update-manager (1:0.150.5.1) natty-security; urgency=low

  * SECURITY UPDATE: arbitrary code execution via directory traversal
    (LP: #881548)
    - UpdateManager/Core/DistUpgradeFetcherCore.py: verify signature before
      unpacking the tarball.
    - CVE-2011-3152
  * SECURITY UPDATE: information leak via insecure temp file (LP: #881541)
    - DistUpgrade/DistUpgradeViewKDE.py: use mkstemp instead of mktemp.
    - CVE-2011-3154

Date: Wed, 23 Nov 2011 09:27:14 -0500
Changed-By: Marc Deslauriers <[email protected]>
Maintainer: Michael Vogt <[email protected]>
https://launchpad.net/ubuntu/natty/+source/update-manager/1:0.150.5.1
Format: 1.8
Date: Wed, 23 Nov 2011 09:27:14 -0500
Source: update-manager
Binary: update-manager-core update-manager update-manager-text 
update-manager-kde auto-upgrade-tester
Architecture: source
Version: 1:0.150.5.1
Distribution: natty-security
Urgency: low
Maintainer: Michael Vogt <[email protected]>
Changed-By: Marc Deslauriers <[email protected]>
Description: 
 auto-upgrade-tester - Test release upgrades in a virtual environment
 update-manager - GNOME application that manages apt updates
 update-manager-core - manage release upgrades
 update-manager-kde - Support modules for KPackageKit
 update-manager-text - Text application that manages apt updates
Launchpad-Bugs-Fixed: 881541 881548
Changes: 
 update-manager (1:0.150.5.1) natty-security; urgency=low
 .
   * SECURITY UPDATE: arbitrary code execution via directory traversal
     (LP: #881548)
     - UpdateManager/Core/DistUpgradeFetcherCore.py: verify signature before
       unpacking the tarball.
     - CVE-2011-3152
   * SECURITY UPDATE: information leak via insecure temp file (LP: #881541)
     - DistUpgrade/DistUpgradeViewKDE.py: use mkstemp instead of mktemp.
     - CVE-2011-3154
Checksums-Sha1: 
 5feeeb14854f31f3cfa4df004c62a744faa08a82 1781 update-manager_0.150.5.1.dsc
 553aced7698e1248bec4288b3ca05f09769660a8 2939724 
update-manager_0.150.5.1.tar.gz
Checksums-Sha256: 
 e7903566a781651322325fc5a479383689d51d31aee73244dc288bbc798f9992 1781 
update-manager_0.150.5.1.dsc
 76254a1a2ef9373bb67b5651d7feb96704d3ae83d3c076d3972aea2b4b532bd5 2939724 
update-manager_0.150.5.1.tar.gz
Files: 
 6bf7471e808b37a5fd377bc0d3a50a33 1781 gnome optional 
update-manager_0.150.5.1.dsc
 82f6932bda5db22069d72634f1860fbd 2939724 gnome optional 
update-manager_0.150.5.1.tar.gz
-- 
Natty-changes mailing list
[email protected]
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/natty-changes

Reply via email to