[ubuntu/focal-proposed] libslirp 4.1.0-2ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Apr 21 15:37:48 UTC 2020


libslirp (4.1.0-2ubuntu2) focal; urgency=medium

  * SECURITY UPDATE: use-after-free in ip_reass()
    - debian/patches/CVE-2020-1983.patch: fix buffer handling in
      src/ip_input.c.
    - CVE-2020-1983

Date: Tue, 21 Apr 2020 07:18:28 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/libslirp/4.1.0-2ubuntu2
-------------- next part --------------
Format: 1.8
Date: Tue, 21 Apr 2020 07:18:28 -0400
Source: libslirp
Architecture: source
Version: 4.1.0-2ubuntu2
Distribution: focal
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
 libslirp (4.1.0-2ubuntu2) focal; urgency=medium
 .
   * SECURITY UPDATE: use-after-free in ip_reass()
     - debian/patches/CVE-2020-1983.patch: fix buffer handling in
       src/ip_input.c.
     - CVE-2020-1983
Checksums-Sha1:
 5625f0010af4d38677be9292112d5c35a1365fdd 2105 libslirp_4.1.0-2ubuntu2.dsc
 c0b8aea4c18f93f84fb0d27ae326305aec5ceb7b 7660 libslirp_4.1.0-2ubuntu2.debian.tar.xz
 1bd0a2f56bb95b4d13249a7030719a03bb0c0b0a 7093 libslirp_4.1.0-2ubuntu2_source.buildinfo
Checksums-Sha256:
 e6a547e589d6ed61b5a6b78cfe28c8ff45ecd884b4cbeb35c6243d208d876af8 2105 libslirp_4.1.0-2ubuntu2.dsc
 1daafcca043cc73736cb6de82c5acc1cc03ca164e31c3bf6cdc7c835244cfa73 7660 libslirp_4.1.0-2ubuntu2.debian.tar.xz
 491f75c1c7e478e2c28f3d4d23a526046f8e41fc4c7882637803ff73bf0ecbcd 7093 libslirp_4.1.0-2ubuntu2_source.buildinfo
Files:
 6aeb4f359cac9667ce4df5007ef45c2d 2105 net optional libslirp_4.1.0-2ubuntu2.dsc
 27874b3394f4e2518c1fb3ab5cac46f2 7660 net optional libslirp_4.1.0-2ubuntu2.debian.tar.xz
 4a87cb6bd080ae49e158e0ee46b7766b 7093 net optional libslirp_4.1.0-2ubuntu2_source.buildinfo
Original-Maintainer: Debian QEMU Team <pkg-qemu-devel at lists.alioth.debian.org>


More information about the Focal-changes mailing list