Branches for Karmic

Name Status Last Modified Last Commit
lp:ubuntu/karmic/openafs bug Development 2013-05-13 05:08:58 UTC
24. New upstream release.

Author: Russ Allbery
Revision Date: 2009-07-10 13:57:55 UTC

New upstream release.

lp:~smcspiderman/ubuntu/karmic/lxc/lp849384 Development 2012-05-21 02:47:05 UTC
48103. moved confiles around

Author: Seamus McSpiderman
Revision Date: 2012-05-21 02:47:05 UTC

moved confiles around

lp:ubuntu/karmic/mdadm bug Development 2012-04-11 07:49:25 UTC
51. Do not test array state for partition...

Author: Scott James Remnant (Canonical)
Revision Date: 2009-09-27 14:39:39 UTC

Do not test array state for partitions, which won't exist if the
array is inactive and don't have a state to test. LP: #431064.

lp:ubuntu/karmic-proposed/ruby1.8 bug Development 2012-04-11 07:09:17 UTC
32. * Added debian/patches/091125_gc_chec...

Author: Bryan McLellan
Revision Date: 2009-12-01 03:33:13 UTC

* Added debian/patches/091125_gc_check.dpatch: Avoid segv on gc run whe
  heap fills up with deferred objects. (LP: #488115)
* Added debian/patches/090812_class_clone_segv.dpatch: avoid segv when an
  object cloned. (LP: #484756)

lp:ubuntu/karmic-updates/ruby1.8 Development 2012-04-11 07:08:52 UTC
32. * Added debian/patches/091125_gc_chec...

Author: Bryan McLellan
Revision Date: 2009-12-01 03:33:13 UTC

* Added debian/patches/091125_gc_check.dpatch: Avoid segv on gc run whe
  heap fills up with deferred objects. (LP: #488115)
* Added debian/patches/090812_class_clone_segv.dpatch: avoid segv when an
  object cloned. (LP: #484756)

lp:ubuntu/karmic/icu Development 2012-04-11 02:41:25 UTC
14. No change rebuild to fix misbuilt bin...

Author: Loïc Minier
Revision Date: 2009-10-21 14:45:37 UTC

No change rebuild to fix misbuilt binaries on armel.

lp:ubuntu/karmic-security/php5 bug Mature 2012-02-17 01:55:27 UTC
58. debian/patches/php5-pear-CVE-2011-114...

Author: Steve Beattie
Revision Date: 2011-05-02 09:21:27 UTC

debian/patches/php5-pear-CVE-2011-1144-regression.patch: fix
mkdir parenthesis issue and PEAR::raiseErro typo (LP: #774452)

lp:ubuntu/karmic-updates/gnome-games bug Development 2011-10-26 01:30:30 UTC
105. * debian/patches/series: - Added mi...

Author: Robert Ancell
Revision Date: 2010-02-18 10:32:14 UTC

* debian/patches/series:
  - Added missing patch 10_glchess_uci_crash

lp:ubuntu/karmic-proposed/gnome-games Development 2011-10-26 01:28:24 UTC
105. * debian/patches/series: - Added mi...

Author: Robert Ancell
Revision Date: 2010-02-18 10:32:14 UTC

* debian/patches/series:
  - Added missing patch 10_glchess_uci_crash

lp:ubuntu/karmic/gnome-games Development 2011-10-26 01:28:17 UTC
103. * New upstream release (LP: #434335) ...

Author: Robert Ancell
Revision Date: 2009-09-22 09:55:53 UTC

* New upstream release (LP: #434335)
  - glchess: Disable 3D mode after a crash in the 3D renderer (LP: #350850)
  - glchess: Use previous AI for default game (LP: #392972)
  - gtali: Make 24x24 icon look the same as 22x22 icon (LP: #426443)
* debian/*.6:
* debian/*.manpages:
* debian/*.install:
  - Manpages now provided upstream
* debian/gnome-cards-data.install:
  - Obsolete

lp:ubuntu/karmic/webkitkde Development 2011-10-25 17:15:42 UTC
11. New upstream snapshot

Author: Jonathan Riddell
Revision Date: 2009-09-15 18:12:02 UTC

New upstream snapshot

lp:ubuntu/karmic/git-core bug Development 2011-10-25 17:09:22 UTC
49. [ Anders Kaseorg ] * Fix manpage form...

Author: Gerrit Pape
Revision Date: 2009-06-29 00:06:59 UTC

[ Anders Kaseorg ]
* Fix manpage formatting: set ASCIIDOC_NO_ROFF instead of
  DOCBOOK_XSL_173 (based on the instructions in Documentation/Makefile)
  and don’t override the internal Makefile variable ASCIIDOC_EXTRA
  (closes: #530693, #521954, #533320).

[ Gerrit Pape ]
* debian/control: Standards-Version: 3.8.2.0.

lp:ubuntu/karmic-updates/git-core Development 2011-10-25 17:09:06 UTC
50. * SECURITY UPDATE: gitweb cross-site ...

Author: Steve Beattie
Revision Date: 2010-12-17 14:43:15 UTC

* SECURITY UPDATE: gitweb cross-site scripting vulnerability
  - debian/diff/0034-gitweb-Introduce-esc_attr...diff:
    from upstream: gitweb: do not parrot filenames or other arguments
    given in a request without proper quoting
  - CVE-2010-3906

lp:ubuntu/karmic-security/git-core Development 2011-10-25 17:08:35 UTC
50. * SECURITY UPDATE: gitweb cross-site ...

Author: Steve Beattie
Revision Date: 2010-12-17 14:43:15 UTC

* SECURITY UPDATE: gitweb cross-site scripting vulnerability
  - debian/diff/0034-gitweb-Introduce-esc_attr...diff:
    from upstream: gitweb: do not parrot filenames or other arguments
    given in a request without proper quoting
  - CVE-2010-3906

lp:ubuntu/karmic/kbd Development 2011-10-25 16:44:29 UTC
19. * Resynchronise with Debian. Remainin...

Author: Colin Watson
Revision Date: 2009-06-24 17:10:18 UTC

* Resynchronise with Debian. Remaining changes:
  - Prefer console-setup to console-common and console-data.
  - debian/console-screen.kbd.sh: Don't run at all if setupcon (from
    console-setup) is present.
  - Add setfont, kbd_mode, and loadkeys to initramfs for console-setup.
  - Use ckbcomp to get the keyboard layout if other data files are not
    available.
  - Depend on console-setup, and remove /etc/init.d/console-screen.kbd.sh;
    we now only support systems using console-setup and so it no longer
    serves a purpose.

lp:ubuntu/karmic/norwegian Development 2011-10-25 16:44:10 UTC
8. * Fix up URL in copyright * Add Japan...

Author: Tollef Fog Heen
Revision Date: 2009-03-22 16:09:37 UTC

* Fix up URL in copyright
* Add Japanese debconf template. Closes: #512862
* Rename n[bn].{aff,dic} to n[bn]_NO.{aff,dic}. Closes: #517783, #517784
* Add ${misc:Depends} to Depends to shut up lintian a bit.
* Remove explicit coding of changelog at the end, all changelogs should
  be UTF8 now.
* Bump debhelper compat version to 6.
* Bump Standards-Version to 3.8.1 (no changes needed).

lp:ubuntu/karmic/community-themes bug Development 2011-10-25 16:28:23 UTC
10. * Update Night Impression to build 90...

Author: Andrew Starr-Bochicchio
Revision Date: 2009-10-06 18:57:17 UTC

* Update Night Impression to build 90926-1.
 - Uses new Humanity Dark icons.
* Update Hanso to v0.4.4
* debian/control: Depend on humanity-icon-theme.

lp:ubuntu/karmic/gnome-themes-ubuntu Development 2011-10-25 16:22:29 UTC
6. Dust/gtk-2.0/gtkrc: cherry-pick r7 fr...

Author: Loïc Minier
Revision Date: 2009-10-10 10:28:58 UTC

Dust/gtk-2.0/gtkrc: cherry-pick r7 from lp:~dusttheme-dev/dusttheme/0.4
fixing the totem playlist combobox; LP: #424891.

lp:ubuntu/karmic/linuxtv-dvb-apps Development 2011-10-25 14:18:31 UTC
8. * New upstream release - (Closes: #...

Author: Mark Purcell
Revision Date: 2009-05-03 20:16:46 UTC

* New upstream release
  - (Closes: #526708): "de-Nuernberg out of date"
* Drop obsolete dvb-utils (etch dummy package only)
* Update debian/watch - with pointer to Hg version

lp:ubuntu/karmic/fvwm-crystal Development 2011-10-25 14:02:12 UTC
4. * Fix Russian translation, thanks to ...

Author: Vincent Bernat
Revision Date: 2009-04-20 21:20:07 UTC

* Fix Russian translation, thanks to Alexander Galanin. Closes: #506611.
* Fix a speed issue in createmenu.py when there are too many icons in
  the system. Thanks to Petr Gajdůšek for his help! Closes: #520782.
* Bump Standards-Version to 3.8.1.

lp:ubuntu/karmic/otrs2 Development 2011-10-25 13:54:38 UTC
15. * New upstream release * Replace acce...

Author: Torsten Werner
Revision Date: 2009-02-11 21:50:43 UTC

* New upstream release
* Replace access to /var/lib/otrs directory by symlink in /usr/share/otrs.
  (Closes: #513327)
* Add Japanese debconf translation; thanks to Hideki Yamane. (Closes:
  #512978)

lp:ubuntu/karmic/fontmatrix Development 2011-10-25 13:51:21 UTC
2. Added libfontconfig1-dev, libpng12-d...

Author: Oleksandr Moskalenko
Revision Date: 2008-04-21 08:48:04 UTC

Added libfontconfig1-dev, libpng12-dev, libice-dev, libsm-dev, libxi-dev,
libxrandr-dev, libxrender-dev to build-depends as qt4 doesn't depend on
them directly anymore (Closes: #477003).

lp:ubuntu/karmic/childsplay-alphabet-sounds-sv Development 2011-10-25 13:45:51 UTC
6. Fixed the debian/copyright file to ma...

Author: Sergio Talens-Oliag
Revision Date: 2009-04-28 23:23:23 UTC

Fixed the debian/copyright file to make ftpmaster happy.

lp:ubuntu/karmic/klavaro Development 2011-10-25 12:56:48 UTC
17. * New upstream release. * debian/copy...

Author: Bart Martens
Revision Date: 2009-06-16 09:03:15 UTC

* New upstream release.
* debian/copyright: Updated.

lp:ubuntu/karmic/pyexiv2 Development 2011-10-25 12:29:10 UTC
7. Fake-sync due to different md5sum of ...

Author: Michael Bienia
Revision Date: 2009-05-24 13:12:43 UTC

Fake-sync due to different md5sum of .orig.tar.gz (lp: #374585).

lp:ubuntu/karmic/console-tools Development 2011-10-25 12:26:32 UTC
28. 999_ubuntu_vt-is-UTF8_manpage.patch: ...

Author: Adam Buchbinder
Revision Date: 2009-06-16 17:31:29 UTC

999_ubuntu_vt-is-UTF8_manpage.patch: Fix manpage to properly document
the --quiet option. (LP: #49031)

lp:ubuntu/karmic/suomi-malaga Development 2011-10-25 12:19:59 UTC
8. Add FLOSS brand names (Closes: #527097)

Author: Timo Jyrinki
Revision Date: 2009-05-24 11:58:08 UTC

Add FLOSS brand names (Closes: #527097)

lp:ubuntu/karmic/freedink-data Development 2011-10-25 12:19:59 UTC
2. Initial release (Closes: #492760)

Author: Sylvain Beucler
Revision Date: 2008-09-20 20:50:51 UTC

Initial release (Closes: #492760)

lp:ubuntu/karmic/childsplay-alphabet-sounds-ca Development 2011-10-25 12:09:01 UTC
5. Fixed the debian/copyright file to ma...

Author: Sergio Talens-Oliag
Revision Date: 2009-04-28 23:23:23 UTC

Fixed the debian/copyright file to make ftpmaster happy.

lp:ubuntu/karmic/swfdec0.8 Development 2011-10-25 12:07:51 UTC
4. New upstream version.

Author: Santiago Garcia Mantinan
Revision Date: 2008-12-28 21:09:28 UTC

New upstream version.

lp:ubuntu/karmic/swfdec0.7 Development 2011-10-25 12:02:14 UTC
2. New upstream development version.

Author: Santiago Garcia Mantinan
Revision Date: 2008-08-13 22:52:53 UTC

New upstream development version.

lp:ubuntu/karmic/openclipart Development 2011-10-25 11:43:31 UTC
6. * rebuild for OOo 3.1 * add conflicts...

Author: Rene Engelhard
Revision Date: 2009-05-07 17:16:39 UTC

* rebuild for OOo 3.1
* add conflicts against openoffice.org-commons newer than the basis we
  build against (( >= ${basis-version}.99) )
* stop using Xvfb and rely on the headless mode of OOo/VCL. Makes the build
  not fail on sid due to Xvfb crashing...

lp:ubuntu/karmic-proposed/bash-completion bug Development 2011-10-25 10:40:01 UTC
19. add replaces/conflicts on older svk (...

Author: Steve Beattie
Revision Date: 2009-10-23 10:11:18 UTC

add replaces/conflicts on older svk (LP: #389633)

lp:ubuntu/karmic-updates/bash-completion Development 2011-10-25 10:38:05 UTC
19. add replaces/conflicts on older svk (...

Author: Steve Beattie
Revision Date: 2009-10-23 10:11:18 UTC

add replaces/conflicts on older svk (LP: #389633)

lp:ubuntu/karmic/kde-icons-crystalproject Development 2011-10-25 10:27:59 UTC
3. * Bumped standards version * Added Ho...

Author: Bastian Venthur
Revision Date: 2008-03-26 15:31:13 UTC

* Bumped standards version
* Added Homepage field

lp:ubuntu/karmic/canorus Development 2011-10-25 10:25:41 UTC
2. Initial release (Closes: #461914)

Author: Dr. Tobias Quathamer
Revision Date: 2009-03-31 11:29:13 UTC

Initial release (Closes: #461914)

lp:ubuntu/karmic-security/kde4libs bug Mature 2011-08-31 20:40:30 UTC
158. * SECURITY UPDATE: fix XSS vulnerabil...

Author: Jamie Strandboge
Revision Date: 2011-04-11 10:19:40 UTC

* SECURITY UPDATE: fix XSS vulnerability in Konqueror's error pages
  - debian/patches/security_03_CVE-2011-1168.diff: upstream patch
  - CVE-2011-1168
  - LP: #743669
* SECURITY UPDATE: fix certificate verification for certificates issued
  against an IP address
  - debian/patches/security_04_CVE-2011-1094.diff: based on upstream patch
  - CVE-2011-1094

lp:ubuntu/karmic-security/kdenetwork bug Mature 2011-08-31 18:36:58 UTC
105. * SECURITY UPDATE: fix directory trav...

Author: Jamie Strandboge
Revision Date: 2011-04-15 09:13:14 UTC

* SECURITY UPDATE: fix directory traversal in kget
  - debian/patches/kubuntu_06_CVE-2010-1000b.diff: more input validation due
    to incomplete fix for CVE-2010-1000
  - CVE-2011-XXXX
  - LP: #757526

lp:~bzr/ubuntu/karmic/bzr/beta-ppa Development 2011-08-18 07:03:00 UTC
3890. Merge 2.4.0

Author: Max Bowsher
Revision Date: 2011-08-18 07:03:00 UTC

Merge 2.4.0

lp:~bzr/ubuntu/karmic/debhelper/builddeps-ppa Development 2011-08-03 21:59:32 UTC
51. Merge 8.1.2 into the bzr builddeps PP...

Author: Max Bowsher
Revision Date: 2011-08-03 21:59:32 UTC

Merge 8.1.2 into the bzr builddeps PPA karmic branch, as a simple rebuild.

lp:~bzr/ubuntu/karmic/bzr-gtk/bzr-ppa Mature 2011-07-31 23:05:55 UTC
65. Merge r734

Author: Max Bowsher
Revision Date: 2011-07-31 23:05:55 UTC

Merge r734

lp:~bzr/ubuntu/karmic/bzr-explorer/bzr-ppa Development 2011-07-31 22:48:23 UTC
343. Merge 1.2.0

Author: Max Bowsher
Revision Date: 2011-07-31 22:48:23 UTC

Merge 1.2.0

lp:~bzr/ubuntu/karmic/qbzr/bzr-ppa Development 2011-07-31 22:42:06 UTC
46. Merge 0.21

Author: Max Bowsher
Revision Date: 2011-07-31 22:42:06 UTC

Merge 0.21

lp:~bzr/ubuntu/karmic/bzr/bzr-ppa bug Development 2011-07-17 23:28:38 UTC
152. Merge 2.3.4

Author: Max Bowsher
Revision Date: 2011-07-17 23:28:38 UTC

Merge 2.3.4

lp:~bzr/ubuntu/karmic/bzrtools/beta-ppa Development 2011-07-16 05:28:05 UTC
38. Merge 2.4.0

Author: Max Bowsher
Revision Date: 2011-07-16 05:28:05 UTC

Merge 2.4.0

lp:ubuntu/karmic/mago Development 2011-07-12 23:50:23 UTC
2. [ Ara Pulido ] * Initial release. (LP...

Author: Ara Pulido
Revision Date: 2009-08-04 09:21:40 UTC

[ Ara Pulido ]
* Initial release. (LP: #408951)

[ Iain Lane ]
* Remove recommends on firefox which is unnecessary

lp:ubuntu/karmic-proposed/tzdata bug Mature 2011-06-24 22:12:31 UTC
69. * New upstream release 2011e: (LP: #7...

Author: Gary Lasker
Revision Date: 2011-04-02 16:48:57 UTC

* New upstream release 2011e: (LP: #747946)
  - africa: Add start and end of DST in 2011 in Morocco.
  - southamerica: For Chile, delay end of DST in 2011 from April 2nd to May 7th

lp:ubuntu/karmic-updates/postgresql-8.4 bug Mature 2011-06-24 21:10:46 UTC
12. * New upstream security/bug fix relea...

Author: Martin Pitt
Revision Date: 2011-02-01 22:30:52 UTC

* New upstream security/bug fix release: (LP: #711318)
  - Fix buffer overrun in "contrib/intarray"'s input function for the
    query_int type.
    This bug is a security risk since the function's return address
    could be overwritten. Thanks to Apple Inc's security team for
    reporting this issue and supplying the fix. (CVE-2010-4015)
  - Avoid failures when "EXPLAIN" tries to display a simple-form CASE
    expression.
    If the CASE's test expression was a constant, the planner could
    simplify the CASE into a form that confused the expression-display
    code, resulting in "unexpected CASE WHEN clause" errors.
  - Fix assignment to an array slice that is before the existing range
    of subscripts.
    If there was a gap between the newly added subscripts and the first
    pre-existing subscript, the code miscalculated how many entries
    needed to be copied from the old array's null bitmap, potentially
    leading to data corruption or crash.
  - Avoid unexpected conversion overflow in planner for very distant
    date values.
    The date type supports a wider range of dates than can be
    represented by the timestamp types, but the planner assumed it
    could always convert a date to timestamp with impunity.
  - Fix pg_restore's text output for large objects (BLOBs) when
    standard_conforming_strings is on.
    Although restoring directly to a database worked correctly, string
    escaping was incorrect if pg_restore was asked for SQL text output
    and standard_conforming_strings had been enabled in the source
    database.
  - Fix erroneous parsing of tsquery values containing ... &
    !(subexpression) | ... .
    Queries containing this combination of operators were not executed
    correctly. The same error existed in "contrib/intarray"'s query_int
    type and "contrib/ltree"'s ltxtquery type.
  - Fix bug in "contrib/seg"'s GiST picksplit algorithm.
    This could result in considerable inefficiency, though not actually
    incorrect answers, in a GiST index on a seg column. If you have
    such an index, consider "REINDEX"ing it after installing this
    update. (This is identical to the bug that was fixed in
    "contrib/cube" in the previous update.)

lp:ubuntu/karmic-updates/mumble bug Development 2011-06-24 20:51:10 UTC
11. * SECURITY UPDATE: /etc/mumble-server...

