The patch also addresses CVE-2015-2776 (as discussed in the thread on oss-security referred to above), though it's not mentioned in the changelog. Annotating so that it doesn't get lost.
** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2015-2776 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1437087 Title: Multiple vulnerabilities in freexl 1.0.0 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/freexl/+bug/1437087/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs