Format: 1.8 Date: Mon, 12 Nov 2018 09:36:49 -0500 Source: python2.7 Binary: python2.7 libpython2.7-stdlib python2.7-minimal libpython2.7-minimal libpython2.7 python2.7-examples python2.7-dev libpython2.7-dev libpython2.7-testsuite idle-python2.7 python2.7-doc python2.7-dbg libpython2.7-dbg Architecture: armhf Version: 2.7.12-1ubuntu0~16.04.4 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: idle-python2.7 - IDE for Python (v2.7) using Tkinter libpython2.7 - Shared Python runtime library (version 2.7) libpython2.7-dbg - Debug Build of the Python Interpreter (version 2.7) libpython2.7-dev - Header files and a static library for Python (v2.7) libpython2.7-minimal - Minimal subset of the Python language (version 2.7) libpython2.7-stdlib - Interactive high-level object-oriented language (standard library libpython2.7-testsuite - Testsuite for the Python standard library (v2.7) python2.7 - Interactive high-level object-oriented language (version 2.7) python2.7-dbg - Debug Build of the Python Interpreter (version 2.7) python2.7-dev - Header files and a static library for Python (v2.7) python2.7-doc - Documentation for the high-level object-oriented language Python python2.7-examples - Examples for the Python language (v2.7) python2.7-minimal - Minimal subset of the Python language (version 2.7) Changes: python2.7 (2.7.12-1ubuntu0~16.04.4) xenial-security; urgency=medium . * SECURITY UPDATE: heap buffer overflow via race condition - debian/patches/CVE-2018-1000030-1.patch: stop crashes when iterating over a file on multiple threads in Lib/test/test_file2k.py, Objects/fileobject.c. - debian/patches/CVE-2018-1000030-2.patch: fix crash when multiple threads iterate over a file in Lib/test/test_file2k.py, Objects/fileobject.c. - CVE-2018-1000030 * SECURITY UPDATE: command injection in shutil module - debian/patches/CVE-2018-1000802.patch: use subprocess rather than distutils.spawn in Lib/shutil.py. - CVE-2018-1000802 * SECURITY UPDATE: DoS via catastrophic backtracking - debian/patches/CVE-2018-106x.patch: fix expressions in Lib/difflib.py, Lib/poplib.py. Added tests to Lib/test/test_difflib.py, Lib/test/test_poplib.py. - CVE-2018-1060 - CVE-2018-1061 * SECURITY UPDATE: incorrect Expat hash salt initialization - debian/patches/CVE-2018-14647.patch: call SetHashSalt in Include/pyexpat.h, Modules/_elementtree.c, Modules/pyexpat.c. - CVE-2018-14647 Checksums-Sha1: 42567de1dc3f8bbde5d84b82a7762dab707da231 3956864 libpython2.7-dbg_2.7.12-1ubuntu0~16.04.4_armhf.deb 6a6032c826dd05ef60be6b227ada4bacb3bb1bed 986 libpython2.7-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb cd5afaad033a86f3db6444f38df3a9c3fe7698f8 974 libpython2.7-dev-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb 6b50d31dff11e0141c0e002f1c19fac6cace100b 27190194 libpython2.7-dev_2.7.12-1ubuntu0~16.04.4_armhf.deb 1f5ffbebff87baffbf266d25385a937c8bab4e5b 868 libpython2.7-minimal-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb fcb2925f90ca334ff075dbd2425e7c7e90384723 339098 libpython2.7-minimal_2.7.12-1ubuntu0~16.04.4_armhf.deb d7249e7d8da45fdd932611504bf91824c72181d2 990 libpython2.7-stdlib-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb a10987d49eeea913d60445c15fdeec973950d7d4 1838300 libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.4_armhf.deb 503e4da4473277c5fae908a299acdab7a70833db 935910 libpython2.7_2.7.12-1ubuntu0~16.04.4_armhf.deb 0eea03093e47b2be68d85935e8b6b78f9b4942a3 7372386 python2.7-dbg_2.7.12-1ubuntu0~16.04.4_armhf.deb a48cb48b7a84731f48a312d1ff3f33eea9132ac6 276040 python2.7-dev_2.7.12-1ubuntu0~16.04.4_armhf.deb 101d3e574092a75a43c0286cb7f42134ea6f3b60 1045436 python2.7-minimal_2.7.12-1ubuntu0~16.04.4_armhf.deb d02a63e129bf7539b20caea8e90d5dd9e774783a 223722 python2.7_2.7.12-1ubuntu0~16.04.4_armhf.deb Checksums-Sha256: 6e8749931fca924d1f191205eee96e82d847e6939e31547947393a1d34614ba4 3956864 libpython2.7-dbg_2.7.12-1ubuntu0~16.04.4_armhf.deb 44d5cf92f401c6b60597c24f61629d3d966b5672bac3fdb72844d11bee7eba14 986 libpython2.7-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb 888ef42a8bbc7a85537751598af9616d9d6db85518c9bb8e585306cd39836009 974 libpython2.7-dev-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb a68fd0a41274b00cd9b3e6624a4e61ba01fd89ac0a4bda294c6290e7080eaade 27190194 libpython2.7-dev_2.7.12-1ubuntu0~16.04.4_armhf.deb 6ee8b5d484d1fddcf2e1342ffb410226f05820e69753270a66e642be0bd3b4a0 868 libpython2.7-minimal-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb c5c39b50fd0b5323993088f720305c69dc07e372d0ff0256e688dabbcd3fad7c 339098 libpython2.7-minimal_2.7.12-1ubuntu0~16.04.4_armhf.deb 66749504b048736e7d666af36ff1cf350a974acd6b00e80369936517bd5cbdf4 990 libpython2.7-stdlib-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb 0ac4851df80f547aebde97bbddfa3ce708713fa869cd8695cfd0f26a3f1cfb60 1838300 libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.4_armhf.deb c87612e26c08802a4f3481fc3d1a0feb46017a3398f3f1e75cbb7492e6c53aff 935910 libpython2.7_2.7.12-1ubuntu0~16.04.4_armhf.deb bfa6e2920f0146961b5fbafbcfd5c13dc8460842ddb149484583ad0dd09dce69 7372386 python2.7-dbg_2.7.12-1ubuntu0~16.04.4_armhf.deb 495cbb8cadcacb21f2fdee2f441ce2da08305f373c38641d5e0da0a3840590cf 276040 python2.7-dev_2.7.12-1ubuntu0~16.04.4_armhf.deb a445c76fa9133663e3f7554a982cca9457b6cb8d17366fb3c4e3c0cf250b028d 1045436 python2.7-minimal_2.7.12-1ubuntu0~16.04.4_armhf.deb 2a6860c2cf7ac585a95da10f07d86fcd95319289b81d6be22784b9fb16b7f5ed 223722 python2.7_2.7.12-1ubuntu0~16.04.4_armhf.deb Files: f991316d08f312b489fbbaf7159c5a80 3956864 debug extra libpython2.7-dbg_2.7.12-1ubuntu0~16.04.4_armhf.deb f389de944b2c3b6677c5913ba448915b 986 libs extra libpython2.7-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb 1fac6671d40fb04aab1623f62e736960 974 libdevel extra libpython2.7-dev-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb 19500b9a4b3e490bb25c2ac392785cae 27190194 libdevel optional libpython2.7-dev_2.7.12-1ubuntu0~16.04.4_armhf.deb 16bb2bd3d3a9ff4a2f7c132699e1fa63 868 python extra libpython2.7-minimal-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb d22491ec131f6995e3d320a558e9b047 339098 python standard libpython2.7-minimal_2.7.12-1ubuntu0~16.04.4_armhf.deb cd9dad70364d6e993978030e2aef2bbf 990 python extra libpython2.7-stdlib-dbgsym_2.7.12-1ubuntu0~16.04.4_armhf.ddeb b013063adc498c52e2a2662d8b92ad71 1838300 python standard libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.4_armhf.deb c76758f9d09e7aec6a24d6bb6e7444be 935910 libs standard libpython2.7_2.7.12-1ubuntu0~16.04.4_armhf.deb c2c237fa4fa9a4935201ce6ca637cfeb 7372386 debug extra python2.7-dbg_2.7.12-1ubuntu0~16.04.4_armhf.deb 78dc8646cbfbaf290a3656513f128af6 276040 python optional python2.7-dev_2.7.12-1ubuntu0~16.04.4_armhf.deb 9a6951187e38648ef17fe22dff6efdef 1045436 python standard python2.7-minimal_2.7.12-1ubuntu0~16.04.4_armhf.deb c312380180ae8c1944a1f606ee6f4d41 223722 python standard python2.7_2.7.12-1ubuntu0~16.04.4_armhf.deb Original-Maintainer: Matthias Klose