UbuntuUpdates.org

Package "qt4-x11"

This package belongs to a PPA: Kubuntu-ppa Backports

Name: qt4-x11

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • transitional package for Qt 4 assistant module
  • transitional package for Qt 4 core non-GUI runtime libraries
  • Qt 4 library debugging symbols
  • Qt 4 D-Bus module

Latest version: 4:4.8.2+dfsg-2ubuntu1~precise1~ppa6
Release: precise (12.04)
Level: base
Repository: main

Links



Other versions of "qt4-x11" in Precise

Repository Area Version
base universe 4:4.8.1-0ubuntu4
base main 4:4.8.1-0ubuntu4
security main 4:4.8.1-0ubuntu4.9
security universe 4:4.8.1-0ubuntu4.9
updates main 4:4.8.1-0ubuntu4.9
updates universe 4:4.8.1-0ubuntu4.9
PPA: Ubuntu SDK Release 4:4.8.1-0ubuntu5~precise1~test1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 4:4.8.2+dfsg-2ubuntu1~precise1~ppa6 2013-12-22 04:08:29 UTC

 qt4-x11 (4:4.8.2+dfsg-2ubuntu1~precise1~ppa6) precise; urgency=high
 .
   * SECURITY UPDATE: [XML Entity Expansion Denial of Service] (LP: #1259577).
     - Add CVE-2013-4549.diff
     - add limit in src/xml/sax/qxml.cpp
     - http://lists.qt-project.org/pipermail/announce/2013-December/000036.html
     - CVE-2013-4549

Source diff to previous version
CVE-2013-4549 XML Entity Expansion Denial of Service

Version: 4:4.8.2+dfsg-2ubuntu1~precise1~ppa5 2013-08-14 19:10:22 UTC

 qt4-x11 (4:4.8.2+dfsg-2ubuntu1~precise1~ppa5) precise; urgency=low
 .
   * Depend on default opengl again

Source diff to previous version

Version: 4:4.8.2+dfsg-2ubuntu1~precise1~ppa3 2013-07-10 17:10:38 UTC

 qt4-x11 (4:4.8.2+dfsg-2ubuntu1~precise1~ppa3) precise; urgency=low
 .
   * Cherry pick qtscript crash fixes from git:
     - QTBUG-23871-Fix-JIT-crash-on-x86-64.patch
     - QTBUG-27322-Fix-mmap-usage.patch

Source diff to previous version

Version: 4:4.8.2+dfsg-2ubuntu1~precise1~ppa2 2013-02-20 23:09:07 UTC

 qt4-x11 (4:4.8.2+dfsg-2ubuntu1~precise1~ppa2) precise; urgency=low
 .
   * Cherry pick upstream commit 5b285845a3c3478a4008b7e3416c3912c69fd20b
     as QTBUG-29082_Fix_call_to_QMetaObject_metaCall_from_updateProperty.patch
     to fix a crash in QML to fix kde bug 311751.
   * SECURITY UPDATE: information disclosure via MITM redirect
     - debian/patches/CVE-2012-5624.patch: don't redirect to file URLs in
       src/declarative/qml/qdeclarativexmlhttprequest.cpp.
     - CVE-2012-5624
   * SECURITY UPDATE: incorrect errors with certificate verification
     - debian/patches/CVE-2012-6093.patch: use openssl access functions to
       properly handle layout changes in
       src/network/ssl/qsslsocket_openssl.cpp,
       src/network/ssl/qsslsocket_openssl_symbols.cpp,
       src/network/ssl/qsslsocket_openssl_symbols_p.h.
     - CVE-2012-6093
   * SECURITY UPDATE: shared memory segments incorrect permissions
     - debian/patches/CVE-2013-0254.patch: set appropriate permissions in
       src/corelib/kernel/qsharedmemory_unix.cpp,
       src/corelib/kernel/qsystemsemaphore_unix.cpp,
       src/gui/image/qnativeimage.cpp,
       src/gui/image/qpixmap_x11.cpp,
       src/plugins/platforms/xcb/qxcbwindowsurface.cpp,
       src/plugins/platforms/xlib/qxlibwindowsurface.cpp,
       tools/qvfb/qvfbshmem.cpp.
     - CVE-2013-0254

Source diff to previous version
CVE-2012-5624 qt QML XmlHttpRequest insecure redirection
CVE-2012-6093 QSslSocket may report incorrect errors when certificate verification fails
CVE-2013-0254 The QSharedMemory class in Qt 5.0.0, 4.8.x before 4.8.5, 4.7.x before 4.7.6, and other versions including 4.4.0 uses weak permissions (world-readable

Version: 4:4.8.2+dfsg-2ubuntu1~precise1~ppa1 2012-09-15 00:08:32 UTC

 qt4-x11 (4:4.8.2+dfsg-2ubuntu1~precise1~ppa1) precise; urgency=low
 .
   * Backport to precise




About   -   Send Feedback to @ubuntu_updates