ubuntu/+source/ghostscript:applied/ubuntu/bionic-security

Last commit made on 2019-11-14
Get this branch:
git clone -b applied/ubuntu/bionic-security https://git.launchpad.net/ubuntu/+source/ghostscript
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/bionic-security
Repository:
lp:ubuntu/+source/ghostscript

Recent commits

3f505ef... by Marc Deslauriers on 2019-11-06

Import patches-applied version 9.26~dfsg+0-0ubuntu0.18.04.12 to applied/ubuntu/bionic-security

Imported using git-ubuntu import.

Changelog parent: 28cf669981824363983d30b0d9742a5c467c67a7
Unapplied parent: 16083765032cf0f4548d83e78ebf678ed9b91444

New changelog entries:
  * SECURITY UPDATE: '-dSAFER' restrictions bypass by .forceput when
    loading fonts
    - debian/patches/CVE-2019-14869.patch: remove use of .forceput in
      Resource/Init/gs_ttf.ps.
    - CVE-2019-14869

1608376... by Marc Deslauriers on 2019-11-06

[PATCH] Bug 701841: remove .forceput from /.charkeys

Gbp-Pq: CVE-2019-14869.patch.

a62ae4b... by Marc Deslauriers on 2019-11-06

[PATCH] PDF interpreter - review .forceput security

Gbp-Pq: CVE-2019-14817.patch.

258d79a... by Marc Deslauriers on 2019-11-06

[PATCH] make .forceput inaccessible

Gbp-Pq: CVE-2019-14811-CVE-2019-14812-CVE-2019-14813.patch.

6662744... by Marc Deslauriers on 2019-11-06

[PATCH] Bug 701394: protect use of .forceput with executeonly

Gbp-Pq: CVE-2019-10216.patch.

fbf308a... by Marc Deslauriers on 2019-11-06

[PATCH] Fix lib/pdf2dsc.ps to use documented Ghostscript pdf

Gbp-Pq: CVE-2019-3839-2.patch.

ac97971... by Marc Deslauriers on 2019-11-06

[PATCH] Hide pdfdict and GS_PDF_ProcSet (internal stuff for the PDF

Gbp-Pq: CVE-2019-3839-1.patch.

314d6ab... by Marc Deslauriers on 2019-11-06

[PATCH] Bug 700576(redux): an extra transient proc needs

Gbp-Pq: CVE-2019-3838-2.patch.

79e6f1e... by Marc Deslauriers on 2019-11-06

[PATCH] Bug 700576: Make a transient proc executeonly (in

Gbp-Pq: CVE-2019-3838-1.patch.

26e2f47... by Marc Deslauriers on 2019-11-06

[PATCH] Bug 700585: Obliterate "superexec". We don't need it, nor do

Gbp-Pq: CVE-2019-3835-2.patch.