[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-30 Thread Luís Cunha dos Reis Infante da Câmara
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-26700 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-26709 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-26717 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-26716 ** CVE

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-30 Thread Luís Cunha dos Reis Infante da Câmara
Due to a out-of-memory issue when building the package in Jammy, I needed to increase swap and retry the build. I uploaded the Jammy source package just now. Patched source packages are available in my PPA (https://launchpad.net/~luis220413/+archive/ubuntu/security-updates). ** Patch removed:

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-28 Thread Luís Cunha dos Reis Infante da Câmara
I am now building version 2.36.3 (released today), with several bug fixes compared to 2.36.1. Source packages will be available in my PPA (https://launchpad.net/~luis220413/+archive/ubuntu/security-updates) tomorrow. ** Changed in: wpewebkit (Ubuntu) Status: Fix Committed => In Progress

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
** Patch added: "wpewebkit_impish.debdiff" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590910/+files/wpewebkit_impish.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report.

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
** Patch added: "wpewebkit_focal.debdiff" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590911/+files/wpewebkit_focal.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report.

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
** Patch added: "wpewebkit_jammy.debdiff" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590909/+files/wpewebkit_jammy.debdiff -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report.

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
The version in Jammy is not vulnerable, but a backport to Jammy is needed to ensure that upgrading to Jammy works. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1970779 Title: Multiple

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
** Attachment added: "wpewebkit_2.36.1-1ubuntu0.21.10.1.dsc" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590615/+files/wpewebkit_2.36.1-1ubuntu0.21.10.1.dsc ** Changed in: wpewebkit (Ubuntu) Status: In Progress => Fix Committed -- You received this

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
** Attachment added: "wpewebkit_2.36.1-1ubuntu0.21.10.1.debian.tar.xz" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590614/+files/wpewebkit_2.36.1-1ubuntu0.21.10.1.debian.tar.xz -- You received this bug notification because you are a member of Ubuntu Bugs,

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-18 Thread Luís Cunha dos Reis Infante da Câmara
Uploading a debdiff for Impish is taking too long. Therefore, I am also posting the Debian packaging tarball and the .dsc file. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1970779 Title:

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-17 Thread Ubuntu Foundations Team Bug Bot
The attachment "wpewebkit_2.36.1-1ubuntu0.20.04.1.debian.tar.xz" seems to be a patch. If it isn't, please remove the "patch" flag from the attachment, remove the "patch" tag, and if you are a member of the ~ubuntu-reviewers, unsubscribe the team. [This is an automated message performed by a

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-17 Thread Luís Cunha dos Reis Infante da Câmara
** Attachment added: "wpewebkit_2.36.1-1ubuntu0.20.04.1.dsc" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590514/+files/wpewebkit_2.36.1-1ubuntu0.20.04.1.dsc -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-17 Thread Luís Cunha dos Reis Infante da Câmara
When trying to post a debdiff, I get a timeout or a server error (see bug #1973814). Therefore, I am posting the Debian packaging tarball and the .dsc file. ** Attachment added: "wpewebkit_2.36.1-1ubuntu0.20.04.1.debian.tar.xz"

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-17 Thread Luís Cunha dos Reis Infante da Câmara
** Attachment added: "Upstream tarball" https://bugs.launchpad.net/ubuntu/+source/wpewebkit/+bug/1970779/+attachment/5590380/+files/wpewebkit-2.36.1.tar.xz -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report.

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-16 Thread Luís Cunha dos Reis Infante da Câmara
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9802 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9803 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9805 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9806 ** CVE

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-16 Thread Luís Cunha dos Reis Infante da Câmara
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9952 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9983 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9862 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9893 ** CVE

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-16 Thread Luís Cunha dos Reis Infante da Câmara
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-13584 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9948 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2020-9951 -- You received this bug notification because you are a member of Ubuntu Bugs,

[Bug 1970779] Re: Multiple vulnerabilities in Focal and Impish

2022-05-16 Thread Luís Cunha dos Reis Infante da Câmara
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-30795 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-30797 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-30799 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-1788 ** CVE