Public bug reported:
Please sync ioquake3 1.36+svn1946-5 (universe) from Debian unstable
(main)
Changelog entries since current oneiric version 1.36+svn1946-3:
ioquake3 (1.36+svn1946-5) unstable; urgency=low
* Amend previous changelog to include bug numbers, which were not available
when the package was prepared before the embargo date
* Restore the ability to load replacement shared objects from a
subdirectory, fixing symptoms like #620757 on OpenArena pure servers
-- Simon McVittie <[email protected]> Thu, 04 Aug 2011 09:03:51 +0100
ioquake3 (1.36+svn1946-4) unstable; urgency=high
* Apply upstream r2092 to fix failover between xmessage, zenity and kdialog
if the preferred implementation is missing, so that r2097 can be applied
* Apply upstream r2097 to fix arbitrary code execution by a malicious
server. CVE-2011-1412 (Closes: #635731)
* Apply upstream r2098 to fix arbitrary code execution by malicious QVM
bytecode (mitigation: only if native code is enabled), which could be
auto-downloaded from a malicious server if enabled. CVE-2011-2764
(Closes: #635734)
-- Simon McVittie <[email protected]> Tue, 26 Jul 2011 21:09:53 +0100
** Affects: ioquake3 (Ubuntu)
Importance: Wishlist
Status: Confirmed
** Changed in: ioquake3 (Ubuntu)
Importance: Undecided => Wishlist
** Changed in: ioquake3 (Ubuntu)
Status: New => Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/821262
Title:
Sync ioquake3 1.36+svn1946-5 (universe) from Debian unstable (main)
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ioquake3/+bug/821262/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs