lp:ubuntu/gutsy-security/wesnoth

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/gutsy-security/wesnoth
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

26. By Jamie Strandboge

No change rebuild to fix missing translations (LP: #347351)

25. By Rhonda D'Vine

* Upload to fix a severe problem:
  - Compile with --disable-python because the python AI support allowed to
    break out of sandbox and allowed execution of abitrary code
    (CVE-2009-0367, Upstream Bug #13048). Remove python-dev from
    Build-Dependencies.

24. By Stephan RĂ¼gamer

* SECURITY UPDATE:
  + CVE-2007-6201: Unspecified vulnerability in Wesnoth before 1.2.8 allows
    attackers to cause a denial of service (hang) via a "faulty add-on" and
    possibly execute other commands via unknown vectors related to the turn_cmd
    option.
* debian/patches/CVE-2007-6201.patch:
  - Applied patch by upstream
  - Link 1: http://svn.gna.org/viewcvs/wesnoth/branches/1.2/src/playsingle_controller.cpp?r2=21907&rev=21907&r1=16732&dir_pagestart=100
  - Link 2: http://svn.gna.org/viewcvs/wesnoth/branches/1.2/src/preferences.cpp?r2=21907&rev=21907&r1=18008&dir_pagestart=100
* References:
  CVE-2007-6201
  http://sourceforge.net/project/shownotes.php?release_id=557098

23. By Emilio Pozuelo Monfort

* SECURITY UPDATE: Do not allow '../' in file paths. It allowed others
  to view the content of files in the remote computers.
* debian/patches/CVE-2007-5742: added, taken from upstream SVN r21904.
* References:
  CVE-2007-5742.
  LP: #172783.

22. By Emilio Pozuelo Monfort

* SECURITY UPDATE: Fix insecure truncate of a multibyte chat message that
  can lead to invalid utf-8 and throw an uncaught exception. Both wesnoth
  client and server are affected.
* debian/patches/CVE-2007-3917: added, taken from Debian.
* References:
  CVE-2007-3917.
  LP: #158414.

21. By Emilio Pozuelo Monfort

* debian/rules:
  - Build with --enable-dummy-locales.
* debian/wesnoth-data.install:
  - Install the locales (LP: #113361).

20. By Luke Yelavich

* Merge from debian unstable, remaining changes:
  - Changed maintainer to MOTU
  - Created wesnoth-all metapackage.
  - Added libsdl1.2-dev to Build-deps.

19. By Luke Yelavich

* Merge from debian unstable, remaining changes:
  - Changed maintainer to MOTU
  - Created wesnoth-all metapackage.
  - Added libsdl1.2-dev to Build-deps.

18. By Luke Yelavich

* Merge from debian unstable, remaining changes:
* debian/control
  - removed wesnoth-server from the wesnoth-all deps.

17. By Emilio Pozuelo Monfort

* New upstream release
* debian/control
  - removed wesnoth-server from the wesnoth-all deps (LP: #107541)

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/lucid/wesnoth
This branch contains Public information 
Everyone can see this information.

Subscribers