This bug was fixed in the package tuxguitar - 1.2-7ubuntu1 --------------- tuxguitar (1.2-7ubuntu1) natty; urgency=low
* SECURITY UPDATE: insecure library loading (LP: #660923) - debian/patches/03-CVE-2010-3385.patch: Use shell expansion when setting LD_LIBRARY_PATH. Patch from Debian version 1.2-7 - CVE-2010-3385 * Merge from debian unstable. Remaining changes: - add debian/patches/xulrunner-1.9.2.patch + misc/tuxguitar.sh: update to use xulrunner-1.9.2 - debian/control: Update depends to xulrunner-1.9.2 tuxguitar (1.2-7) unstable; urgency=medium * Apply patch for CVE-2010-3385 (Closes: #598307) Thanks to Etienne Millon -- Micah Gersten <mic...@ubuntu.com> Thu, 14 Oct 2010 22:37:06 -0500 ** Changed in: tuxguitar (Ubuntu) Status: In Progress => Fix Released ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2010-3385 -- CVE-2010-3385: insecure library loading https://bugs.launchpad.net/bugs/660923 You received this bug notification because you are a member of Ubuntu Bugs, which is a direct subscriber. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs