This bug was fixed in the package icu - 76.1-4ubuntu1

---------------
icu (76.1-4ubuntu1) questing; urgency=medium

  * Merge with Debian unstable (LP: #2112012). Remaining changes:
    - d/p/disable-precision-fpmath-tests-on-i386.patch: add a patch to disable
      precision checking tests on i386 where an imprecise FPU hardware is used
    Dropped changes, applied in Debian:
    - Don't use private libs in the pkgconf files, breaking builds.
    Dropped changes, applied upstream (actually dropped a few merges ago):
    - d/p/test-canonical-ids.patch: update TestCanonicalIDs to match latest
      tzdata, including the de-aliasing due to pre-1970 data (LP #2016021)

icu (76.1-4) unstable; urgency=high

  * Backport fix for ICU-22973: fix buffer overflow by using CharString;
    remedy for CVE-2025-5222 (closes: #1106684).

icu (76.1-3) unstable; urgency=medium

  * Upload to Sid.

icu (76.1-2) experimental; urgency=medium

  * Reverse ICU-22610 to link correctly with icuuc (closes: #1092243).

 -- Simon Chopin <[email protected]>  Wed, 04 Jun 2025 18:36:42 +0200

** Changed in: icu (Ubuntu)
       Status: New => Fix Released

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2025-5222

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2112012

Title:
  Merge icu from Debian Unstable for questing

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/icu/+bug/2112012/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to