Accepted icu 4.8.1.1-12+deb7u2 (source all i386) into proposed-updates->stable-new, proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sun, 15 Mar 2015 01:30:40 +0000
Source: icu
Binary: libicu48 libicu48-dbg libicu-dev icu-doc
Architecture: source all i386
Version: 4.8.1.1-12+deb7u2
Distribution: stable-security
Urgency: high
Maintainer: Jay Berkenbilt <qjb@debian.org>
Changed-By: Michael Gilbert <mgilbert@debian.org>
Description:
icu-doc - API documentation for ICU classes and functions
libicu-dev - Development files for International Components for Unicode
libicu48 - International Components for Unicode
libicu48-dbg - International Components for Unicode
Changes:
icu (4.8.1.1-12+deb7u2) stable-security; urgency=high
.
* Non-maintainer upload by the Security Team.
- Thanks to Marc Deslauriers for many of the backports.
* Backport of icu's new layout engine.
- Fixes CVE-2013-1569, CVE-2013-2383, CVE-2013-2384, and CVE-2013-2419.
* CVE-2014-6585: out-of-bounds read.
* CVE-2014-6591: more out-of-bounds reads.
* CVE-2014-7923: memory corruption in regular expression comparison.
* CVE-2014-7926: memory corruption in regular expression comparison.
* CVE-2014-7940: uninitialized memory in i18n/icol.cpp.
* CVE-2014-9654: more regular expression handling issues.
Checksums-Sha1:
864c7784ce34a7f169367862831d990dd176e089 2605 icu_4.8.1.1-12+deb7u2.dsc
5e6792e2a456b66fc788c7972f546719a1c6a7db 195940 icu_4.8.1.1-12+deb7u2.debian.tar.gz
b69ce9793756372785f0b5ef12dfe1d6c02d534b 1876320 icu-doc_4.8.1.1-12+deb7u2_all.deb
e0db3800d0246cce1a2dc0b8d6a200341dcc8d4f 4814268 libicu48_4.8.1.1-12+deb7u2_i386.deb
b9fb12648e383c1ee57f37727b6e9f69e740158d 4684216 libicu48-dbg_4.8.1.1-12+deb7u2_i386.deb
c380d8f6d4e65940ba8074d95c1c01d9ec5b32c1 5809508 libicu-dev_4.8.1.1-12+deb7u2_i386.deb
Checksums-Sha256:
4a2cab532d5afc8062f9ee6a8bd55286c3fc1cc550c63a2570b0aad8bf611d7b 2605 icu_4.8.1.1-12+deb7u2.dsc
8629b1f3a3333923f9cfb30aba2615152633d7b4e6a9b24723847175a33a9ac2 195940 icu_4.8.1.1-12+deb7u2.debian.tar.gz
2c92ea9f66831dc10a16c3cd331926d2df9a24385de05ed485046b1637c52f04 1876320 icu-doc_4.8.1.1-12+deb7u2_all.deb
ded46d8cc4dc091af0a2f955d53e095411af36fdd12d091bee67ccd21fc50307 4814268 libicu48_4.8.1.1-12+deb7u2_i386.deb
f682b877df405b91fec1695299be85e3e977eaf7c51eca57f737569a8678df6e 4684216 libicu48-dbg_4.8.1.1-12+deb7u2_i386.deb
c14a06644b77ccad16a2ee6ef2549b3bee25de7e36cd14eae7cafebd315f4678 5809508 libicu-dev_4.8.1.1-12+deb7u2_i386.deb
Files:
1bbe7bb4b533afa66ee565aee6fda5cf 2605 libs optional icu_4.8.1.1-12+deb7u2.dsc
4a825ad16f8b2cf9ca3dd7b27d64d587 195940 libs optional icu_4.8.1.1-12+deb7u2.debian.tar.gz
0f88ea15ccb243d65230e42c11b158c2 1876320 doc optional icu-doc_4.8.1.1-12+deb7u2_all.deb
37bf3465adacfab51aff829964f9cbd8 4814268 libs optional libicu48_4.8.1.1-12+deb7u2_i386.deb
c17f1b15601d226e1e87d1e0179de321 4684216 debug extra libicu48-dbg_4.8.1.1-12+deb7u2_i386.deb
3330131aa242bc5c93db93b9fe01933f 5809508 libdevel optional libicu-dev_4.8.1.1-12+deb7u2_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=
=8Axj
-----END PGP SIGNATURE-----
Reply to: