[ubuntu/bionic-proposed] irssi 1.0.5-1ubuntu4 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Tue Mar 6 14:43:18 UTC 2018


irssi (1.0.5-1ubuntu4) bionic; urgency=medium

  * SECURITY UPDATE: Null pointer dereference
    - debian/patches/CVE-2018-7050.patch: check if
      nick is Null in src/fe-common/core/chat-completion.c.
    - CVE-2018-7050
  * SECURITY UPDATE: Certain nick names result in out-of-bounds
    access
    - debian/patches/CVE-2018-7051.patch: don't read beyond end of
      escaped string in src/fe-common/core/themes.c.
    - CVE-2018-7051
  * SECURITY UPDATE: Null pointer dereference
    - debian/patches/CVE-2018-7052.patch: check if window parent
      is Null in src/fe-text/mainwindows.c.
    - CVE-2018-7052
  * SECURITY UPDATE: use-after-free
    - debian/patches/CVE-2018-7053.patch: avoiding
      reuse sasl timeout in src/irc/core/sasl.c.
    - CVE-2018-7073

Date: Tue, 06 Mar 2018 11:03:13 -0300
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/irssi/1.0.5-1ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 06 Mar 2018 11:03:13 -0300
Source: irssi
Binary: irssi irssi-dev
Architecture: source
Version: 1.0.5-1ubuntu4
Distribution: bionic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas S. Barbosa <leo.barbosa at canonical.com>
Description:
 irssi      - terminal based IRC client
 irssi-dev  - terminal based IRC client - development files
Changes:
 irssi (1.0.5-1ubuntu4) bionic; urgency=medium
 .
   * SECURITY UPDATE: Null pointer dereference
     - debian/patches/CVE-2018-7050.patch: check if
       nick is Null in src/fe-common/core/chat-completion.c.
     - CVE-2018-7050
   * SECURITY UPDATE: Certain nick names result in out-of-bounds
     access
     - debian/patches/CVE-2018-7051.patch: don't read beyond end of
       escaped string in src/fe-common/core/themes.c.
     - CVE-2018-7051
   * SECURITY UPDATE: Null pointer dereference
     - debian/patches/CVE-2018-7052.patch: check if window parent
       is Null in src/fe-text/mainwindows.c.
     - CVE-2018-7052
   * SECURITY UPDATE: use-after-free
     - debian/patches/CVE-2018-7053.patch: avoiding
       reuse sasl timeout in src/irc/core/sasl.c.
     - CVE-2018-7073
Checksums-Sha1:
 768fea4d382a98210fd5131b507c82e45f4274b8 2226 irssi_1.0.5-1ubuntu4.dsc
 0d347988ddf988d8c0a5021c1727c17c356118ee 26308 irssi_1.0.5-1ubuntu4.debian.tar.xz
 2c17721d7b354bfc46fa7524b1aac7d8b572a7ef 6764 irssi_1.0.5-1ubuntu4_source.buildinfo
Checksums-Sha256:
 29660f9f5342ca49f4329be6473ee6eb1fdfbaeb163c5eeb11f771bdb6a49b94 2226 irssi_1.0.5-1ubuntu4.dsc
 f6f3db566fa0f627fb3ebfdf4f22e1b602c85578bba0ef3cbfdbbde620efea62 26308 irssi_1.0.5-1ubuntu4.debian.tar.xz
 3c1c1811360c3f34362efcb5c0ca884911245b24fa37ee681e5b25f2fa6a220d 6764 irssi_1.0.5-1ubuntu4_source.buildinfo
Files:
 8acd36f6bf3b1159df7c46886dded461 2226 net optional irssi_1.0.5-1ubuntu4.dsc
 097cc5a1a2492d32d5f1d18f7917b2e1 26308 net optional irssi_1.0.5-1ubuntu4.debian.tar.xz
 0cf08f14c4bf5826c2f66b47094ee8f8 6764 net optional irssi_1.0.5-1ubuntu4_source.buildinfo
Original-Maintainer: Rhonda D'Vine <rhonda at debian.org>

-----BEGIN PGP SIGNATURE-----
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=asGM
-----END PGP SIGNATURE-----


More information about the Bionic-changes mailing list