evolution 2.12.1-0ubuntu1.3 source package in Ubuntu

Changelog

evolution (2.12.1-0ubuntu1.3) gutsy-security; urgency=low

  * SECURITY UPDATE: buffer overflow via timezone data in crafted ical
    attachments
  * debian/patches/99_01_CVE-2008-1108.patch: adjust
    calendar/gui/e-itip-control.c to use a GString rather than a fixed-size
    buffer to build the HTML string to avoid the possibility of an overflow.
  * SECURITY UPDATE: heap-based overflow via crafted ical attachments with
    long DESCRIPTION
  * debian/patches/99_02_CVE-2008-1109.patch: adjust calendar/gui/itip-utils.c
    to not use a fixed-size buffer for parsing external data. Simplify the
    logic to just split and rejoin the string with a different line separator.
  * SECURITY UPDATE: remotely triggered denial of service
  * debian/patches/99_03_bug535459.patch: add sanity checks and don't use
    component when checks fail in plugins/itip-formatter.c, gui/itip-utils.h,
    gui/itip-utils.c, gui/e-itip-control.c
  * References
    CVE-2008-1108
    CVE-2008-1109
    http://bugzilla.gnome.org/show_bug.cgi?id=535459

 -- Jamie Strandboge <email address hidden>   Thu, 05 Jun 2008 07:03:16 -0400

Upload details

Uploaded by:
Jamie Strandboge
Uploaded to:
Gutsy
Original maintainer:
Ubuntu Desktop
Architectures:
any
Section:
mail
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
evolution_2.12.1.orig.tar.gz 30.2 MiB ef24d6a615119b6bd0abbd515093c6e6d8c6578a66f38f3a20f5563fbfef382d
evolution_2.12.1-0ubuntu1.3.diff.gz 50.9 KiB 032fe871366b4e909f7e65ba678b6818159cb3fae83da71775b39d393641bfd3
evolution_2.12.1-0ubuntu1.3.dsc 2.0 KiB cf70c77cb16a8c5247646f3149193d0ac0b7ccaa538101193a108c3361aa2183

View changes file

Binary packages built by this source

evolution: No summary available for evolution in ubuntu gutsy.

No description available for evolution in ubuntu gutsy.

evolution-common: No summary available for evolution-common in ubuntu gutsy.

No description available for evolution-common in ubuntu gutsy.

evolution-dbg: No summary available for evolution-dbg in ubuntu gutsy.

No description available for evolution-dbg in ubuntu gutsy.

evolution-dev: No summary available for evolution-dev in ubuntu gutsy.

No description available for evolution-dev in ubuntu gutsy.

evolution-plugins: No summary available for evolution-plugins in ubuntu gutsy.

No description available for evolution-plugins in ubuntu gutsy.

evolution-plugins-experimental: No summary available for evolution-plugins-experimental in ubuntu gutsy.

No description available for evolution-plugins-experimental in ubuntu gutsy.