Merge lp:~jtaylor/ubuntu/lucid/dropbear/2012-0920 into lp:ubuntu/lucid/dropbear
Proposed by
Julian Taylor
on 2012-04-24
| Status: | Rejected | ||||
|---|---|---|---|---|---|
| Rejected by: | Martin Pitt on 2012-04-27 | ||||
| Proposed branch: | lp:~jtaylor/ubuntu/lucid/dropbear/2012-0920 | ||||
| Merge into: | lp:ubuntu/lucid/dropbear | ||||
| Diff against target: |
71 lines (+47/-1) 3 files modified
debian/changelog (+10/-0) debian/control (+2/-1) debian/diff/0003-Fix-use-after-free-bug-CVE-2012-0920.diff (+35/-0) |
||||
| To merge this branch: | bzr merge lp:~jtaylor/ubuntu/lucid/dropbear/2012-0920 | ||||
| Related bugs: |
|
| Reviewer | Review Type | Date Requested | Status |
|---|---|---|---|
| Jamie Strandboge | 2012-04-24 | Approve on 2012-04-26 | |
|
Review via email:
|
|||
Description of the Change
same patch from squeeze applies
To post a comment you must log in.
Unmerged revisions
- 14. By Julian Taylor on 2012-04-24
-
* SECURITY UPDATE: remote execution via use after free (LP: #976360)
- debian/diff/0003- Fix-use- after-free- bug-CVE- 2012-0920. diff
backported from https://secure. ucc.asn. au/hg/dropbear/ rev/818108bf774 9
Thanks to Gerrit Pape
- CVE-2012-0920


Based on https:/ /wiki.ubuntu. com/SecurityTea m/UpdatePrepara tion#Packaging, the lucid update should use 0.52-4ubuntu0. 10.04.1 as the version.