News for package icu

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 3.0 (quilt)
Source: icu
Binary: libicu52, libicu52-dbg, libicu-dev, icu-devtools, icu-doc
Architecture: any all
Version: 52.1-7.1
Maintainer: Jay Berkenbilt <[email protected]>
Homepage: http://www.icu-project.org
Standards-Version: 3.9.5
Build-Depends: cdbs (>= 0.4.106~), debhelper (>> 9~), dpkg-dev (>= 1.16.1~), autotools-dev
Build-Depends-Indep: doxygen (>= 1.7.1)
Package-List:
 icu-devtools deb libdevel optional arch=any
 icu-doc deb doc optional arch=all
 libicu-dev deb libdevel optional arch=any
 libicu52 deb libs optional arch=any
 libicu52-dbg deb debug extra arch=any
Checksums-Sha1:
 6de440b71668f1a65a9344cdaf7a437291416781 23875368 icu_52.1.orig.tar.gz
 a14ee646205791d253022cf9f26b120e1884ea05 25340 icu_52.1-7.1.debian.tar.xz
Checksums-Sha256:
 2f4d5e68d4698e87759dbdc1a586d053d96935787f79961d192c477b029d8092 23875368 icu_52.1.orig.tar.gz
 0141af871d3fd2ca3dba9b8b255b2443f2fae2b9fb70aa7eedfdb5383303841d 25340 icu_52.1-7.1.debian.tar.xz
Files:
 9e96ed4c1d99c0d14ac03c140f9f346c 23875368 icu_52.1.orig.tar.gz
 15603a20bc70b87f0d0af3737d899cc1 25340 icu_52.1-7.1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=
=OeU2
-----END PGP SIGNATURE-----

Changes:
icu (52.1-7.1) unstable; urgency=high

  * Non-maintainer upload by the Security Team.
  * Unfixed issue from the previous upload (closes: #776264)
    - CVE-2014-6585: out-of-bounds read.
  * Issues fixed in chromium 40.0.2214.91 (closes: #776265, #776719).
    - CVE-2014-7923: memory corruption in regular expression comparison.
    - CVE-2014-7926: memory corruption in regular expression comparison.
    - CVE-2014-7940: uninitialized memory in i18n/icol.cpp.
    - CVE-2014-9654: more regular expression handling issues.

 -- Michael Gilbert <[email protected]>  Sun, 15 Feb 2015 22:19:14 +0000