[ubuntu/precise-updates] nas 1.9.3-4ubuntu0.1 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Tue Oct 1 17:58:08 UTC 2013


nas (1.9.3-4ubuntu0.1) precise-security; urgency=low

  * SECURITY UPDATE: denial and possible code execution via multiple buffer
    overflows
    - server/os/utils.c: properly validate listen port.
    - server/os/connection.c, server/os/access.c, server/os/osinit.c,
      server/os/aulog.c, server/os/iopreader.c: use snprintf, strncpy, and
      strncat.
    - CVE-2013-4256
    - CVE-2013-4257

Date: 2013-09-03 17:06:13.516810+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/precise/+source/nas/1.9.3-4ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list