[pkg-fgfs-crew] Bug#669025: Patches for CVE-2012-2090 / CVE-2012-2091

Rebecca N. Palmer r.palmer at bham.ac.uk
Sat Sep 7 22:04:01 UTC 2013


Sorry, my patch for simgear CVE-2012-2091 had an off-by-one error. 
Corrected version here: 
https://bugs.launchpad.net/ubuntu/+source/simgear/+bug/1077624/+attachment/3808144/+files/simgear_CVE2012_2091.patch

flightgear still needs the two 2.6.0-1.1 patches applying to 2.10, and 
also has a third similar vulnerability (upstream issue 1117: 
http://code.google.com/p/flightgear-bugs/issues/detail?id=1117&q=2090&colspec=ID%20Type%20Status%20Priority%20Summary%20Aircraft%20Milestone 
), which should be fixed by this patch: 
https://bugs.launchpad.net/ubuntu/+source/simgear/+bug/1077624/+attachment/3806304/+files/flightgear_bug1117.patch

(Related Ubuntu discussion: last few comments on 
https://bugs.launchpad.net/ubuntu/+source/simgear/+bug/1077624 )



More information about the pkg-fgfs-crew mailing list