Format: 1.8 Date: Tue, 29 Jan 2013 13:31:57 -0500 Source: inkscape Binary: inkscape Architecture: i386 i386_translations Version: 0.48.3.1-1ubuntu6.1 Distribution: quantal Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: inkscape - vector-based drawing program Changes: inkscape (0.48.3.1-1ubuntu6.1) quantal-security; urgency=low . * SECURITY UPDATE: arbitrary file disclosure via XML external entity - debian/patches/CVE-2012-5656.patch: disable loading external entities in src/preferences-skeleton.h, src/ui/dialog/ocaldialogs.cpp, src/xml/repr-io.cpp. - CVE-2012-5656 * SECURITY UPDATE: possible file loading from /tmp - debian/patches/CVE-2012-6076.patch: make sure filename is absolute in src/extension/implementation/script.cpp. - CVE-2012-6076 Checksums-Sha1: c66c84967abbb7aaa1716bedad89ccf3f2f600f1 18007062 inkscape_0.48.3.1-1ubuntu6.1_i386.deb 910e8a1bbcbd2de94c446c3f5e5c6a8763282ed8 16812679 inkscape_0.48.3.1-1ubuntu6.1_i386_translations.tar.gz Checksums-Sha256: a9d489cb347c7b2b396e0c3055634e2ea3a9a43daa6df2942a05fb72b0c0f8d1 18007062 inkscape_0.48.3.1-1ubuntu6.1_i386.deb 83b0a70133aaddd4ba8385acf8705bf0e83bfc765d8dfe4c84a803f852154eb0 16812679 inkscape_0.48.3.1-1ubuntu6.1_i386_translations.tar.gz Files: b549b91518162190c7b0e7498323caa8 18007062 graphics optional inkscape_0.48.3.1-1ubuntu6.1_i386.deb 569e7ae38fab724b642ace704e4423a1 16812679 raw-translations - inkscape_0.48.3.1-1ubuntu6.1_i386_translations.tar.gz Original-Maintainer: Wolfram Quester