Merge lp://staging/~ari-tczew/ubuntu/hardy/xchat/CVE-2009-0315 into lp://staging/ubuntu/hardy/xchat

Proposed by Artur Rona
Status: Needs review
Proposed branch: lp://staging/~ari-tczew/ubuntu/hardy/xchat/CVE-2009-0315
Merge into: lp://staging/ubuntu/hardy/xchat
Diff against target: 75 lines (+43/-1)
4 files modified
debian/changelog (+11/-0)
debian/control (+1/-1)
debian/patches/00list (+1/-0)
debian/patches/64_CVE-2009-0315.dpatch (+30/-0)
To merge this branch: bzr merge lp://staging/~ari-tczew/ubuntu/hardy/xchat/CVE-2009-0315
Reviewer Review Type Date Requested Status
Marc Deslauriers Approve
Review via email: mp+26539@code.staging.launchpad.net
To post a comment you must log in.
Revision history for this message
Marc Deslauriers (mdeslaur) wrote :

Approved. Will upload to hardy-security.

review: Approve

Unmerged revisions

26. By Artur Rona

* SECURITY UPDATE (LP: #322196)
* debian/patches/64_CVE-2009-0315.dpatch:
  - Fix untrusted search path vulnerability in the Python module
    in xchat allows local users to execute arbitrary code via
    a Trojan horse Python file in the current working directory
  - CVE-2009-0315

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
The diff is not available at this time. You can reload the page or download it.

Subscribers

People subscribed via source and target branches

to all changes: