-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 30 Mar 2019 14:56:55 +0100 Source: gpsd Binary: gpsd gpsd-dbg gpsd-clients python-gps libgps21 libgps-dev libqgpsmm21 libqgpsmm-dev Architecture: source amd64 Version: 3.11-3+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Bernd Zeimetz <bzed@debian.org> Changed-By: Markus Koschany <apo@debian.org> Description: gpsd - Global Positioning System - daemon gpsd-clients - Global Positioning System - clients gpsd-dbg - Global Positioning System - debugging symbols libgps-dev - Global Positioning System - development files libgps21 - Global Positioning System - library libqgpsmm-dev - Global Positioning System - Qt wrapper for libgps (development) libqgpsmm21 - Global Positioning System - Qt wrapper for libgps python-gps - Global Positioning System - Python libraries Changes: gpsd (3.11-3+deb8u1) jessie-security; urgency=high . * Non-maintainer upload by the LTS team. * Fix CVE-2018-17937: A security vulnerability was discovered in gpsd, the Global Positioning System daemon. A stack-based buffer overflow may allow remote attackers to execute arbitrary code via traffic on port 2947/TCP or crafted JSON inputs. Checksums-Sha1: 8a0b7fc0f860118ae196cf6745bb63bd3c21c43c 2714 gpsd_3.11-3+deb8u1.dsc 9ba8a9bcf55f6d82b839cbddf3d9be64fdbfd06a 1579600 gpsd_3.11.orig.tar.gz f2733287b3cb384d4f191ccc04d46773b734706f 33080 gpsd_3.11-3+deb8u1.debian.tar.xz 53d80c765a8072f76a2649c9cedde52195304f1a 94938 gpsd_3.11-3+deb8u1_amd64.deb 1870f63d1e40675603652934e22c7ef13819a5ca 1335392 gpsd-dbg_3.11-3+deb8u1_amd64.deb e564f0785724cb3a55a1da6afbef76d85f375518 136754 gpsd-clients_3.11-3+deb8u1_amd64.deb 0c12ffbb863af36dd41ad9cd80bdea8b5882d617 96204 python-gps_3.11-3+deb8u1_amd64.deb 66b5b99de0791f6315ac129aa9b1a51bfeaed3ff 220726 libgps21_3.11-3+deb8u1_amd64.deb 226a7be64a51daecbe629c8162fd64a8c3cd2f34 132298 libgps-dev_3.11-3+deb8u1_amd64.deb 1e49b5fd7ce054c1c5f110a54be2ba29d244bd6b 91948 libqgpsmm21_3.11-3+deb8u1_amd64.deb 3fbbc14f56ad101625cfc5cb10c1960596275afb 43778 libqgpsmm-dev_3.11-3+deb8u1_amd64.deb Checksums-Sha256: 5f4ade5132e919e4030ddfc14e24c5c4ffb06ac447f84ef7febe9299ee328478 2714 gpsd_3.11-3+deb8u1.dsc ed66c6b6b1e2b4951de2c0b2399c22f77fe9f5927ef6b948dd8eb023ff53b7ee 1579600 gpsd_3.11.orig.tar.gz a615c97586ba6278eccf6ab2ccb20e7958fb05b7a666efc51e4288403d2453d1 33080 gpsd_3.11-3+deb8u1.debian.tar.xz a555fe24c3a60a1feecba3b21457b08d3367a779c3565903a2a71402745ed574 94938 gpsd_3.11-3+deb8u1_amd64.deb 4d6781631d660ed5bca4cd171b18e2de83f16a13df55fb6bb8426a9bf6ed4b16 1335392 gpsd-dbg_3.11-3+deb8u1_amd64.deb 162f4a114519b6d02eafdc984bb70bb5497b20338cedb44909494c549301f734 136754 gpsd-clients_3.11-3+deb8u1_amd64.deb 7b7369d1be850274560bc044b4841682de587732878fff0bd7eaa638c0be8cf2 96204 python-gps_3.11-3+deb8u1_amd64.deb f8a93798604688f65ecd56e4c7a43a20221c543dc1612ef38b75bcef08b9aa1b 220726 libgps21_3.11-3+deb8u1_amd64.deb 3ab97ed2e6241a3fda64d7cad45c2b676503590abcd2d9914874d9539119e627 132298 libgps-dev_3.11-3+deb8u1_amd64.deb a0bdf0282a5c3de0315e92d31dcc6e058e182a48017b2bbdb1615db230a93e75 91948 libqgpsmm21_3.11-3+deb8u1_amd64.deb a0f97a685346bc4a58d4d0bce23183a37b1ad374a6b00852b4481deda8f17da0 43778 libqgpsmm-dev_3.11-3+deb8u1_amd64.deb Files: bc85481428323758c89c4a46b42516a1 2714 misc optional gpsd_3.11-3+deb8u1.dsc ba28369992886fccb85ce560e4727e20 1579600 misc optional gpsd_3.11.orig.tar.gz 0ac646cd42accb1de7ab727c871ecccb 33080 misc optional gpsd_3.11-3+deb8u1.debian.tar.xz 88de64a551b68b0b2da4238067aeb335 94938 misc optional gpsd_3.11-3+deb8u1_amd64.deb 470fe4c2c9ad222de12a9160e3e0fd16 1335392 debug extra gpsd-dbg_3.11-3+deb8u1_amd64.deb ba75d8e59f6d4af6dff43694502e0ab1 136754 misc optional gpsd-clients_3.11-3+deb8u1_amd64.deb 5a101620728d73fb96297870ac9d54b5 96204 python optional python-gps_3.11-3+deb8u1_amd64.deb 0cfbf41864ef6e9717b45dae7c1e1bfa 220726 libs optional libgps21_3.11-3+deb8u1_amd64.deb 848deca5397bcf9d51ccbeed3c733fed 132298 libdevel optional libgps-dev_3.11-3+deb8u1_amd64.deb 59a0e0fdd8f10a47e951a0a1dac70712 91948 libs optional libqgpsmm21_3.11-3+deb8u1_amd64.deb 583d56c7923a08d85b25c174c4a2b1ae 43778 libdevel optional libqgpsmm-dev_3.11-3+deb8u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAlyfeo1fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkNkUQAIEWdQjh4Weu+bXKgbWwVmEZJmQErtpmgwVA nNs8V/t7ObhuEy3UW+ZGJIqjlWDAJqm6caz5bX0qa5MuQd+cQYmq3tDfNSmJVDyX 88+jZgPWsBVHK8BqDBBp8u0EcCTOAcCowdezLLFgCUqyoTrCaUh7kfOXfmyM9y53 I17nQf6HkvECzpgx3/cuptXf3njbTqdG2GJzz+mvOiEQ11xHTyhIghIfyNzR893M yVH9CBB76aJROI34sb8FS/se1ef86wLyqblF9pSgFfIfgLYMOcE9N6K3brXqHy0L 4LKSjNARBZ07YLBRif1iK8zuRDdqVEuj39Z/m4ceg99zI1U/z0A2RTui/gX6cs+M YtomqEDczW2dbfa/PT7xeU7Ith8hfgtAAgTp/4iu2rSk/bZz+bnz6Wo/RRGy5R6f SYLjW/cLZcbd0dLzeEGZkVPZKVcmppMAQsfjyNtsIrjAQq+qv/uPnWlWp2apPkQm nvM4aLo56h4JoxMzPyWKm2amD0bT/5AvwbwuNaR1rHZRIx1HBvi/cKPgjFwKNxC8 btbyVOCgI+groURoj5HVA7M46e1qKQR9YUK9usENS8svYO1rXIRvLs24IqSBL85n GyoAMrDq7iS86UIYhM4cYeSiF6Tj2KyggPhFR+VksXmXXyICLzc07i/VY3qizkzp 5QISDo6e =hZzD -----END PGP SIGNATURE-----