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb 0e029ed094bccc30fb1812e1bf767ff8da4dd7ae426545ab252ee1f6cdccc81c 49754 libpolkit-gobject-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb bd5ad9955cf16de1a1fe79b986af44ffac045bbaa6078db416bcd5f9d6b72f92 13732 libpolkit-agent-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb 3935b1679488ab1c721419148afed0338fa265ddd5dfd939cfc9382b5a700b00 19958 libpolkit-agent-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 52ebf39318a8887289603813ba173d0339e1c5eec24598b92358257404b02c23 32814 libpolkit-backend-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb 78579c36d9b38ad0672783eb1736affd7a9ee35c7c613ba311fd46fa99abf398 38150 libpolkit-backend-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 05edccbe550e87c010c52dad53e93bfde53d1d02b2c7fc722ea815c4dda87990 7054 gir1.2-polkit-1.0_0.105-4ubuntu3.14.04.2_powerpc.deb c14467a1affa7c679453580d653a1311da5659e680c36eee1238ba74cf825e78 50328 policykit-1-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 98add99a8e6adb00e43223b8d724364d16aadb26b79bc591f1c74e36cbbb5c4e 88722 libpolkit-gobject-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 8032b9eba9bb0fff1a61b8ed8d31bb8dd374e0bb28b7758c083250ae65961804 35704 libpolkit-agent-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb be20dfc605cc2f8e7d503c1927940a143341f70413349e63983a79aec797f8ed 89080 libpolkit-backend-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb e1bb859043fda91fb0190fe018e8f2b219855b81c4fcd7cf0b3763e2a6f3f7f8 1814 policykit-1_0.105-4ubuntu3.14.04.2_powerpc_translations.tar.gz Files: 57d357c5215615900f50303d69a1b51a 50104 admin optional policykit-1_0.105-4ubuntu3.14.04.2_powerpc.deb 91c09c29cdfbf87ceb0830386f391344 31148 libs optional libpolkit-gobject-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb 24a5e62fe0cae1cf8e77fe57dab87a32 49754 libdevel optional libpolkit-gobject-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 019442013d74dc48267c0a860d1d9193 13732 libs optional libpolkit-agent-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb a34bb552e993b522120a66a777b0e8ba 19958 libdevel optional libpolkit-agent-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 3a469ca6c9f3d9b0299c009f5d5375a4 32814 libs optional libpolkit-backend-1-0_0.105-4ubuntu3.14.04.2_powerpc.deb fff0341b19f1ed0c755e2501f7cb07e6 38150 libdevel optional libpolkit-backend-1-dev_0.105-4ubuntu3.14.04.2_powerpc.deb 70cdfb9b8da8dc722b888e581704b5eb 7054 introspection optional gir1.2-polkit-1.0_0.105-4ubuntu3.14.04.2_powerpc.deb bd2ca0c597538c9eee300cbd6d7d0209 50328 admin extra policykit-1-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 8a25c79b26da51b28a7eeeec7c733735 88722 libs extra libpolkit-gobject-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 4eb1f39887a3a69164aa9c5a2bd40033 35704 libs extra libpolkit-agent-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 6123bfc1991c8ddc1fca97f1255de76b 89080 libs extra libpolkit-backend-1-0-dbgsym_0.105-4ubuntu3.14.04.2_powerpc.ddeb 075d79174edc3a240dc56f580aba4c06 1814 raw-translations - policykit-1_0.105-4ubuntu3.14.04.2_powerpc_translations.tar.gz Original-Maintainer: Utopia Maintenance Team