[ubuntu/focal-security] cryptsetup 2:2.2.2-3ubuntu2.2 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Mon Sep 14 13:11:20 UTC 2020


cryptsetup (2:2.2.2-3ubuntu2.2) focal-security; urgency=medium

  * SECURITY UPDATE: Out-of-bounds write
    - debian/patches/CVE-2020-14382-*.patch: check segment gaps regardless of
      heap space in lib/luks2/luks2_json_metadata.c.
    - CVE-2020-14382
  * debian/patches/decrease_memlock_ulimit.patch
    Fixed FTBFS due a restrict environment in the new Bionic Builder (LP: #1891473)
    tests/luks2-validation.test, tests/compat-test, tests/tcrypt-compat-test.
    - Thanks Guilherme G. Piccoli.

Date: 2020-09-10 12:07:14.127364+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/cryptsetup/2:2.2.2-3ubuntu2.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list