-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 25 Jun 2019 12:22:28 +0200 Source: rdesktop Binary: rdesktop Architecture: source amd64 Version: 1.8.6-0+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Jonas Meurer <jonas@freesources.org> Description: rdesktop - RDP client for Windows NT/2000 Terminal Server and Windows Server Closes: 930387 Changes: rdesktop (1.8.6-0+deb8u1) jessie-security; urgency=high . * Non-maintainer upload by the LTS Security Team. * Update to new upstream release 1.8.6. - Adds bound checking to protocol handling in order to fix possible security vulnerabilities when communicating with a malicious server. (Closes: #930387) No CVE has been assigned yet, but in Debian the issue is tracked here: https://security-tracker.debian.org/tracker/TEMP-0930387-988530 Checksums-Sha1: f38bfdd1d883c4cac0e7652cac3e4f3d78a084d0 1860 rdesktop_1.8.6-0+deb8u1.dsc 754f9fe7f3ac6195b33211bda2d3c84a62318bf1 393706 rdesktop_1.8.6.orig.tar.gz 839722b398dc0c8af95c13ef2e93c2c3faf96cf5 10056 rdesktop_1.8.6-0+deb8u1.debian.tar.xz 1a907dcb860abfbccbdaecf3cd53e289f60aedc0 182324 rdesktop_1.8.6-0+deb8u1_amd64.deb Checksums-Sha256: 0636013e5f91222fc259051150e431d6fa4b792c39787148a5a761ea4bb56dc4 1860 rdesktop_1.8.6-0+deb8u1.dsc ffb9f8e2f0b7a06e383e550698bdc9734ae33eb3ec971b0a094078434a4bba6d 393706 rdesktop_1.8.6.orig.tar.gz 30e1336745e1db394454354458585bce4c87e11d3392b3479e1fbd4f74c5bf49 10056 rdesktop_1.8.6-0+deb8u1.debian.tar.xz af9a5eac083ab425bf9f487b2cd068fcc0908d420c30f55a8ea7dd4198729559 182324 rdesktop_1.8.6-0+deb8u1_amd64.deb Files: f5616d58ba7099f22a8444566f74b589 1860 x11 optional rdesktop_1.8.6-0+deb8u1.dsc 63d0405f8c1d1d65b4305ca2f380746a 393706 x11 optional rdesktop_1.8.6.orig.tar.gz 921bd2b25086a397cdf03529bf50779d 10056 x11 optional rdesktop_1.8.6-0+deb8u1.debian.tar.xz 49558317107bb71a6b4299671d91fbf9 182324 x11 optional rdesktop_1.8.6-0+deb8u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEELIzSg9Pv30M4kOeDUmLn/0kQSf4FAl0SAsYACgkQUmLn/0kQ Sf4JZhAAh7ef14L7iOFrRILrxhl9RrTg9IvBI7n54IuYP+SAbqdvCCKGE1BL4lUB vOxImu+gJd65CHjjWYAn7Gf8i6Sny4PSdgX9QjdtJ3kP4HQX0d/EoKDl+0B7FyeY K4omSci1yrX9gdtpoc8vgoVIUvXtKUHE2bdVKnlhYBOunFDfbMIB4xy2VW3Pxvou OWrSSt1GXhQmgOVCxDSro04BFxq+pv2I8sumqBNh1bGBCh4UpJ+Klk5i9zOlMzp9 2Xt0AA6RL8qyF29Seckxv9WN7PnaWebV7cPGsZoWbyGti7iwweZ2gKCYkpI6wGO6 WOlg/l9uZKBHXNfqTp2sf5wnghW9H1DL7IDc5E2dMpILj2SgfkBabmd3Qezj2Kr8 FWGCUafRntr1OqQ+LzxXuymQk59FhXhAi9g/WvVyZtVFHasZ2ruoIaHu2iLB0Wni Hg/kNb2S7F1WK2MW7ZroGtfCgTMbCWC5hu74eSLZonPKFPChw+Mr9gjkGivY3S8k oR5rlOTSPAyIEme41ii/Ocn3U5sUf/nOm3cBzFi6lkJlyaC3VR2KE+6a0wjCl94n 6C9PT2voADBCUovJ2rBJgx9P53vaJnvNDAl8AfU1Ur5Agn5y4kWBIdFRyejlJ5i6 o7pEprZKl0gIsEjhdIXtTDeIUgmgRX9uAjYzaxL2eSB+f73blr8= =CW7o -----END PGP SIGNATURE-----