[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-12 Thread Luís Cunha dos Reis Infante da Câmara
** Description changed: The version in Bionic is vulnerable to CVE-2018-11782, CVE-2019-0203 and CVE-2020-17525. - The version in Focal is vulnerable to CVE-2018-11803 and CVE-2020-17525. + The version in Focal is vulnerable to CVE-2020-17525. - The version in Impish is vulnerable to

[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-12 Thread Ubuntu Foundations Team Bug Bot
The attachment "subversion_bionic.debdiff" seems to be a debdiff. The ubuntu-sponsors team has been subscribed to the bug report so that they can review and hopefully sponsor the debdiff. If the attachment isn't a patch, please remove the "patch" flag from the attachment, remove the "patch" tag,

[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-12 Thread Luís Cunha dos Reis Infante da Câmara
Patches for the other supported Ubuntu releases will be added today. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1970228 Title: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-12 Thread Luís Cunha dos Reis Infante da Câmara
** Attachment added: "Upstream tarball for Bionic" https://bugs.launchpad.net/ubuntu/+source/subversion/+bug/1970228/+attachment/5589242/+files/subversion-1.10.8.tar.bz2 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the bug report.

[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-12 Thread Luís Cunha dos Reis Infante da Câmara
Subversion 1.9.7-4ubuntu1 and 1.9.12 fail to build on Ubuntu 18.04 because they use javah, that was removed in OpenJDK 10 (the default-jre- headless package installs OpenJDK 11), and there is no equivalent of the -force flag in its replacement (javac). Therefore, I am packaging the latest version

[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-08 Thread Luís Cunha dos Reis Infante da Câmara
** Changed in: subversion (Ubuntu) Status: New => In Progress ** Changed in: subversion (Ubuntu) Assignee: (unassigned) => Luís Cunha dos Reis Infante da Câmara (luis220413) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to the

[Bug 1970228] Re: Multiple vulnerabilities in Bionic, Focal, Impish and Jammy

2022-05-07 Thread Luís Cunha dos Reis Infante da Câmara
** Summary changed: - Multiple vulnerabilities in Bionic, Focal and Jammy + Multiple vulnerabilities in Bionic, Focal, Impish and Jammy ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-11803 ** Description changed: - The versions in Bionic and Focal are vulnerable to