Format: 1.8 Date: Mon, 12 Nov 2018 09:36:49 -0500 Source: python2.7 Binary: python2.7 libpython2.7-stdlib python2.7-minimal libpython2.7-minimal libpython2.7 python2.7-examples python2.7-dev libpython2.7-dev libpython2.7-testsuite idle-python2.7 python2.7-doc python2.7-dbg libpython2.7-dbg Architecture: all amd64 Version: 2.7.12-1ubuntu0~16.04.4 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: idle-python2.7 - IDE for Python (v2.7) using Tkinter libpython2.7 - Shared Python runtime library (version 2.7) libpython2.7-dbg - Debug Build of the Python Interpreter (version 2.7) libpython2.7-dev - Header files and a static library for Python (v2.7) libpython2.7-minimal - Minimal subset of the Python language (version 2.7) libpython2.7-stdlib - Interactive high-level object-oriented language (standard library libpython2.7-testsuite - Testsuite for the Python standard library (v2.7) python2.7 - Interactive high-level object-oriented language (version 2.7) python2.7-dbg - Debug Build of the Python Interpreter (version 2.7) python2.7-dev - Header files and a static library for Python (v2.7) python2.7-doc - Documentation for the high-level object-oriented language Python python2.7-examples - Examples for the Python language (v2.7) python2.7-minimal - Minimal subset of the Python language (version 2.7) Changes: python2.7 (2.7.12-1ubuntu0~16.04.4) xenial-security; urgency=medium . * SECURITY UPDATE: heap buffer overflow via race condition - debian/patches/CVE-2018-1000030-1.patch: stop crashes when iterating over a file on multiple threads in Lib/test/test_file2k.py, Objects/fileobject.c. - debian/patches/CVE-2018-1000030-2.patch: fix crash when multiple threads iterate over a file in Lib/test/test_file2k.py, Objects/fileobject.c. - CVE-2018-1000030 * SECURITY UPDATE: command injection in shutil module - debian/patches/CVE-2018-1000802.patch: use subprocess rather than distutils.spawn in Lib/shutil.py. - CVE-2018-1000802 * SECURITY UPDATE: DoS via catastrophic backtracking - debian/patches/CVE-2018-106x.patch: fix expressions in Lib/difflib.py, Lib/poplib.py. Added tests to Lib/test/test_difflib.py, Lib/test/test_poplib.py. - CVE-2018-1060 - CVE-2018-1061 * SECURITY UPDATE: incorrect Expat hash salt initialization - debian/patches/CVE-2018-14647.patch: call SetHashSalt in Include/pyexpat.h, Modules/_elementtree.c, Modules/pyexpat.c. - CVE-2018-14647 Checksums-Sha1: a28ba2b34252b942714998c95b828abfbcc824e2 260492 idle-python2.7_2.7.12-1ubuntu0~16.04.4_all.deb 338de9c27aaff131389b7e984a8b6c5d810864b0 4342572 libpython2.7-dbg_2.7.12-1ubuntu0~16.04.4_amd64.deb f2becb7d79a8570f57b89637604d87c3cd0bab85 984 libpython2.7-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb 377dea291103fd0f1ff1857635c7bdd4d16bf7f7 974 libpython2.7-dev-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb a65852e82d20cfb68721745a35e07d362b233178 27813014 libpython2.7-dev_2.7.12-1ubuntu0~16.04.4_amd64.deb 2f88f79cf427e91a6d1367f08f7c96625646eceb 864 libpython2.7-minimal-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb f7f3cd2b0f0265829d9fbafdb53e0a76ef80dabc 339308 libpython2.7-minimal_2.7.12-1ubuntu0~16.04.4_amd64.deb 771bd6e9fcb7c08b885c48b72ab961a3bc09bc6f 990 libpython2.7-stdlib-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb 5f9ad9e47b26735c36ff55e77b9e70749d1ccd74 1880018 libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.4_amd64.deb d1d87f08b75bc701c3583528c1c2edfa14c891cc 2102318 libpython2.7-testsuite_2.7.12-1ubuntu0~16.04.4_all.deb 07d318977f9fff42b213d7b1fb17ce1746587312 1070586 libpython2.7_2.7.12-1ubuntu0~16.04.4_amd64.deb 91eb84e4c3dd1b1427135c2d9fac38aa5270ef54 7848774 python2.7-dbg_2.7.12-1ubuntu0~16.04.4_amd64.deb bbaddff0089a1b240014ad17aa6a3b9e3dbb38d4 276198 python2.7-dev_2.7.12-1ubuntu0~16.04.4_amd64.deb c17fdbdcccf0352eaae4fccb6e48cfefd5fa1ba1 4207652 python2.7-doc_2.7.12-1ubuntu0~16.04.4_all.deb fadde27a4899ed67f957151a30544897037857ad 550336 python2.7-examples_2.7.12-1ubuntu0~16.04.4_all.deb ef130ab644627d2269cec95409c28ecc999cc77b 1260712 python2.7-minimal_2.7.12-1ubuntu0~16.04.4_amd64.deb 54cc79c198b916415a416c6c277bef0c9a6f9232 224398 python2.7_2.7.12-1ubuntu0~16.04.4_amd64.deb Checksums-Sha256: 9fb01220df3dc8077dff4c7e27ce78b010ca0df811ea7a6eef55e00f06dba091 260492 idle-python2.7_2.7.12-1ubuntu0~16.04.4_all.deb 1c24b7ebe1021dd42f6d37be531b4586c2add31eeacf4a87db2a2b5873f30438 4342572 libpython2.7-dbg_2.7.12-1ubuntu0~16.04.4_amd64.deb ef46345d94e9045ef8f8ea4e4ab833efbddef12ac877e5e3ef262c7743626c3f 984 libpython2.7-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb fac6d4a02d02e161587b9ed81b72ca09a81b87a409fbdeb72ce2370c377867d5 974 libpython2.7-dev-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb 7b252fe2a68d13a7f32e06de8422bf0046ff6f812059c1f7ee6b9cdfc491a338 27813014 libpython2.7-dev_2.7.12-1ubuntu0~16.04.4_amd64.deb 2671d65597ff1be44e00381d8506a53837d17f0730df4cabd66c949a3ce79649 864 libpython2.7-minimal-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb 7fa7ec2623ff744549f2f72478b1386b5861bf629330747a7a49f0c7874e7713 339308 libpython2.7-minimal_2.7.12-1ubuntu0~16.04.4_amd64.deb de65248d752af646e0d0d8f02f6340d0b1dfa6696567e93840d7b3ea626eba2e 990 libpython2.7-stdlib-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb cd93ad75729fea81d508879ef332900a16b8d62cce797850042dddc20f0a98b8 1880018 libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.4_amd64.deb 3479a8f6dc645b4263cf52fafb25809eaaa9be6d18924db8e203e36a0e7e0f0e 2102318 libpython2.7-testsuite_2.7.12-1ubuntu0~16.04.4_all.deb 3566067dd65d6be1ea04beb96293a18fc97f69c7a7e3019bcacb83b98f787653 1070586 libpython2.7_2.7.12-1ubuntu0~16.04.4_amd64.deb 3922316c0aa2f08c57cb40dd0195b71441c0e33072eecd174a4415a853d0990a 7848774 python2.7-dbg_2.7.12-1ubuntu0~16.04.4_amd64.deb e6e92393301c910161b58149989d8722af1cbb5d488df4e316de8026db91a29d 276198 python2.7-dev_2.7.12-1ubuntu0~16.04.4_amd64.deb 86b49ece76e43b5b65eb9d63190988063d59f8c96b130c58d8cfa38b2335eece 4207652 python2.7-doc_2.7.12-1ubuntu0~16.04.4_all.deb 1ab5a4c9ec4850c22e8e97fc39961b1526d7b398228ab30985cf985c690ef3ff 550336 python2.7-examples_2.7.12-1ubuntu0~16.04.4_all.deb 420cef3f3b5c7ce747963688cabf7ef82a7178873c75c70b7b9334b2eabf9698 1260712 python2.7-minimal_2.7.12-1ubuntu0~16.04.4_amd64.deb 0140aa53d5e8837916372189203274c7396bf04ffbf2a3074738ec9c946575f1 224398 python2.7_2.7.12-1ubuntu0~16.04.4_amd64.deb Files: 8ece04fbae5aafb4eb534dfd51815427 260492 python optional idle-python2.7_2.7.12-1ubuntu0~16.04.4_all.deb e7efc10a220b213bc3015356a3b62bdc 4342572 debug extra libpython2.7-dbg_2.7.12-1ubuntu0~16.04.4_amd64.deb 9bad83923334ebb23afcf87d45623008 984 libs extra libpython2.7-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb f8b70be5103bc95f1d102c68926f5a86 974 libdevel extra libpython2.7-dev-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb f3b6049fde8ab7f52814143d734be3f7 27813014 libdevel optional libpython2.7-dev_2.7.12-1ubuntu0~16.04.4_amd64.deb 6dc367a05c74abc984f5d79d77b0692d 864 python extra libpython2.7-minimal-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb c36b4fa621f1a051586fa98348f4922f 339308 python standard libpython2.7-minimal_2.7.12-1ubuntu0~16.04.4_amd64.deb b6ce860051b1f09048907290d7c53088 990 python extra libpython2.7-stdlib-dbgsym_2.7.12-1ubuntu0~16.04.4_amd64.ddeb f3a11f01845ece0c93da4208a25f6aa2 1880018 python standard libpython2.7-stdlib_2.7.12-1ubuntu0~16.04.4_amd64.deb 4ce0f63efaea51c9188dbdfe54604b7b 2102318 libdevel optional libpython2.7-testsuite_2.7.12-1ubuntu0~16.04.4_all.deb 1eb9a9f7de611382349d41618c0244ff 1070586 libs standard libpython2.7_2.7.12-1ubuntu0~16.04.4_amd64.deb d3803bccbbf890e10001e0e18db31467 7848774 debug extra python2.7-dbg_2.7.12-1ubuntu0~16.04.4_amd64.deb 4c8e7b6488009375665b98d456734122 276198 python optional python2.7-dev_2.7.12-1ubuntu0~16.04.4_amd64.deb cfa354f24df868a5ea5adf773063c417 4207652 doc optional python2.7-doc_2.7.12-1ubuntu0~16.04.4_all.deb 35bc39aa22a826845fc203def7ed1035 550336 python optional python2.7-examples_2.7.12-1ubuntu0~16.04.4_all.deb 200f2b1a767e4cbab42c0f96300068f5 1260712 python standard python2.7-minimal_2.7.12-1ubuntu0~16.04.4_amd64.deb 35f9e62deb02457f67d4acef981f2bae 224398 python standard python2.7_2.7.12-1ubuntu0~16.04.4_amd64.deb Original-Maintainer: Matthias Klose