Format: 1.8 Date: Tue, 29 Jan 2013 13:40:53 -0500 Source: inkscape Binary: inkscape Architecture: amd64 amd64_translations Version: 0.48.2-0ubuntu1.1 Distribution: oneiric Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: inkscape - vector-based drawing program Changes: inkscape (0.48.2-0ubuntu1.1) oneiric-security; urgency=low . * SECURITY UPDATE: arbitrary file disclosure via XML external entity - debian/patches/CVE-2012-5656.dpatch: disable loading external entities in src/preferences-skeleton.h, src/ui/dialog/ocaldialogs.cpp, src/xml/repr-io.cpp. - CVE-2012-5656 * SECURITY UPDATE: possible file loading from /tmp - debian/patches/CVE-2012-6076.dpatch: make sure filename is absolute in src/extension/implementation/script.cpp. - CVE-2012-6076 Checksums-Sha1: 214e7576ffdeaee301555693fceff6ed52898d10 18128700 inkscape_0.48.2-0ubuntu1.1_amd64.deb db21e5feb179dca3ea3a3b527477bbaeec18243c 16812466 inkscape_0.48.2-0ubuntu1.1_amd64_translations.tar.gz Checksums-Sha256: 43462dd6fd6c2f031ae79e7728c757707dd57437c94ec9ea699dc36070dc9f6c 18128700 inkscape_0.48.2-0ubuntu1.1_amd64.deb 4934c95aabecb8cffcc6eb486f3518d7d65b70edd9b3e833231fc239a2815731 16812466 inkscape_0.48.2-0ubuntu1.1_amd64_translations.tar.gz Files: a1c47bd6e7ffee3bb59e92a836e8a617 18128700 graphics optional inkscape_0.48.2-0ubuntu1.1_amd64.deb 7bd2f5d7c3ece5b2c32aa280b6b77937 16812466 raw-translations - inkscape_0.48.2-0ubuntu1.1_amd64_translations.tar.gz Original-Maintainer: Wolfram Quester