Author: Felix Geyer
Revision Date: 2011-01-20 13:02:46 UTC

* SECURITY UPDATE: /etc/mumble-server.ini is world readable. (LP: #704674)
  - debian/mumble-server.postinst: Set permissions of mumble-server.ini to
    0640 and the owner to root:mumble-server.

lp:ubuntu/karmic-security/mumble Development 2011-06-24 20:49:20 UTC
11. * SECURITY UPDATE: /etc/mumble-server...

Author: Felix Geyer
Revision Date: 2011-01-20 13:02:46 UTC

* SECURITY UPDATE: /etc/mumble-server.ini is world readable. (LP: #704674)
  - debian/mumble-server.postinst: Set permissions of mumble-server.ini to
    0640 and the owner to root:mumble-server.

lp:ubuntu/karmic-updates/sysvinit Development 2011-06-11 19:42:00 UTC
128. debian/initscripts/etc/init.d/umountf...

Author: Agostino Russo
Revision Date: 2009-11-03 23:04:53 UTC

debian/initscripts/etc/init.d/umountfs: do not use the -f option when
unmounting WEAK_MTPTS, in the case of bind mounts in particular, that
results in the underlying device being unmounted, LP: #468589

lp:ubuntu/karmic-proposed/sysvinit Development 2011-06-11 19:41:54 UTC
128. debian/initscripts/etc/init.d/umountf...

Author: Agostino Russo
Revision Date: 2009-11-03 23:04:53 UTC

debian/initscripts/etc/init.d/umountfs: do not use the -f option when
unmounting WEAK_MTPTS, in the case of bind mounts in particular, that
results in the underlying device being unmounted, LP: #468589

lp:ubuntu/karmic/sysvinit Development 2011-06-11 19:41:48 UTC
127. * debian/control: - Change the upst...

Author: Michael Vogt
Revision Date: 2009-10-19 15:12:44 UTC

* debian/control:
  - Change the upstart dependency to a recommend in sysinit-utils
    because its not a hard dependency. This will fix a dependency
    cycle that causes kubuntu upgrades to fail (LP: ä452090)

lp:~ubuntu-branches/ubuntu/karmic/cyrus-sasl2/karmic-201105300214 (Has a merge proposal) Development 2011-05-30 02:15:22 UTC
33. debian/{control,rules}: add and enabl...

Author: Kees Cook
Revision Date: 2009-08-20 17:30:46 UTC

debian/{control,rules}: add and enable hardened build for PIE
(Debian bug 542725).

lp:ubuntu/karmic-proposed/bzr-builddeb bug Development 2011-05-30 02:00:47 UTC
11. util.py: Add "lucid" to ubuntu_releas...

Author: Andrew Starr-Bochicchio
Revision Date: 2010-01-02 17:07:21 UTC

util.py: Add "lucid" to ubuntu_releases (LP: #476530).

lp:ubuntu/karmic-updates/bzr-builddeb Development 2011-05-30 02:00:08 UTC
11. util.py: Add "lucid" to ubuntu_releas...

Author: Andrew Starr-Bochicchio
Revision Date: 2010-01-02 17:07:21 UTC

util.py: Add "lucid" to ubuntu_releases (LP: #476530).

lp:ubuntu/karmic-proposed/ruby-gnome2 bug Mature 2011-05-19 11:48:18 UTC
23. debian/patches/gtk-threads.patch: app...

Author: Mike Massonnet
Revision Date: 2010-02-19 02:04:05 UTC

debian/patches/gtk-threads.patch: apply two patches from ruby-gnome2 0.19.2
to fix a problem with threads freezing the GTKmain loop (LP: #514899).

lp:ubuntu/karmic-updates/ruby-gnome2 Mature 2011-05-19 11:46:16 UTC
23. debian/patches/gtk-threads.patch: app...

Author: Mike Massonnet
Revision Date: 2010-02-19 02:04:05 UTC

debian/patches/gtk-threads.patch: apply two patches from ruby-gnome2 0.19.2
to fix a problem with threads freezing the GTKmain loop (LP: #514899).

lp:ubuntu/karmic-updates/php5 Mature 2011-05-02 09:21:27 UTC
58. debian/patches/php5-pear-CVE-2011-114...

Author: Steve Beattie
Revision Date: 2011-05-02 09:21:27 UTC

debian/patches/php5-pear-CVE-2011-1144-regression.patch: fix
mkdir parenthesis issue and PEAR::raiseErro typo (LP: #774452)

lp:ubuntu/karmic-updates/rsync Mature 2011-04-27 16:07:43 UTC
22. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-04-08 10:18:37 UTC

* SECURITY UPDATE: denial of service and possible arbitrary code
  execution via malformed data
  - debian/patches/security-CVE-2011-1097.diff: introduce and use
    FLAG_OWNED_BY_US in flist.c, generator.c, log.c, rsync.*.
  - CVE-2011-1097

lp:ubuntu/karmic-security/rsync Mature 2011-04-27 15:15:17 UTC
22. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-04-08 10:18:37 UTC

* SECURITY UPDATE: denial of service and possible arbitrary code
  execution via malformed data
  - debian/patches/security-CVE-2011-1097.diff: introduce and use
    FLAG_OWNED_BY_US in flist.c, generator.c, log.c, rsync.*.
  - CVE-2011-1097

lp:ubuntu/karmic-proposed/landscape-client bug Mature 2011-04-26 18:14:17 UTC
32. * debian/control, debian/rules: Add q...

Author: Chuck Short
Revision Date: 2011-04-12 15:15:46 UTC

* debian/control, debian/rules: Add quilt
* debian/patches/fix-landscape-monitor.patch: Fix landscape
  monitoring with gir1.0-gudev-1.0 installed. (LP: #747498)

lp:ubuntu/karmic-security/xulrunner-1.9.1 Mature 2011-04-24 13:28:02 UTC
32. * New upstream release v1.9.1.19 (FIR...

Author: Micah Gersten
Revision Date: 2011-04-24 13:28:02 UTC

* New upstream release v1.9.1.19 (FIREFOX_3_5_19_BUILD2)
  - see USN-1123-1

lp:ubuntu/karmic-updates/xulrunner-1.9.1 Mature 2011-04-24 13:28:02 UTC
32. * New upstream release v1.9.1.19 (FIR...

Author: Micah Gersten
Revision Date: 2011-04-24 13:28:02 UTC

* New upstream release v1.9.1.19 (FIREFOX_3_5_19_BUILD2)
  - see USN-1123-1

lp:ubuntu/karmic-security/firefox-3.5 bug Mature 2011-04-22 01:51:42 UTC
30. * New upstream release v3.6.17 build3...

Author: Micah Gersten
Revision Date: 2011-04-22 01:51:42 UTC

* New upstream release v3.6.17 build3 (FIREFOX_3_6_17_BUILD3)
  - see USN-1112-1

* Refresh patch after upstream landing of (bmo: 477724) aka
  avoid pointless shell interpreter hanging around
  - update debian/patches/abrowser_run_mozilla.patch

lp:ubuntu/karmic-updates/firefox-3.5 bug Mature 2011-04-22 01:51:42 UTC
30. * New upstream release v3.6.17 build3...

Author: Micah Gersten
Revision Date: 2011-04-22 01:51:42 UTC

* New upstream release v3.6.17 build3 (FIREFOX_3_6_17_BUILD3)
  - see USN-1112-1

* Refresh patch after upstream landing of (bmo: 477724) aka
  avoid pointless shell interpreter hanging around
  - update debian/patches/abrowser_run_mozilla.patch

lp:ubuntu/karmic-security/xulrunner-1.9.2 Mature 2011-04-21 16:56:56 UTC
17. * New upstream release v1.9.2.17 buil...

Author: Micah Gersten
Revision Date: 2011-04-21 16:56:56 UTC

* New upstream release v1.9.2.17 build3 (FIREFOX_3_6_17_BUILD3)
  - see USN-1112-1
* Drop patch that doesn't actually do anything since the system sqlite is
  so old
  - drop debian/patches/defer_syslib_minversion_bump.patch
  - update debian/patches/series

lp:ubuntu/karmic-updates/xulrunner-1.9.2 bug Mature 2011-04-21 16:56:56 UTC
17. * New upstream release v1.9.2.17 buil...

Author: Micah Gersten
Revision Date: 2011-04-21 16:56:56 UTC

* New upstream release v1.9.2.17 build3 (FIREFOX_3_6_17_BUILD3)
  - see USN-1112-1
* Drop patch that doesn't actually do anything since the system sqlite is
  so old
  - drop debian/patches/defer_syslib_minversion_bump.patch
  - update debian/patches/series

lp:ubuntu/karmic-updates/openslp-dfsg Mature 2011-04-20 14:03:08 UTC
4. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-04-05 15:02:25 UTC

* SECURITY UPDATE: denial of service via circular reference
  - common/slp_message.c: detect circular reference. Patch thanks to SUSE.
  - CVE-2010-3609

lp:ubuntu/karmic-security/openslp-dfsg Mature 2011-04-20 13:09:32 UTC
4. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-04-05 15:02:25 UTC

* SECURITY UPDATE: denial of service via circular reference
  - common/slp_message.c: detect circular reference. Patch thanks to SUSE.
  - CVE-2010-3609

lp:ubuntu/karmic-updates/policykit-1 Mature 2011-04-20 00:02:09 UTC
7. * SECURITY UPDATE: avoid /proc race c...

Author: Kees Cook
Revision Date: 2011-04-19 13:06:21 UTC

* SECURITY UPDATE: avoid /proc race conditions when checking privileges
  for pkexec.
  - 10_fix_proc_race.patch
  - CVE-2011-1485

lp:ubuntu/karmic-security/policykit-1 Mature 2011-04-19 23:12:25 UTC
7. * SECURITY UPDATE: avoid /proc race c...

Author: Kees Cook
Revision Date: 2011-04-19 13:06:21 UTC

* SECURITY UPDATE: avoid /proc race conditions when checking privileges
  for pkexec.
  - 10_fix_proc_race.patch
  - CVE-2011-1485

lp:ubuntu/karmic-updates/ia32-libs Mature 2011-04-19 21:19:57 UTC
68. * SECURITY UPDATE: Refresh packages t...

Author: Steve Beattie
Revision Date: 2011-04-12 02:08:26 UTC

* SECURITY UPDATE: Refresh packages to pull in security fixes,
  including:
  - lcms: buffer overflow, CVE-2009-0793 (LP: #700198)
  - openssl: multiple issues, including CVE-2009-3555, CVE-2009-3245,
    and CVE-2010-2939
  - libpango1.0: multiple DoS, possible code execution issues:
    CVE-2010-0421, CVE-2011-0020, CVE-2011-0064
  - libfreetype: multiple DoS, possible code execution issues:
    CVE-2010-3311, CVE-2010-3814, CVE-2010-3855, CVE-2010-1797,
    CVE-2010-2541, CVE-2010-2805, CVE-2010-2806, CVE-2010-2807,
    CVE-2010-2808, CVE-2010-2498, CVE-2010-2499, CVE-2010-2500,
    CVE-2010-2519, CVE-2010-2520, CVE-2010-2527
  - nss: many issues

lp:ubuntu/karmic-security/ia32-libs bug Mature 2011-04-19 19:51:24 UTC
68. * SECURITY UPDATE: Refresh packages t...

Author: Steve Beattie
Revision Date: 2011-04-12 02:08:26 UTC

* SECURITY UPDATE: Refresh packages to pull in security fixes,
  including:
  - lcms: buffer overflow, CVE-2009-0793 (LP: #700198)
  - openssl: multiple issues, including CVE-2009-3555, CVE-2009-3245,
    and CVE-2010-2939
  - libpango1.0: multiple DoS, possible code execution issues:
    CVE-2010-0421, CVE-2011-0020, CVE-2011-0064
  - libfreetype: multiple DoS, possible code execution issues:
    CVE-2010-3311, CVE-2010-3814, CVE-2010-3855, CVE-2010-1797,
    CVE-2010-2541, CVE-2010-2805, CVE-2010-2806, CVE-2010-2807,
    CVE-2010-2808, CVE-2010-2498, CVE-2010-2499, CVE-2010-2500,
    CVE-2010-2519, CVE-2010-2520, CVE-2010-2527
  - nss: many issues

lp:ubuntu/karmic-security/dhcp3 Mature 2011-04-19 09:25:29 UTC
55. * SECURITY UPDATE: arbitrary code exe...

Author: Marc Deslauriers
Revision Date: 2011-04-19 09:25:29 UTC

* SECURITY UPDATE: arbitrary code execution via crafted hostname
  - Patch for CVE-2011-0997 was getting reverted during the build
    because of special quilt handling in debian/rules for the ldap
    patches.
  - debian/patches/00list: move CVE-2011-0997 patch before the ldap
    patches, and add comment.
  - CVE-2011-0997

lp:ubuntu/karmic-updates/dhcp3 Mature 2011-04-19 09:25:29 UTC
55. * SECURITY UPDATE: arbitrary code exe...

Author: Marc Deslauriers
Revision Date: 2011-04-19 09:25:29 UTC

* SECURITY UPDATE: arbitrary code execution via crafted hostname
  - Patch for CVE-2011-0997 was getting reverted during the build
    because of special quilt handling in debian/rules for the ldap
    patches.
  - debian/patches/00list: move CVE-2011-0997 patch before the ldap
    patches, and add comment.
  - CVE-2011-0997

lp:ubuntu/karmic-updates/postfix Mature 2011-04-18 16:15:32 UTC
34. * SECURITY UPDATE: man-in-the-middle ...

Author: Marc Deslauriers
Revision Date: 2011-04-15 10:27:41 UTC

* SECURITY UPDATE: man-in-the-middle via plaintext command injection
  - src/smtp/smtp_proto.c, src/smtpd/smtpd.c: discard the contents of the
    stream buffer so there is no pending plaintext.
  - Origin: backported from postfix-2.6-patch09.gz
  - CVE-2011-0411

lp:ubuntu/karmic-security/krb5 Mature 2011-04-18 15:40:41 UTC
27. * SECURITY UPDATE: kadmind denial of ...

Author: Kees Cook
Revision Date: 2011-04-18 15:40:41 UTC

* SECURITY UPDATE: kadmind denial of service from freeing of uninitialized
  pointer.
  - src/kadmin/server/{network,schpw}.c: fix, thanks to upstream.
  - CVE-2011-0285
  - MITKRB5-SA-2011-004

lp:ubuntu/karmic-updates/krb5 Mature 2011-04-18 15:40:41 UTC
27. * SECURITY UPDATE: kadmind denial of ...

Author: Kees Cook
Revision Date: 2011-04-18 15:40:41 UTC

* SECURITY UPDATE: kadmind denial of service from freeing of uninitialized
  pointer.
  - src/kadmin/server/{network,schpw}.c: fix, thanks to upstream.
  - CVE-2011-0285
  - MITKRB5-SA-2011-004

lp:ubuntu/karmic-security/postfix Mature 2011-04-18 15:40:29 UTC
34. * SECURITY UPDATE: man-in-the-middle ...

Author: Marc Deslauriers
Revision Date: 2011-04-15 10:27:41 UTC

* SECURITY UPDATE: man-in-the-middle via plaintext command injection
  - src/smtp/smtp_proto.c, src/smtpd/smtpd.c: discard the contents of the
    stream buffer so there is no pending plaintext.
  - Origin: backported from postfix-2.6-patch09.gz
  - CVE-2011-0411

lp:ubuntu/karmic-updates/kdenetwork bug Mature 2011-04-15 09:13:14 UTC
105. * SECURITY UPDATE: fix directory trav...

Author: Jamie Strandboge
Revision Date: 2011-04-15 09:13:14 UTC

* SECURITY UPDATE: fix directory traversal in kget
  - debian/patches/kubuntu_06_CVE-2010-1000b.diff: more input validation due
    to incomplete fix for CVE-2010-1000
  - CVE-2011-XXXX
  - LP: #757526

lp:ubuntu/karmic-security/pcsc-lite bug Mature 2011-04-14 09:39:10 UTC
22. * SECURITY UPDATE: arbitrary code exe...

Author: Marc Deslauriers
Revision Date: 2011-04-14 09:39:10 UTC

* SECURITY UPDATE: arbitrary code execution via long attribute value
  - src/atrhandler.c: verify against maximum attribute size.
  - http://lists.alioth.debian.org/pipermail/pcsclite-cvs-commit/2010-November/004923.html
  - CVE-2010-4531

lp:ubuntu/karmic-updates/pcsc-lite Mature 2011-04-14 09:39:10 UTC
22. * SECURITY UPDATE: arbitrary code exe...

Author: Marc Deslauriers
Revision Date: 2011-04-14 09:39:10 UTC

* SECURITY UPDATE: arbitrary code execution via long attribute value
  - src/atrhandler.c: verify against maximum attribute size.
  - http://lists.alioth.debian.org/pipermail/pcsclite-cvs-commit/2010-November/004923.html
  - CVE-2010-4531

lp:~bzr/ubuntu/karmic/dulwich/bzr-ppa Development 2011-04-13 01:50:24 UTC
425. Merge 0.7.1-1

Author: Max Bowsher
Revision Date: 2011-04-13 01:50:24 UTC

Merge 0.7.1-1

lp:~bzr/ubuntu/karmic/bzr-git/bzr-ppa Development 2011-04-13 00:03:54 UTC
77. Merge 0.6.0-1

Author: Max Bowsher
Revision Date: 2011-04-13 00:03:54 UTC

Merge 0.6.0-1

lp:ubuntu/karmic-updates/ffmpeg-extra Mature 2011-04-11 14:03:18 UTC
6. * SECURITY UPDATE: arbitrary code exe...

Author: Marc Deslauriers
Revision Date: 2011-04-05 19:09:22 UTC

* SECURITY UPDATE: arbitrary code execution via crafted flic file
  - debian/patches/CVE-2010-3429.patch: add checks to
    libavcodec/flicvideo.c.
  - CVE-2010-3429
* SECURITY UPDATE: arbitrary code execution via crafted wmv file
  (LP: #690169)
  - debian/patches/CVE-2010-3908.patch: properly calculate size in
    libavcodec/utils.c.
  - CVE-2010-3908
* SECURITY UPDATE: denial of service via crafted .ogg file
  - debian/patches/CVE-2010-4704.patch: validate codebook in
    libavcodec/vorbis_dec.c.
  - CVE-2010-4704
* SECURITY UPDATE: denial of service and possible code execution via
  crafted WebM file
  - debian/patches/CVE-2011-0480.patch: check rangebits in
    libavcodec/vorbis_dec.c.
  - CVE-2011-0480
* SECURITY UPDATE: arbitrary code execution via crafted RealMedia file
  (LP: #690169)
  - debian/patches/CVE-2011-0722.patch: set dimensions in
    libavcodec/rv34.c.
  - CVE-2011-0722
* SECURITY UPDATE: denial of service and possible code execution via
  crafted VC1 file (LP: #690169)
  - debian/patches/CVE-2011-0723.patch: fix invalid reads in
    libavcodec/vc1dec.c.
  - CVE-2011-0723
* SECURITY UPDATE: Fix a multitude of security issues
  - debian/patches/CVE-2009-46XX/security-issue03.patch: check stream
    existence before assignment
  - debian/patches/CVE-2009-46XX/security-issue04.patch: check submap
    indexes
  - debian/patches/CVE-2009-46XX/security-issue05.patch: check classbook
    value
  - debian/patches/CVE-2009-46XX/security-issue06.patch: add checks for
    per-packet mode indexes and per-header mode mapping indexes
  - debian/patches/CVE-2009-46XX/security-issue07.patch: check masterbook
    index and subclass book index.
  - debian/patches/CVE-2009-46XX/security-issue08.patch: check
    res_setup->books
  - debian/patches/CVE-2009-46XX/security-issue09.patch: check
    begin/end/partition_size
  - debian/patches/CVE-2009-46XX/security-issue10.patch: check validity
    of channels & samplerate
  - debian/patches/CVE-2009-46XX/security-issue11.patch: fix book_idx
    check
  - debian/patches/CVE-2009-46XX/security-issue12.patch: sanity checks
    for magnitude and angle
  - debian/patches/CVE-2009-46XX/security-issue13.patch: fix = -> == typo
  - debian/patches/CVE-2009-46XX/security-issue14.patch: check dimensions
    against 0 too
  - debian/patches/CVE-2009-46XX/security-issue15.patch: fix
    init_get_bits() buffer size
  - debian/patches/CVE-2009-46XX/security-issue17.patch: make sure that
    all memory allocations succeed
  - debian/patches/CVE-2009-46XX/security-issue18.patch: fix possible
    buffer over-read in vorbis_comment
  - debian/patches/CVE-2009-46XX/security-issue19.patch: set data_size to
    0 to avoid having it uninitialized
  - debian/patches/CVE-2009-46XX/security-issue20.patch: disable parsing
    for ogg streams where no ogg header was found
  - CVE-2009-4632
  - CVE-2009-4633
  - CVE-2009-4634
  - CVE-2009-4635
  - CVE-2009-4637
  - CVE-2009-4639
  - CVE-2009-4640

lp:ubuntu/karmic-security/ffmpeg-extra bug Mature 2011-04-11 13:14:13 UTC
6. * SECURITY UPDATE: arbitrary code exe...

Author: Marc Deslauriers
Revision Date: 2011-04-05 19:09:22 UTC

* SECURITY UPDATE: arbitrary code execution via crafted flic file
  - debian/patches/CVE-2010-3429.patch: add checks to
    libavcodec/flicvideo.c.
  - CVE-2010-3429
* SECURITY UPDATE: arbitrary code execution via crafted wmv file
  (LP: #690169)
  - debian/patches/CVE-2010-3908.patch: properly calculate size in
    libavcodec/utils.c.
  - CVE-2010-3908
* SECURITY UPDATE: denial of service via crafted .ogg file
  - debian/patches/CVE-2010-4704.patch: validate codebook in
    libavcodec/vorbis_dec.c.
  - CVE-2010-4704
* SECURITY UPDATE: denial of service and possible code execution via
  crafted WebM file
  - debian/patches/CVE-2011-0480.patch: check rangebits in
    libavcodec/vorbis_dec.c.
  - CVE-2011-0480
* SECURITY UPDATE: arbitrary code execution via crafted RealMedia file
  (LP: #690169)
  - debian/patches/CVE-2011-0722.patch: set dimensions in
    libavcodec/rv34.c.
  - CVE-2011-0722
* SECURITY UPDATE: denial of service and possible code execution via
  crafted VC1 file (LP: #690169)
  - debian/patches/CVE-2011-0723.patch: fix invalid reads in
    libavcodec/vc1dec.c.
  - CVE-2011-0723
* SECURITY UPDATE: Fix a multitude of security issues
  - debian/patches/CVE-2009-46XX/security-issue03.patch: check stream
    existence before assignment
  - debian/patches/CVE-2009-46XX/security-issue04.patch: check submap
    indexes
  - debian/patches/CVE-2009-46XX/security-issue05.patch: check classbook
    value
  - debian/patches/CVE-2009-46XX/security-issue06.patch: add checks for
    per-packet mode indexes and per-header mode mapping indexes
  - debian/patches/CVE-2009-46XX/security-issue07.patch: check masterbook
    index and subclass book index.
  - debian/patches/CVE-2009-46XX/security-issue08.patch: check
    res_setup->books
  - debian/patches/CVE-2009-46XX/security-issue09.patch: check
    begin/end/partition_size
  - debian/patches/CVE-2009-46XX/security-issue10.patch: check validity
    of channels & samplerate
  - debian/patches/CVE-2009-46XX/security-issue11.patch: fix book_idx
    check
  - debian/patches/CVE-2009-46XX/security-issue12.patch: sanity checks
    for magnitude and angle
  - debian/patches/CVE-2009-46XX/security-issue13.patch: fix = -> == typo
  - debian/patches/CVE-2009-46XX/security-issue14.patch: check dimensions
    against 0 too
  - debian/patches/CVE-2009-46XX/security-issue15.patch: fix
    init_get_bits() buffer size
  - debian/patches/CVE-2009-46XX/security-issue17.patch: make sure that
    all memory allocations succeed
  - debian/patches/CVE-2009-46XX/security-issue18.patch: fix possible
    buffer over-read in vorbis_comment
  - debian/patches/CVE-2009-46XX/security-issue19.patch: set data_size to
    0 to avoid having it uninitialized
  - debian/patches/CVE-2009-46XX/security-issue20.patch: disable parsing
    for ogg streams where no ogg header was found
  - CVE-2009-4632
  - CVE-2009-4633
  - CVE-2009-4634
  - CVE-2009-4635
  - CVE-2009-4637
  - CVE-2009-4639
  - CVE-2009-4640

lp:ubuntu/karmic-updates/kde4libs Mature 2011-04-11 10:19:40 UTC
158. * SECURITY UPDATE: fix XSS vulnerabil...

Author: Jamie Strandboge
Revision Date: 2011-04-11 10:19:40 UTC

* SECURITY UPDATE: fix XSS vulnerability in Konqueror's error pages
  - debian/patches/security_03_CVE-2011-1168.diff: upstream patch
  - CVE-2011-1168
  - LP: #743669
* SECURITY UPDATE: fix certificate verification for certificates issued
  against an IP address
  - debian/patches/security_04_CVE-2011-1094.diff: based on upstream patch
  - CVE-2011-1094

lp:ubuntu/karmic-updates/openjdk-6 Mature 2011-04-08 03:15:36 UTC
101. * IcedTea6 1.9.7 release. - SECURIT...

Author: Steve Beattie
Revision Date: 2011-02-23 09:41:17 UTC

* IcedTea6 1.9.7 release.
  - SECURITY UPDATE:
    + S4421494, CVE-2010-4476: infinite loop while parsing double literal.
    + S6878713, CVE-2010-4469: Hotspot backward jsr heap corruption
    + S6907662, CVE-2010-4465: Swing timer-based security manager bypass
    + S6994263, CVE-2010-4472: Untrusted code allowed to replace
      DSIG/C14N implementation
    + S6981922, CVE-2010-4448: DNS cache poisoning by untrusted applets
    + S6983554, CVE-2010-4450: Launcher incorrect processing of
      empty library path entries
    + S6985453, CVE-2010-4471: Java2D font-related system property leak
    + S6927050, CVE-2010-4470: JAXP untrusted component state manipulation
    + RH677332, CVE-2011-0706: Multiple signers privilege escalation
  - Bug fixes
    + RH676659: Pass -export-dynamic flag to linker using -Wl,
      as option in gcc 4.6+ is broken
    + G344659: Fix issue when building on SPARC
    + Fix latent JAXP bug caused by missing import
* dropped patch due to different fix applied upstream:
  - debian/patches/hotspot-sparc-fix.diff
* debian/patches/hotspot-fix_added_define.patch: added to fix
  redefinition added by patch for S6878713
* Makefile.{am,in}: don't use stage1 build for zerovm, bootstrap
  zerovm instead to compensate for
  http://icedtea.classpath.org/bugzilla/show_bug.cgi?id=631

lp:ubuntu/karmic-security/openjdk-6 bug Mature 2011-04-08 03:15:36 UTC
101. * IcedTea6 1.9.7 release. - SECURIT...

Author: Steve Beattie
Revision Date: 2011-02-23 09:41:17 UTC

* IcedTea6 1.9.7 release.
  - SECURITY UPDATE:
    + S4421494, CVE-2010-4476: infinite loop while parsing double literal.
    + S6878713, CVE-2010-4469: Hotspot backward jsr heap corruption
    + S6907662, CVE-2010-4465: Swing timer-based security manager bypass
    + S6994263, CVE-2010-4472: Untrusted code allowed to replace
      DSIG/C14N implementation
    + S6981922, CVE-2010-4448: DNS cache poisoning by untrusted applets
    + S6983554, CVE-2010-4450: Launcher incorrect processing of
      empty library path entries
    + S6985453, CVE-2010-4471: Java2D font-related system property leak
    + S6927050, CVE-2010-4470: JAXP untrusted component state manipulation
    + RH677332, CVE-2011-0706: Multiple signers privilege escalation
  - Bug fixes
    + RH676659: Pass -export-dynamic flag to linker using -Wl,
      as option in gcc 4.6+ is broken
    + G344659: Fix issue when building on SPARC
    + Fix latent JAXP bug caused by missing import
* dropped patch due to different fix applied upstream:
  - debian/patches/hotspot-sparc-fix.diff
* debian/patches/hotspot-fix_added_define.patch: added to fix
  redefinition added by patch for S6878713
* Makefile.{am,in}: don't use stage1 build for zerovm, bootstrap
  zerovm instead to compensate for
  http://icedtea.classpath.org/bugzilla/show_bug.cgi?id=631

lp:ubuntu/karmic/openjdk-6 Mature 2011-04-08 03:14:44 UTC
92. [Matthias Klose] * On armel and power...

Author: Matthias Klose
Revision Date: 2009-10-08 12:41:46 UTC

[Matthias Klose]
* On armel and powerpc, build an additional VM using shark in the
  openjdk-6-jre-zero package (java -shark <args>). Requires llvm-2.6.
* Hide the desktop menu entry for WebStart. LP: #222180.
* Don't provide java-virtual-machine anymore.

[Edward Nevill]
* Avoid stack overflows in the arm interpreter.

lp:ubuntu/karmic-backports/clamav bug Mature 2011-04-08 03:07:34 UTC
16. Automated backport upload; no source ...

Author: Scott Kitterman
Revision Date: 2010-12-07 17:28:57 UTC

Automated backport upload; no source changes.

lp:ubuntu/karmic-updates/clamav bug Mature 2011-04-08 03:05:40 UTC
15. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-02-23 14:50:51 UTC

* SECURITY UPDATE: denial of service via double free in vba processing
  - libclamav/vba_extract.c: set buf to NULL when it gets freed.
  - http://git.clamav.net/gitweb?p=clamav-devel.git;a=commit;h=d21fb8d975f8c9688894a8cef4d50d977022e09f
  - CVE-2011-1003

lp:ubuntu/karmic-proposed/clamav Mature 2011-04-08 03:05:11 UTC
11. Update Karmic per Clamav microversion...

Author: Scott Kitterman
Revision Date: 2009-11-03 22:36:28 UTC

Update Karmic per Clamav microversion release exception (LP: #473707)

lp:ubuntu/karmic-security/clamav Mature 2011-04-08 03:05:02 UTC
76. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-02-23 14:50:51 UTC

* SECURITY UPDATE: denial of service via double free in vba processing
  - libclamav/vba_extract.c: set buf to NULL when it gets freed.
  - http://git.clamav.net/gitweb?p=clamav-devel.git;a=commit;h=d21fb8d975f8c9688894a8cef4d50d977022e09f
  - CVE-2011-1003

lp:ubuntu/karmic/clamav Mature 2011-04-08 03:04:56 UTC
72. [ Scott Kitterman ] * Apparmor profil...

Author: Scott Kitterman
Revision Date: 2009-10-24 12:34:00 UTC

[ Scott Kitterman ]
* Apparmor profile fixes (reviewed by Ubuntu Security):
  - Allow clamav-daemon access to the home directory of the user running it
    and update README.Debian to explain the need to adjust the apparmor
    profile for it to scan elsewhere (LP: #450250)
  - Add capability dac_override to clamav-daemon profile to allow
    AllowSupplementaryGroups to work (LP: #433764)
* Cherry pick packaging bug fixes from pkg-clamav git

[ Stephen Gran ]
* Make all references to the milter socket reference the same path
  - b71e1a26bafb0df532df2673fcd1cd53bc6952bd
* Read default file once (LP: #430421)
  - 86b421dac00e49abb8e5907b9e952e33e83b7aec

[ Michael Meskes ]
* Fixed LSB header information. (Closes: #546450) - thanks to Petter
  Reinholdtsen <pere@hungry.com>
  - 3f59d827d1e54ce1efcb7e050c57866ccdfaedae

[ Michael Tautschnig ]
* Remove all remaining files during purge
  - 4132426753b674dd9c622f1c0501703ed987a239

lp:ubuntu/karmic-proposed/compiz bug Mature 2011-04-08 02:52:50 UTC
161. * debian/patches/030_from_git_crash_f...

Author: Michael Vogt
Revision Date: 2009-12-03 09:14:04 UTC

* debian/patches/030_from_git_crash_fix_multiscreen.patch:
  - merge commit 24dea72a395071b533dcf66b2eef37b20522cbba to fix
    crash with wobbly windows in a multi screen setup (LP: #491411)

lp:ubuntu/karmic-updates/compiz Mature 2011-04-08 02:51:16 UTC
161. * debian/patches/030_from_git_crash_f...

Author: Michael Vogt
Revision Date: 2009-12-03 09:14:04 UTC

* debian/patches/030_from_git_crash_fix_multiscreen.patch:
  - merge commit 24dea72a395071b533dcf66b2eef37b20522cbba to fix
    crash with wobbly windows in a multi screen setup (LP: #491411)

lp:ubuntu/karmic/compiz Mature 2011-04-08 02:51:01 UTC
160. * debian/patches/020_fix_focus.patch:...

Author: Michael Vogt
Revision Date: 2009-10-20 12:28:25 UTC

* debian/patches/020_fix_focus.patch:
  - give back the focus to the previous focused window (LP: #455900)

lp:ubuntu/karmic-security/gimp Mature 2011-04-07 13:24:12 UTC
50. * SECURITY UPDATE: denial of service ...

Author: Marc Deslauriers
Revision Date: 2011-04-07 13:24:12 UTC

* SECURITY UPDATE: denial of service and possible code execution via
  malformed plugin configuration files
  - debian/patches/06_security_CVE-2010-454x.patch: fix format strings in
    plug-ins/{common/sphere-designer,gfig/gfig-style,
    lighting/lighting-ui}.c.
  - CVE-2010-4540
  - CVE-2010-4541
  - CVE-2010-4542
* SECURITY UPDATE: denial of service and possible code execution via
  malformed PSP image file
  - debian/patches/07_security_CVE-2010-4543.patch: fix buffer overflow
    in plug-ins/common/file-psp.c.
  - CVE-2010-4543

1100 of 19312 results