[ubuntu/wily-security] dosfstools 3.0.28-1ubuntu0.1 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Tue May 31 15:01:11 UTC 2016


dosfstools (3.0.28-1ubuntu0.1) wily-security; urgency=medium

  * SECURITY UPDATE: out of bounds read denial of service
    - debian/patches/date_oob_read.patch: prevent out of bounds array read
      in src/check.c.
    - No CVE number
  * SECURITY UPDATE: memory corruption via off-by-2 in FAT12
    - debian/patches/CVE-2015-8872.patch: fix FAT12 logic in src/fat.c.
    - CVE-2015-8872
  * SECURITY UPDATE: heap overflow via excessive FAT size specifications
    - debian/patches/CVE-2016-4804.patch: change size and perform checks in
      src/boot.c, src/fsck.fat.h.
    - CVE-2016-4804

Date: 2016-05-26 12:30:19.095460+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/dosfstools/3.0.28-1ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Wily-changes mailing list