[ubuntu/eoan-proposed] exim4 4.92-7ubuntu2 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Thu Jul 25 17:09:14 UTC 2019
exim4 (4.92-7ubuntu2) eoan; urgency=medium
* SECURITY UPDATE: code execution via ${sort }
- debian/patches/CVE-2019-13917.patch: avoid re-expansion in ${sort }
in src/expand.c.
- CVE-2019-13917
Date: Thu, 25 Jul 2019 12:58:39 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/exim4/4.92-7ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Thu, 25 Jul 2019 12:58:39 -0400
Source: exim4
Architecture: source
Version: 4.92-7ubuntu2
Distribution: eoan
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
exim4 (4.92-7ubuntu2) eoan; urgency=medium
.
* SECURITY UPDATE: code execution via ${sort }
- debian/patches/CVE-2019-13917.patch: avoid re-expansion in ${sort }
in src/expand.c.
- CVE-2019-13917
Checksums-Sha1:
7bcd3282da6eff119cc0fe707a3c5f000a78fd55 2708 exim4_4.92-7ubuntu2.dsc
1c638f2cc5440b06418e1639f4f7f24057cfca18 473032 exim4_4.92-7ubuntu2.debian.tar.xz
d30e21dcc2e076b08775c6ee65dab3c7f9702061 9049 exim4_4.92-7ubuntu2_source.buildinfo
Checksums-Sha256:
03cc614093f6727e4ddabdcaf1d001c854de97b9fe3ecbbac52043943f79f9b8 2708 exim4_4.92-7ubuntu2.dsc
9ccb6a26befd800de5e608826b8db492ee86b47d90b86879f5fb2bef1e8fa421 473032 exim4_4.92-7ubuntu2.debian.tar.xz
957e4ee14b8bf51df2bfdde9b6cad8f62bd2616cc8074af35d20838e6222a784 9049 exim4_4.92-7ubuntu2_source.buildinfo
Files:
4ce5295cfec6537ca3bda36838186cf2 2708 mail standard exim4_4.92-7ubuntu2.dsc
6e247bcc72ebc53aff41873446d510f1 473032 mail standard exim4_4.92-7ubuntu2.debian.tar.xz
f89ddf6e9a79c056e65d18ff034ae199 9049 mail standard exim4_4.92-7ubuntu2_source.buildinfo
Original-Maintainer: Exim4 Maintainers <pkg-exim4-maintainers at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEUMSg3c8x5FLOsZtRZWnYVadEvpMFAl054b4ACgkQZWnYVadE
vpPLWg/+Jd2emWFjT4ur7nzXH6377mjznT/3Wl3gTT1plts5fTi3s2vsibyoh+gF
lyWIH18lK5XCTk4hRMmaGGmF7M1UEHxCf9647s/63reoWa1P16PSyE9l5ue3MXbS
ugf4imsXa1J+B7AhPhHMF+LA6YeeeE3dAKcyffGjb97XvXUM9sj5/DNDalsYL0rB
357qC14UNKkFTXul+pEfwyacWxLVwV3NLrml6WChwXgfuSSnMoQcAfekXOnPR6FY
kabfGDCrt8/9NvpsPuRDp795d/r4t3pTV85jxIGdARS/6FV7yEsYbblL5ANeCHwv
Rk0/VuvA2phrm5kK9m8d7zbezTZ+fHv9LXi2QBY5UYw/29kYaNqAR5QVGm+VCV64
q1ngw0wB/fMC2vb/qmfbV5PrKsMN0t81eU9N/svSAVx47vC/0SFpIXxfPjnfWG7W
aGv8H4BCbY+Fe6obtpFK7Y6Ux8Fdy0aT+J+n7/3nszxGNhWTooi3de/RR6+j3Syg
Mpxzo4R9FzhXUGL6TXzrO+2h3JzR+iYrmOBQQnyUQ5hEMeQ2jDAXKamQ8K5euxbC
sOeYo3L+kphS33mNKuY6CNeAqqq8ckxmi8tukZMo6Qqo4hOvJ3iYl0MbYMJ0WdZZ
pgsNpYkK43WLu5ZJGYmL2Bx+6CFNAAA2FIc5/sf/+58GK8THixE=
=RwrU
-----END PGP SIGNATURE-----
More information about the Eoan-changes
mailing list