liblouis 3.24.0-2 source package in Debian

Changelog

liblouis (3.24.0-2) unstable; urgency=high

  * Team upload
  * SECURITY UPDATE: Denial of service (Closes: #1033202)
    - debian/patches/CVE-2023-26767.patch: check the length
      of path before copying into dataPath in
      liblouis/compileTranslationTable.c, liblouis/liblouis.h.in.
    - CVE-2023-26767
  * SECURITY UPDATE: Buffer overflow
    - debian/patches/CVE-2023-26768-1.patch: check filename before
      coping to initialLogFileName in liblouis/logging.c.
    - debian/patches/CVE-2023-26768-2.patch: replace the magic
      number with a define in liblouis/logging.c.
    - CVE-2023-26768
  * SECURITY UPDATE: Buffer overflow
    - debian/patches/CVE-2023-26769-1.patch: check path length
      before coping into tableFile in liblouis/compileTranslationTable.c.
    - debian/patches/CVE-2023-26769-2.patch: fix format in
      liblouis/compileTranslationTable.c.
    - debian/patches/CVE-2023-26769-3.patch: add parentheses for
      define expression in liblouis/compileTranslationTable.c.
    - CVE-2023-26769

 -- Leonidas Da Silva Barbosa <email address hidden>  Fri, 02 Jun 2023 10:05:57 -0300

Upload details

Uploaded by:
Debian Accessibility Team
Uploaded to:
Sid
Original maintainer:
Debian Accessibility Team
Architectures:
any all
Section:
libs
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
liblouis_3.24.0-2.dsc 2.3 KiB 62e8ae545a7e43dac44e5f8b660e659909d785af35f070f1ac79c2affb0904f9
liblouis_3.24.0.orig.tar.gz 16.1 MiB 02360230cf5c1fe7dcec59c41a3e74bc283548b0de637963760fa8fad9cd0c39
liblouis_3.24.0-2.debian.tar.xz 12.7 KiB 878510275cb455c83760bf12f2a5de43dabc3367f50d402482f39ff3d7e574eb

No changes file available.

Binary packages built by this source