~racb/ubuntu/+source/dbus:lpusip/ubuntu/hardy-updates

Last commit made on 2012-10-04
Get this branch:
git clone -b lpusip/ubuntu/hardy-updates https://git.launchpad.net/~racb/ubuntu/+source/dbus
Only Robie Basak can upload to this branch. If you are Robie Basak please log in for upload directions.

Branch merges

Branch information

Name:
lpusip/ubuntu/hardy-updates
Repository:
lp:~racb/ubuntu/+source/dbus

Recent commits

1c94f53... by Marc Deslauriers

Import patches-unapplied version 1.1.20-1ubuntu3.9 to ubuntu/hardy-updates

Imported using usd-importer.

Publish parent: 29f7bb883e2ac3c0244a60d4455e9b737d97c3e8
Changelog parent: 0bace1514fe330886bac26c7cf1f9398c86e5c34

0bace15... by Marc Deslauriers

Import patches-unapplied version 1.1.20-1ubuntu3.9 to ubuntu/hardy-security

Imported using usd-importer.

Publish parent: 662d7558e5ed3c3dcbae130a5931a0fe662f4ef9

New changelog entries:
  * REGRESSION FIX: some applications launched with the activation helper
    may need DBUS_STARTER_ADDRESS. (LP: #1058343)
    - debian/patches/87-CVE-2012-3524-regression-fix.patch: hardcode the
      starter address to the default system bus address.

29f7bb8... by Marc Deslauriers

Import patches-unapplied version 1.1.20-1ubuntu3.7 to ubuntu/hardy-updates

Imported using usd-importer.

Publish parent: 9a2b49175275740d757cdf3fcc645e080d0a4223
Changelog parent: 662d7558e5ed3c3dcbae130a5931a0fe662f4ef9

662d755... by Marc Deslauriers

Import patches-unapplied version 1.1.20-1ubuntu3.7 to ubuntu/hardy-security

Imported using usd-importer.

Publish parent: 30684be186bac4bc9be6af9903acbd4cff26acc3

New changelog entries:
  * SECURITY UPDATE: privilege escalation via unsanitized environment
    - debian/patches/86-CVE-2012-3524.patch: Don't access environment
      variables or run dbus-launch when setuid in configure.in,
      dbus/dbus-keyring.c, dbus/dbus-sysdeps*
    - CVE-2012-3524

9a2b491... by Jamie Strandboge

Import patches-unapplied version 1.1.20-1ubuntu3.5 to ubuntu/hardy-updates

Imported using usd-importer.

Publish parent: c04f75ea96f193f16252df781765afd93635716a
Changelog parent: 30684be186bac4bc9be6af9903acbd4cff26acc3

30684be... by Jamie Strandboge

Import patches-unapplied version 1.1.20-1ubuntu3.5 to ubuntu/hardy-security

Imported using usd-importer.

Publish parent: 7e3360bcc0d4c88c7c075c969ae2426b8197313a

New changelog entries:
  * SECURITY UPDATE: denial of service via messages with non-native byte order
    - debian/patches/85-CVE-2011-2200.patch: update dbus-marshal-header.c
      to verify header->data byte order and header->byte_order match in
      _dbus_header_byteswap()
    - CVE-2011-2200

c04f75e... by Jamie Strandboge

Import patches-unapplied version 1.1.20-1ubuntu3.4 to ubuntu/hardy-updates

Imported using usd-importer.

Publish parent: 09318c9730cbf8330753e2d4b019b73cda04e79e
Changelog parent: 7e3360bcc0d4c88c7c075c969ae2426b8197313a

7e3360b... by Jamie Strandboge

Import patches-unapplied version 1.1.20-1ubuntu3.4 to ubuntu/hardy-security

Imported using usd-importer.

Publish parent: 8689eccff85932581b2532c0bbf5aae3edf00be4

New changelog entries:
  * SECURITY UPDATE: fix DoS with too deeply nested messages
    - debian/patches/84-CVE-2010-4352.patch: Limit nesting to 64 for dynamic
      message variants. Backported from upstream.
    - CVE-2010-4352
    - LP: #688992
  * debian/control: Build-Depends on libexpat1-dev instead of libexpat-dev

09318c9... by Marc Deslauriers

Import patches-unapplied version 1.1.20-1ubuntu3.3 to ubuntu/hardy-updates

Imported using usd-importer.

Publish parent: d37729230f00ae8dcb035aac14233d7bc0eba4eb
Changelog parent: 8689eccff85932581b2532c0bbf5aae3edf00be4

8689ecc... by Marc Deslauriers

Import patches-unapplied version 1.1.20-1ubuntu3.3 to ubuntu/hardy-security

Imported using usd-importer.

Publish parent: d28a54d9ab5d5470b7fe6a8aeaf1abf7ac74ef4d
Changelog parent: 4a53bd56cd952b690d3b9222d504c60a567e7822

New changelog entries:
  * SECURITY UPDATE: Signature spoofing via incorrect logic
    - debian/patches/83-security-CVE-2009-1189.patch: fix logic in
      dbus/dbus-marshal-validate.c and fix test in
      dbus/dbus-marshal-validate-util.c.
    - CVE-2009-1189