[ubuntu/feisty-security] cpio_2.6-17ubuntu0.7.04.1_sparc_translations.tar.gz, cpio_2.6-17ubuntu0.7.04.1_i386_translations.tar.gz, cpio_2.6-17ubuntu0.7.04.1_powerpc_translations.tar.gz, cpio, cpio_2.6-17ubuntu0.7.04.1_ia64_translations.tar.gz, cpio_2.6-17ubuntu0.7.04.1_amd64_translations.tar.gz 2.6-17ubuntu0.7.04.1 (Accepted)

Ubuntu Installer archive at ubuntu.com
Thu Oct 2 18:55:13 BST 2008


cpio (2.6-17ubuntu0.7.04.1) feisty-security; urgency=low

  * SECURITY UPDATE: Buffer overflow in the safer_name_suffix function in GNU
    cpio has unspecified attack vectors and impact, resulting in a "crashing
    stack."
  * src/copyin.c: patch copyin.c to correct an allocation weakness in
    safer_name_suffix() which could lead to a crash. Thanks to Stephan Hermann
  * References:
    CVE-2007-4476
    LP: #161173

Date: Mon, 29 Sep 2008 16:58:13 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Clint Adams <schizo at debian.org>
https://launchpad.net/ubuntu/feisty/+source/cpio/2.6-17ubuntu0.7.04.1
-------------- next part --------------
Format: 1.7
Date: Mon, 29 Sep 2008 16:58:13 -0500
Source: cpio
Binary: cpio
Architecture: amd64_translations amd64 i386_translations i386 ia64_translations ia64 powerpc_translations powerpc source sparc_translations sparc
Version: 2.6-17ubuntu0.7.04.1
Distribution: feisty-security
Urgency: low
Maintainer: Clint Adams <schizo at debian.org>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
 cpio       - GNU cpio -- a program to manage archives of files
Changes:
 cpio (2.6-17ubuntu0.7.04.1) feisty-security; urgency=low
 .
   * SECURITY UPDATE: Buffer overflow in the safer_name_suffix function in GNU
     cpio has unspecified attack vectors and impact, resulting in a "crashing
     stack."
   * src/copyin.c: patch copyin.c to correct an allocation weakness in
     safer_name_suffix() which could lead to a crash. Thanks to Stephan Hermann
   * References:
     CVE-2007-4476
     LP: #161173
Files:
 8e9ec28331d06646b742cfc17ae9114e 103010 utils important cpio_2.6-17ubuntu0.7.04.1_amd64.deb
 44f0db9d6da55766eec146ea1a47f982 81328 raw-translations - cpio_2.6-17ubuntu0.7.04.1_amd64_translations.tar.gz
 73731d39ac27aef0aa877988aaa1b931 97468 utils important cpio_2.6-17ubuntu0.7.04.1_i386.deb
 8a2dfe304133487e692d4916fe094ff9 81333 raw-translations - cpio_2.6-17ubuntu0.7.04.1_i386_translations.tar.gz
 3b562d08adac2629a15f60bb7dd0cba2 137048 utils important cpio_2.6-17ubuntu0.7.04.1_ia64.deb
 f2f3ec9d885ae96236ee03fa4b500d0e 81329 raw-translations - cpio_2.6-17ubuntu0.7.04.1_ia64_translations.tar.gz
 f7fd3f9680e69708c522628e55b187ab 106366 utils important cpio_2.6-17ubuntu0.7.04.1_powerpc.deb
 6145e184bbef38620f8a4c2e36b5eed5 81352 raw-translations - cpio_2.6-17ubuntu0.7.04.1_powerpc_translations.tar.gz
 525b21bd40294fbe826b49fe028708c9 569 utils important cpio_2.6-17ubuntu0.7.04.1.dsc
 a3bcce318e104b941b22cbc0f71c5174 460609 utils important cpio_2.6-17ubuntu0.7.04.1.diff.gz
 162d787d7f348112fb0fb37c75dc428d 98544 utils important cpio_2.6-17ubuntu0.7.04.1_sparc.deb
 d5f04021648069f1a66901cb95fd02fd 81359 raw-translations - cpio_2.6-17ubuntu0.7.04.1_sparc_translations.tar.gz
Launchpad-Bugs-Fixed: 161173


More information about the feisty-changes mailing list