This bug was fixed in the package icu - 76.1-4ubuntu1
---------------
icu (76.1-4ubuntu1) questing; urgency=medium
* Merge with Debian unstable (LP: #2112012). Remaining changes:
- d/p/disable-precision-fpmath-tests-on-i386.patch: add a patch to disable
precision checking tests on i386 where an imprecise FPU hardware is used
Dropped changes, applied in Debian:
- Don't use private libs in the pkgconf files, breaking builds.
Dropped changes, applied upstream (actually dropped a few merges ago):
- d/p/test-canonical-ids.patch: update TestCanonicalIDs to match latest
tzdata, including the de-aliasing due to pre-1970 data (LP #2016021)
icu (76.1-4) unstable; urgency=high
* Backport fix for ICU-22973: fix buffer overflow by using CharString;
remedy for CVE-2025-5222 (closes: #1106684).
icu (76.1-3) unstable; urgency=medium
* Upload to Sid.
icu (76.1-2) experimental; urgency=medium
* Reverse ICU-22610 to link correctly with icuuc (closes: #1092243).
-- Simon Chopin <[email protected]> Wed, 04 Jun 2025 18:36:42 +0200
** Changed in: icu (Ubuntu)
Status: New => Fix Released
** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2025-5222
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2112012
Title:
Merge icu from Debian Unstable for questing
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/icu/+bug/2112012/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs