-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 17 Jan 2020 14:24:00 +0300 Source: libslirp Architecture: source Version: 4.1.0-2 Distribution: unstable Urgency: high Maintainer: Debian QEMU Team <pkg-qemu-devel@lists.alioth.debian.org> Changed-By: Michael Tokarev <mjt@tls.msk.ru> Closes: 949084 Changes: libslirp (4.1.0-2) unstable; urgency=high . * Closes: #949084, CVE-2020-7039: OOB buffer access while emulating tcp protocols in tcp_emu() This includes 3 patches: tcp_emu-fix-OOB-access-CVE-2020-7039.patch slirp-use-correct-size-while-emulating-commands-CVE-2020-7039.patch slirp-use-correct-size-while-emulating-IRC-commands-CVE-2020-7039.patch Checksums-Sha1: 8b2a475ecfa7ce890c44574c28b293f5671fb38c 1673 libslirp_4.1.0-2.dsc ca5b046c396a32d78a6ab15742be781e409ef229 5132 libslirp_4.1.0-2.debian.tar.xz ab99757b31b2a76fa3b692631c45b9012bc8c2dd 6285 libslirp_4.1.0-2_source.buildinfo Checksums-Sha256: 288303e048204581e4143fc01eea90a376917244e6201266a6a928ca2201387a 1673 libslirp_4.1.0-2.dsc 48bb87c4ef08554c0b21e68f6f388dcf1108477572f9b95c58e8c4e99642c3ad 5132 libslirp_4.1.0-2.debian.tar.xz 628ef027c0e3e78e6c1062aba87407a224715f8e65b41daf33826dcd1646510a 6285 libslirp_4.1.0-2_source.buildinfo Files: 1998d87125a53b34358b2a2f2c70993c 1673 net optional libslirp_4.1.0-2.dsc 7094963c24d7319c5bf6b4846ca40eb8 5132 net optional libslirp_4.1.0-2.debian.tar.xz c6e1bb5c39214759d5888d7f79999ec0 6285 net optional libslirp_4.1.0-2_source.buildinfo -----BEGIN PGP SIGNATURE----- iQFDBAEBCAAtFiEEe3O61ovnosKJMUsicBtPaxppPlkFAl4hmjIPHG1qdEB0bHMu bXNrLnJ1AAoJEHAbT2saaT5ZjHUIAK9A2sw2RTOtCcYobG9AYsYJ0ySdKqVk11Kc xxkBIoAR95W2BP01GGB27QmAfQ4owt6NaeB7/F2j0izY9cd+HBY7LrbUEBNm/Gy+ WHr/e4nKRhTL1MIUnKcbF2CiNC45BWAr2VA+C9lTvbkh2/d0xmc6DQPzsw7F4DoN U2uqqFNPJ+yKxd/QroiHIluVTFcRrElWssS0BdCbHGq3UnFXAWQHowfoEPQ1/ZEM pR6wo8sKwRwqb8PuygW1wf5Kr1mu+I49Ymhs3eRuds1StJ5BG057PEEYn1V00nyp ODWczSna1PWWqdt9N1tNlbxGI2V9KqqWEsrtuXYXAh/TkH027rw= =pb/e -----END PGP SIGNATURE-----