Comment 7 for bug 688992

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package dbus - 1.1.20-1ubuntu3.4

---------------
dbus (1.1.20-1ubuntu3.4) hardy-security; urgency=low

  * SECURITY UPDATE: fix DoS with too deeply nested messages
    - debian/patches/84-CVE-2010-4352.patch: Limit nesting to 64 for dynamic
      message variants. Backported from upstream.
    - CVE-2010-4352
    - LP: #688992
  * debian/control: Build-Depends on libexpat1-dev instead of libexpat-dev
 -- Jamie Strandboge <email address hidden> Tue, 04 Jan 2011 15:04:29 -0600