icu 52.1-6ubuntu0.2 source package in Ubuntu

Changelog

icu (52.1-6ubuntu0.2) utopic-security; urgency=medium

  * SECURITY UPDATE: information disclosure via incorrect font file parsing
    - debian/patches/CVE-2014-65xx.patch: add checks to
      source/layout/ContextualSubstSubtables.cpp,
      source/layout/CursiveAttachmentSubtables.cpp,
      source/layout/Features.cpp,
      source/layout/LETableReference.h,
      source/layout/LigatureSubstSubtables.cpp,
      source/layout/MultipleSubstSubtables.cpp.
    - CVE-2014-6585
    - CVE-2014-6591
  * SECURITY UPDATE: denial of service or possible code execution in
    regular expressions
    - debian/patches/CVE-2014-7923.patch: add limits to
      source/i18n/regexcmp.cpp, add test to
      source/test/testdata/regextst.txt.
    - CVE-2014-7923
  * SECURITY UPDATE: denial of service or possible code execution in
    regular expressions
    - debian/patches/CVE-2014-7926.patch: fix incorrect optimization in
      source/i18n/regexcmp.cpp, fix comment in source/i18n/regexcmp.h,
      add test to source/test/testdata/regextst.txt.
    - CVE-2014-7926
  * SECURITY UPDATE: denial of service or possible code execution via
    uninitialized memory in the collator implementation
    - debian/patches/CVE-2014-7940.patch: properly handle memory in
      source/i18n/ucol.cpp.
    - CVE-2014-7940
  * SECURITY UPDATE: denial of service via incorrect pattern size limits
    - debian/patches/CVE-2014-9654.patch: check limits in
      source/common/unicode/utypes.h, source/common/utypes.c,
      source/i18n/regexcmp.cpp, source/i18n/regexcmp.h,
      source/i18n/regeximp.h, added test to
      source/test/intltest/regextst.cpp, source/test/intltest/regextst.h.
    - CVE-2014-9654
 -- Marc Deslauriers <email address hidden>   Wed, 04 Mar 2015 11:33:14 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Utopic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
icu_52.1.orig.tar.gz 22.8 MiB 2f4d5e68d4698e87759dbdc1a586d053d96935787f79961d192c477b029d8092
icu_52.1-6ubuntu0.2.debian.tar.xz 28.3 KiB 5e02dc73b697baba2db147a890c87faa454bc6ebe8ae887821b506ceb3d02526
icu_52.1-6ubuntu0.2.dsc 2.0 KiB edb4cd52b6151af88c0123feaf2ccc388fbd8f19224a164fb222c1e300861683

View changes file

Binary packages built by this source

icu-devtools: No summary available for icu-devtools in ubuntu utopic.

No description available for icu-devtools in ubuntu utopic.

icu-doc: No summary available for icu-doc in ubuntu utopic.

No description available for icu-doc in ubuntu utopic.

libicu-dev: No summary available for libicu-dev in ubuntu utopic.

No description available for libicu-dev in ubuntu utopic.

libicu52: No summary available for libicu52 in ubuntu utopic.

No description available for libicu52 in ubuntu utopic.

libicu52-dbg: No summary available for libicu52-dbg in ubuntu utopic.

No description available for libicu52-dbg in ubuntu utopic.