[ubuntu/bionic-proposed] miniupnpc 1.9.20140610-4ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Feb 7 19:04:16 UTC 2018


miniupnpc (1.9.20140610-4ubuntu2) bionic; urgency=medium

  * SECURITY UPDATE: multiple overflows
    - debian/patches/CVE-2017-1000494-1.patch: properly initialize data
      structure for SOAP parsing in upnpreplyparse.c.
    - debian/patches/CVE-2017-1000494-2.patch: fix heap buffer overflow in
      minixml.c.
    - CVE-2017-1000494

Date: Wed, 07 Feb 2018 13:44:03 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/miniupnpc/1.9.20140610-4ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 07 Feb 2018 13:44:03 -0500
Source: miniupnpc
Binary: miniupnpc libminiupnpc10 libminiupnpc-dev python-miniupnpc
Architecture: source
Version: 1.9.20140610-4ubuntu2
Distribution: bionic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 libminiupnpc-dev - UPnP IGD client lightweight library development files
 libminiupnpc10 - UPnP IGD client lightweight library
 miniupnpc  - UPnP IGD client lightweight library client
 python-miniupnpc - UPnP IGD client lightweight library Python bindings
Changes:
 miniupnpc (1.9.20140610-4ubuntu2) bionic; urgency=medium
 .
   * SECURITY UPDATE: multiple overflows
     - debian/patches/CVE-2017-1000494-1.patch: properly initialize data
       structure for SOAP parsing in upnpreplyparse.c.
     - debian/patches/CVE-2017-1000494-2.patch: fix heap buffer overflow in
       minixml.c.
     - CVE-2017-1000494
Checksums-Sha1:
 c0f752ab98e241856e7efaa1deae845d282d1742 2182 miniupnpc_1.9.20140610-4ubuntu2.dsc
 39f11da9b98f2c0b40f766ed556458d18a569ecb 9784 miniupnpc_1.9.20140610-4ubuntu2.debian.tar.xz
 d321171e31668881474346b2cf12023154b0ca2f 6414 miniupnpc_1.9.20140610-4ubuntu2_source.buildinfo
Checksums-Sha256:
 dcb8984d756f544cb5583c0aba80a8208223da340a9d4b0ad705d16ed0b89b6d 2182 miniupnpc_1.9.20140610-4ubuntu2.dsc
 3f60b30f1c6acb7e3a0618356c9e06b7e8dab5ebc8d71a44d2dc9c80e5d5f284 9784 miniupnpc_1.9.20140610-4ubuntu2.debian.tar.xz
 ded8370676e7d52093d2435fdf965e11ce2b076a3665e575a06108aabeaede68 6414 miniupnpc_1.9.20140610-4ubuntu2_source.buildinfo
Files:
 8b351f08429afe5fcbaa8d1c108d4d22 2182 net optional miniupnpc_1.9.20140610-4ubuntu2.dsc
 d53b72d0ea7182b12275cf87829e68ca 9784 net optional miniupnpc_1.9.20140610-4ubuntu2.debian.tar.xz
 15907e1752911babc07cff2bbfd3a1ee 6414 net optional miniupnpc_1.9.20140610-4ubuntu2_source.buildinfo
Original-Maintainer: Thomas Goirand <zigo at debian.org>

-----BEGIN PGP SIGNATURE-----
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=RO3O
-----END PGP SIGNATURE-----


More information about the Bionic-changes mailing list