-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 19 Jul 2020 17:02:11 +0200 Source: xrdp Architecture: source Version: 0.9.9-1+deb10u1 Distribution: buster-security Urgency: high Maintainer: Debian Remote Maintainers <debian-remote@lists.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 964573 Changes: xrdp (0.9.9-1+deb10u1) buster-security; urgency=high . * Non-maintainer upload by the Security Team. * libscp v1 server set height twice, and not set width * xrdp-sesman can be crashed remotely over port 3350 (CVE-2020-4044) (Closes: #964573) * Fixed CVE-2020-4044 CI errors Checksums-Sha1: aa097733cf0226ef0140e93bbb91bfc7cde2cdc8 2430 xrdp_0.9.9-1+deb10u1.dsc 4d797be6e270305273806fe42d80a6e746f4c818 1866532 xrdp_0.9.9.orig.tar.gz e8f4c6f15994e432e7071072cc65ad4782306352 27872 xrdp_0.9.9-1+deb10u1.debian.tar.xz Checksums-Sha256: a6124cdaad754910c3d5def99c23e17f1d363a98d0fb2889a2422153a8c34fff 2430 xrdp_0.9.9-1+deb10u1.dsc 8edf33346a8b3718a828d2c998ac1a036ea707e7f02b47092c8ae20dd71a9362 1866532 xrdp_0.9.9.orig.tar.gz 813d5156e9f7cd8b81819c26b42da3696f2c504dbcd910f1d29e11d514a23b15 27872 xrdp_0.9.9-1+deb10u1.debian.tar.xz Files: beb677205062dba8302b3db291664279 2430 net optional xrdp_0.9.9-1+deb10u1.dsc d2f57182036c3f69dcaca0dfed4aaa6b 1866532 net optional xrdp_0.9.9.orig.tar.gz d9f383856dec7ff03ca29726c0542432 27872 net optional xrdp_0.9.9-1+deb10u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAl8UYVlfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89E/TQP/2kBfYRy0ux9X9ViRsQvJDeQiWgs7OVx 2Rynt93/9nDV/OEctrUqPztHuZKac0bLQJm5A20RxWmWMItudQvHm1ahiA625r83 5QJIx4IgFN2FlGnQiMyoTOCcERmSO7GqC9/sQHSkyvP6anuqWgjRW6ls3+U+MA84 IhFuH9xKourffjZ7JRzeO6VWNw6cnIQg1lRns2RK9iYe0ckbVck+3AQTCylLDwdF bC4HBFOV7lziFOrANPEE1YIz6TAJqH84MyXNfTVumH1CfEaNXLAhgvx+WbPoFI/T au8ol0ABxCS96YtJXQdPgymtPNpFCb1slxQOwBVnSvjAb6VB8YtN9wm/ewgwQkZ3 YgZD8ltPYw9bcAxb0sgGI1p8r3ZY9cQUp5S9XJ/hXiVz6HGBaEC10o0JMLcFOYH7 Psm/T4JxXhU56kjbQdEnfnXNfvaV5/2yuWi8OG5rsdQubgYFyBkFpuAO6Z1qWJ7A aEsg4VUVE11IE5u8TnCdKi9XZwmPBQrC2I3xEu0zzczdMQrD8nNP0rDbVim+n1WJ 8IuhyZCX2ApjJraLpZV3EgkwW0s4MJNE02+I0+WMJMngYX0/JpSgySchYN6XMLGA JB73TIkRSxXIRkTyZaMSK4rgCO/Bb8Zi0hLnbVwpNUY1mVz7fIhvUcI9rhQU+H/v GYQx/1tCoRxu =WWnP -----END PGP SIGNATURE-----