sigil (0.9.5+dfsg-0ubuntu1+esm1) xenial-security; urgency=medium

  * SECURITY UPDATE: Zip Slip directory traversal when processing a crafted
    EPUB file
    - debian/patches/CVE-2019-14452-1.patch: do not allow zip files to have
      upward relative path sections.
    - debian/patches/CVE-2019-14452-2.patch: further harden against malicious
      epubs and produce error message.
    - debian/patches/CVE-2019-14452-3.patch: harden plugin unzipping to
      zip-slip attacks.
    - CVE-2019-14452

Date: 2019-07-31 17:31:23.915692+00:00
Changed-By: Mike Salvatore <mike.salvat...@canonical.com>
Signed-By: Ubuntu Archive Robot 
<cjwatson+ubuntu-archive-ro...@chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/sigil/0.9.5+dfsg-0ubuntu1+esm1
Sorry, changesfile not available.
-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes

Reply via email to