UbuntuUpdates.org

Package "e2fsprogs"

Name: e2fsprogs

Description:

ext2/ext3/ext4 file system utilities

Latest version: 1.42.9-3ubuntu1.2
Release: trusty (14.04)
Level: security
Repository: main
Homepage: http://e2fsprogs.sourceforge.net

Links


Download "e2fsprogs"


Other versions of "e2fsprogs" in Trusty

Repository Area Version
base universe 1.42.9-3ubuntu1
base main 1.42.9-3ubuntu1
security universe 1.42.9-3ubuntu1.2
updates universe 1.42.9-3ubuntu1.3
updates main 1.42.9-3ubuntu1.3

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.42.9-3ubuntu1.2 2015-02-23 19:07:15 UTC

  e2fsprogs (1.42.9-3ubuntu1.2) trusty-security; urgency=medium

  * SECURITY UPDATE: heap overflow via block group descriptor information
    - debian/patches/CVE-2015-0247.patch: limit first_meta_bg in
      lib/ext2fs/closefs.c, lib/ext2fs/openfs.c.
    - CVE-2015-0247
  * SECURITY UPDATE: buffer overflow in closefs()
    - debian/patches/CVE-2015-1572.patch: properly check against
      fs->desc_blocks in lib/ext2fs/closefs.c.
    - CVE-2015-1572
 -- Marc Deslauriers <email address hidden> Mon, 16 Feb 2015 13:44:13 -0500

CVE-2015-0247 Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code via crafted
CVE-2015-1572 potential buffer overflow in closefs()



About   -   Send Feedback to @ubuntu_updates