json-c (0.9-1ubuntu1.1) precise-security; urgency=medium
* SECURITY UPDATE: denial of service via buffer overflow (LP: #1311397)
- debian/patches/CVE-2013-6370.patch: check lengths and add warnings to
json_tokener.*.
- CVE-2013-6370
* SECURITY UPDATE: denial of service via hash collision (LP: #1311397)
- debian/patches/CVE-2013-6371.patch: added better random seed and hash
functions to Makefile.am, config.h.in, linkhash.c, random_seed.*,
configure.in.
- debian/{control,rules}: build with autoreconf
- CVE-2013-6371
Date: 2014-06-03 19:41:16.473890+00:00
Changed-By: Marc Deslauriers <[email protected]>
Signed-By: Ubuntu Archive Robot
<[email protected]>
https://launchpad.net/ubuntu/precise/+source/json-c/0.9-1ubuntu1.1
Sorry, changesfile not available.
--
Precise-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/precise-changes