UbuntuUpdates.org

Package "libibus-1.0-dev"

Name: libibus-1.0-dev

Description:

Intelligent Input Bus - development file

Latest version: 1.5.17-3ubuntu5.3
Release: bionic (18.04)
Level: security
Repository: main
Head package: ibus
Homepage: https://github.com/ibus/ibus/releases

Links


Download "libibus-1.0-dev"


Other versions of "libibus-1.0-dev" in Bionic

Repository Area Version
base main 1.5.17-3ubuntu4
updates main 1.5.17-3ubuntu5.3

Changelog

Version: 1.5.17-3ubuntu5.3 2020-03-24 12:07:06 UTC

  ibus (1.5.17-3ubuntu5.3) bionic-security; urgency=medium

  * SECURITY UPDATE: Lack of access control on DBus socket allows other
    local users to make arbitrary method calls
    - debian/patches/CVE-2019-14822.patch:
      Re-enable to implement GDBusAuthObserver callback in bus/server.c to
      add access control to the DBus server socket
    - CVE-2019-14822
  * Add breaks for older libglib2.0-0 releases which do not contain the
    GDBusServer fix for Qt applications

 -- Alex Murray <email address hidden> Mon, 04 Nov 2019 11:28:41 +1030

Source diff to previous version
CVE-2019-14822 missing authorization flaw

Version: 1.5.17-3ubuntu5.2 2019-09-23 15:06:55 UTC

  ibus (1.5.17-3ubuntu5.2) bionic-security; urgency=medium

  * SECURITY UPDATE: ibus regression in Qt applications (LP: #1844853)
    - debian/patches/CVE-2019-14822.patch: disabled pending further
      investigation.

 -- Marc Deslauriers <email address hidden> Mon, 23 Sep 2019 13:30:51 +0200

Source diff to previous version
1844853 IBus no longer works in Qt applications after upgrade
CVE-2019-14822 missing authorization flaw

Version: 1.5.17-3ubuntu5.1 2019-09-16 13:06:55 UTC

  ibus (1.5.17-3ubuntu5.1) bionic-security; urgency=medium

  * SECURITY UPDATE: Lack of access control on DBus socket allows other
    local users to make arbitrary method calls
    - debian/patches/CVE-2019-14822.patch: Implement GDBusAuthObserver
      callback in bus/server.c to add access control to the DBus server
      socket
    - CVE-2019-14822

 -- Alex Murray <email address hidden> Wed, 11 Sep 2019 12:29:32 +0930

CVE-2019-14822 missing authorization flaw



About   -   Send Feedback to @ubuntu_updates