[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2018-01-18 Thread Launchpad Bug Tracker
This bug was fixed in the package python2.7 - 2.7.12-1ubuntu0~16.04.3 --- python2.7 (2.7.12-1ubuntu0~16.04.3) xenial-proposed; urgency=medium * Some performance improvements: LP: #1638695. - Build the _math.o object file without -fPIC for static builds. * Rename md5_*

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2017-12-05 Thread Matthias Klose
exploits don't work anymore in the proposed python2.7 update to xenial. ** Tags removed: verification-needed verification-needed-xenial ** Tags added: verification-done verification-done-xenial -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2017-12-04 Thread Ɓukasz Zemczak
Hello Bernd, or anyone else affected, Accepted python2.7 into xenial-proposed. The package will build now and be available at https://launchpad.net/ubuntu/+source/python2.7/2.7.12-1ubuntu0~16.04.3 in a few hours, and then in the -proposed repository. Please help us by testing this new package.

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2017-11-24 Thread Brian Morton
** Changed in: python2.7 (Ubuntu Xenial) Assignee: (unassigned) => Brian Morton (rokclimb15) ** Changed in: python2.7 (Ubuntu) Assignee: Brian Morton (rokclimb15) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2017-11-23 Thread Matthias Klose
fixed in zesty and newer releases ** Also affects: python2.7 (Ubuntu Xenial) Importance: Undecided Status: New ** Changed in: python2.7 (Ubuntu) Status: Confirmed => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages,

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-12-13 Thread Brian Morton
Attached is a debdiff for trusty. If someone could please review and provide feedback, I'll produce additional ones for precise, xenial, yakkety, and zesty ** Patch added: "Debdiff of modified upstream patch for trusty"

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-12-13 Thread Brian Morton
** Changed in: python2.7 (Ubuntu) Assignee: (unassigned) => Brian Morton (rokclimb15) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-08-05 Thread Marc Deslauriers
** Changed in: python2.7 (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python ctypes.util , Shell Injection in

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-06-18 Thread Bug Watch Updater
** Changed in: python Status: New => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python ctypes.util , Shell Injection in

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-01-06 Thread Bug Watch Updater
** Changed in: python Status: Unknown => New -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python ctypes.util , Shell Injection in find_library()

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2016-01-05 Thread Brian Murray
** Also affects: python via http://bugs.python.org/issue22636 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2015-11-30 Thread Brian Murray
** Changed in: python2.7 (Ubuntu) Importance: Undecided => High -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python ctypes.util , Shell Injection in

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2015-11-30 Thread Dimitri John Ledkov
upstream only fixed this in 3.5 which we do carry, but not other release series. It's not that "ubuntu diddn't pick up the fix", it's the upstream that didn't apply in all applicable release series. commented on your bug report. -- You received this bug notification because you are a member of

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2015-11-28 Thread Bernd Dietzel
Seens the bug is already known and fixed since 2014 but found not its way to ubuntu repos. http://bugs.python.org/issue22636 ** Information type changed from Private Security to Public Security ** Bug watch added: Python Roundup #22636 http://bugs.python.org/issue22636 -- You received

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2015-11-28 Thread Ubuntu Foundations Team Bug Bot
The attachment "Patch" seems to be a patch. If it isn't, please remove the "patch" flag from the attachment, remove the "patch" tag, and if you are a member of the ~ubuntu-reviewers, unsubscribe the team. [This is an automated message performed by a Launchpad user owned by ~brian-murray, for any

[Touch-packages] [Bug 1512068] Re: Python ctypes.util , Shell Injection in find_library()

2015-11-01 Thread Dimitri John Ledkov
marking as security. ** Information type changed from Public to Private Security -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to python2.7 in Ubuntu. https://bugs.launchpad.net/bugs/1512068 Title: Python ctypes.util ,