[ Marc Deslauriers ]
* SECURITY UPDATE: accountsservice incorrect privilege dropping
(LP: #1974250)
- debian/patches/0009-language-tools.patch: updated to not reset
effective uid, and migrate root-owned .pam_environment file.
- This change was originally known as CVE-2020-16126 and got reverted
by mistake in 0.6.55-3ubuntu1.
- CVE-2022-1804
* Fix FTBFS with a newer python-dbusmock package:
- debian/patches/adduser_invocation.patch: fix invocation of AddUser in
tests/dbusmock/accounts_service.py.
- debian/patches/setlocked_signature.patch: fix the signature for the
SetLocked call in tests/dbusmock/accounts_service.py.
-- Gunnar Hjalmarsson <email address hidden> Tue, 24 May 2022 19:53:07 +0200
This bug was fixed in the package accountsservice - 22.07.5-2ubuntu2
---------------
accountsservice (22.07.5-2ubuntu2) kinetic; urgency=medium
[ Marc Deslauriers ] patches/ 0009-language- tools.patch: updated to not reset patches/ adduser_ invocation. patch: fix invocation of AddUser in dbusmock/ accounts_ service. py. patches/ setlocked_ signature. patch: fix the signature for the accounts_ service. py.
* SECURITY UPDATE: accountsservice incorrect privilege dropping
(LP: #1974250)
- debian/
effective uid, and migrate root-owned .pam_environment file.
- This change was originally known as CVE-2020-16126 and got reverted
by mistake in 0.6.55-3ubuntu1.
- CVE-2022-1804
* Fix FTBFS with a newer python-dbusmock package:
- debian/
tests/
- debian/
SetLocked call in tests/dbusmock/
-- Gunnar Hjalmarsson <email address hidden> Tue, 24 May 2022 19:53:07 +0200