ubuntu/+source/ghostscript:applied/ubuntu/trusty-security

Last commit made on 2019-03-21
Get this branch:
git clone -b applied/ubuntu/trusty-security https://git.launchpad.net/ubuntu/+source/ghostscript
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/trusty-security
Repository:
lp:ubuntu/+source/ghostscript

Recent commits

4a92628... by Marc Deslauriers on 2019-03-19

Import patches-applied version 9.26~dfsg+0-0ubuntu0.14.04.8 to applied/ubuntu/trusty-security

Imported using git-ubuntu import.

Changelog parent: df2b9a0a5dc8c290aa3479cb4fdde0ffac3063f8
Unapplied parent: 587b866de23f0f782533294f5da00aaaeebf35e0

New changelog entries:
  * SECURITY UPDATE: superexec operator is available
    - debian/patches/CVE-2019-3835-pre1.patch: Have gs_cet.ps run from
      gs_init.ps in Resource/Init/gs_cet.ps, Resource/Init/gs_init.ps.
    - debian/patches/CVE-2019-3835-pre2.patch: Undef /odef in
      Resource/Init/gs_cet.ps, Resource/Init/gs_init.ps.
    - debian/patches/CVE-2019-3835-1.patch: restrict superexec and remove
      it in Resource/Init/gs_cet.ps, Resource/Init/gs_dps1.ps,
      Resource/Init/gs_fonts.ps, Resource/Init/gs_init.ps,
      Resource/Init/gs_ttf.ps, Resource/Init/gs_type1.ps.
    - debian/patches/CVE-2019-3835-2.patch: obliterate superexec in
      Resource/Init/gs_init.ps, psi/icontext.c, psi/icstate.h,
      psi/zcontrol.c, psi/zdict.c, psi/zgeneric.c.
    - CVE-2019-3835
  * SECURITY UPDATE: forceput in DefineResource is still accessible
    - debian/patches/CVE-2019-3838-1.patch: make a transient proc
      executeonly in Resource/Init/gs_res.ps.
    - debian/patches/CVE-2019-3838-2.patch: an extra transient proc needs
      executeonly in Resource/Init/gs_res.ps.
    - CVE-2019-3838

587b866... by Marc Deslauriers on 2019-03-19

[PATCH] Bug 700576(redux): an extra transient proc needs

Gbp-Pq: CVE-2019-3838-2.patch.

1e93d43... by Marc Deslauriers on 2019-03-19

[PATCH] Bug 700576: Make a transient proc executeonly (in

Gbp-Pq: CVE-2019-3838-1.patch.

8743c6c... by Marc Deslauriers on 2019-03-19

[PATCH] Bug 700585: Obliterate "superexec". We don't need it, nor do

Gbp-Pq: CVE-2019-3835-2.patch.

b16131d... by Marc Deslauriers on 2019-03-19

[PATCH] Fix bug 700585: Restrict superexec and remove it from

Gbp-Pq: CVE-2019-3835-1.patch.

3e7b434... by Marc Deslauriers on 2019-03-19

[PATCH] Undef /odef in gs_init.ps

Gbp-Pq: CVE-2019-3835-pre2.patch.

cbd40a0... by Marc Deslauriers on 2019-03-19

[PATCH] Have gs_cet.ps run from gs_init.ps

Gbp-Pq: CVE-2019-3835-pre1.patch.

37b747e... by Marc Deslauriers on 2019-03-19

[PATCH] Bug 700584 Cups device

Gbp-Pq: lp1815339-2.patch.

0116a7a... by Marc Deslauriers on 2019-03-19

[PATCH] Bug 700584: cups device

Gbp-Pq: lp1815339.patch.

3e09d5a... by Marc Deslauriers on 2019-03-19

[PATCH] Bug700317: Address .force* operators exposure

Gbp-Pq: CVE-2019-6116.patch.