krfb (4:4.13.0-0ubuntu1.1) trusty-security; urgency=medium
* SECURITY UPDATE: denial of service or possible code execution via
integer overflow in liblzo2 in libvncserver in krfb
- debian/patches/upstream_libvncserver-CVE-2014-4607.diff:
check for overflow in libvncserver/lzoconf.h libvncserver/lzodefs.h
libvncserver/minilzo.c libvncserver/minilzo.h
- CVE-2014-4607
- http://www.kde.org/info/security/advisory-20140803-1.txt
- LP: #1352421
Date: 2014-08-04 17:14:12.772323+00:00
Changed-By: Jonathan Riddell <[email protected]>
Maintainer: Kubuntu Members <[email protected]>
Signed-By: Marc Deslauriers <[email protected]>
https://launchpad.net/ubuntu/trusty/+source/krfb/4:4.13.0-0ubuntu1.1
Sorry, changesfile not available.
--
Trusty-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/trusty-changes