ghostscript 9.19~dfsg+1-0ubuntu7.1 source package in Ubuntu

Changelog

ghostscript (9.19~dfsg+1-0ubuntu7.1) zesty-security; urgency=medium

  * SECURITY UPDATE: Information disclosure through getenv, filenameforall
    - debian/patches/CVE-2013-5653.patch: Have filenameforall and getenv
      honor SAFER
    - CVE-2013-5653
  * SECURITY UPDATE: userparams with %pipe% in paths allow remote shell exec
    - debian/patches/CVE-2016-7976.patch: Add a file permissions callback
    - CVE-2016-7976
  * SECURITY UPDATE: use-after-free and remote code execution
    - debian/patches/CVE-2016-7978.patch: Reference count device icc profile
    - CVE-2016-7978
  * SECURITY UPDATE: type confusion allows remote code execution
    - debian/patches/CVE-2016-7979.patch: DSC parser - validate parameters
    - CVE-2016-7979
  * SECURITY UPDATE: NULL dereference
    - debian/patches/CVE-2016-8602.patch: check for sufficient params
    - CVE-2016-8602
  * SECURITY UPDATE: fix SAFER permissions
    - debian/patches/CVE-2016-7977.patch: Be rigorous with SAFER permissions
    - CVE-2016-7977

 -- Emily Ratliff <email address hidden>  Thu, 15 Dec 2016 16:27:43 -0600

Upload details

Uploaded by:
Emily Ratliff
Uploaded to:
Zesty
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
text
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
ghostscript_9.19~dfsg+1.orig.tar.bz2 19.0 MiB 5407accbe38b2eca247807b68dfcdd33159ee324220091b3102ef9b58aa83787
ghostscript_9.19~dfsg+1-0ubuntu7.1.debian.tar.xz 104.3 KiB 3613cf3daca8ed526fd87d3837f4362bb9a055dfb20a21dd23c38742f5f6877a
ghostscript_9.19~dfsg+1-0ubuntu7.1.dsc 2.9 KiB b15cf15f91e8421432969de41c309e0c8312f123060e858aa542272c75fe8c78

View changes file

Binary packages built by this source

ghostscript: No summary available for ghostscript in ubuntu zesty.

No description available for ghostscript in ubuntu zesty.

ghostscript-dbg: No summary available for ghostscript-dbg in ubuntu artful.

No description available for ghostscript-dbg in ubuntu artful.

ghostscript-dbgsym: No summary available for ghostscript-dbgsym in ubuntu zesty.

No description available for ghostscript-dbgsym in ubuntu zesty.

ghostscript-doc: No summary available for ghostscript-doc in ubuntu zesty.

No description available for ghostscript-doc in ubuntu zesty.

ghostscript-x: No summary available for ghostscript-x in ubuntu zesty.

No description available for ghostscript-x in ubuntu zesty.

ghostscript-x-dbgsym: No summary available for ghostscript-x-dbgsym in ubuntu artful.

No description available for ghostscript-x-dbgsym in ubuntu artful.

libgs-dev: No summary available for libgs-dev in ubuntu artful.

No description available for libgs-dev in ubuntu artful.

libgs-dev-dbgsym: No summary available for libgs-dev-dbgsym in ubuntu zesty.

No description available for libgs-dev-dbgsym in ubuntu zesty.

libgs9: No summary available for libgs9 in ubuntu zesty.

No description available for libgs9 in ubuntu zesty.

libgs9-common: No summary available for libgs9-common in ubuntu zesty.

No description available for libgs9-common in ubuntu zesty.

libgs9-dbgsym: No summary available for libgs9-dbgsym in ubuntu zesty.

No description available for libgs9-dbgsym in ubuntu zesty.