[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#688512: unblock or tpu: glib2.0/2.33.12+really2.32.4-1



Control: tag -1 pending d-i

On 2012-10-06 02:44, Josselin Mouette wrote:
> I have just uploaded version 2.33.12+really2.32.4-2 because of a
> security vulnerability:
> 
> glib2.0 (2.33.12+really2.32.4-2) unstable; urgency=medium
> 
>   * Revert link adding for gdbus-object-manager-example. While it is 
>     useful to have in /usr/share/doc as an example, it must not be 
>     shipped with the system documentation.
>   * 20_glib-compile-resources_leak.patch: new patch. Fix a leak 
>     introduced in version 2.32.4. Thanks Niels Thykier!
>   * SECURITY: add 11_CVE-2012-3524_setuid.patch from upstream. Prevents 
>     using DBus in a setuid binary. Fixes CVE-2012-3524.
> 
> Attached is the diff between -1 and -2.
> 
> Cheers,

Unblock added, unblock-udeb pending d-i approval.

Thanks,
~Niels


Reply to: