Format: 1.8 Date: Tue, 29 Jan 2013 13:39:18 -0500 Source: inkscape Binary: inkscape Architecture: i386 i386_translations Version: 0.48.3.1-1ubuntu1.1 Distribution: precise Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: inkscape - vector-based drawing program Changes: inkscape (0.48.3.1-1ubuntu1.1) precise-security; urgency=low . * SECURITY UPDATE: arbitrary file disclosure via XML external entity - debian/patches/CVE-2012-5656.patch: disable loading external entities in src/preferences-skeleton.h, src/ui/dialog/ocaldialogs.cpp, src/xml/repr-io.cpp. - CVE-2012-5656 * SECURITY UPDATE: possible file loading from /tmp - debian/patches/CVE-2012-6076.patch: make sure filename is absolute in src/extension/implementation/script.cpp. - CVE-2012-6076 Checksums-Sha1: f92c79acc81219ed53e40c60034cb5231f358d05 18137420 inkscape_0.48.3.1-1ubuntu1.1_i386.deb 84d33f1443af20757f28dd836caf190f7734906f 16825326 inkscape_0.48.3.1-1ubuntu1.1_i386_translations.tar.gz Checksums-Sha256: 45b1fc33a53d64a56c9c7c1634694c2c96ea62f6d775f670cf6e8ec81494143b 18137420 inkscape_0.48.3.1-1ubuntu1.1_i386.deb 20227e73cc6eea094b3039f47b638787f7805790d6873c80138d5684d91996c7 16825326 inkscape_0.48.3.1-1ubuntu1.1_i386_translations.tar.gz Files: c58a10bcc4490d182dbd8abb13fc8f44 18137420 graphics optional inkscape_0.48.3.1-1ubuntu1.1_i386.deb 52f1fb66c83f67677bcac81125273e91 16825326 raw-translations - inkscape_0.48.3.1-1ubuntu1.1_i386_translations.tar.gz Original-Maintainer: Wolfram Quester