-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 09 Feb 2021 20:03:02 +0100 Source: slirp Binary: slirp Architecture: source amd64 Version: 1:1.0.17-8+deb9u1 Distribution: stretch-security Urgency: high Maintainer: Roberto Lumbreras <rover@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: slirp - SLIP/PPP emulator using a dial up shell account Changes: slirp (1:1.0.17-8+deb9u1) stretch-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2020-7039 Due to mismanagement of memory, a heap-based buffer overflow or other out-of-bounds access might happen, which can lead to a DoS or potential execute arbitrary code. * CVE-2020-8608 Prevent a buffer overflow vulnerability due to incorrect usage of return values from snprintf. Checksums-Sha1: aac43e628781ced92b78c47e433436a9b862b66a 1895 slirp_1.0.17-8+deb9u1.dsc 9b660f5365f1d9536d9171c1e0de490ab2232ec8 305754 slirp_1.0.17.orig.tar.gz 8b61aa2e858cd205a33cd45a2f1466680346cfe4 16404 slirp_1.0.17-8+deb9u1.debian.tar.xz 5bbf4a83bd806a724fb474c7c1df9c25d1b93d4f 528024 slirp-dbgsym_1.0.17-8+deb9u1_amd64.deb 3cd097d1da4d3bf3dd9c8d7bbfe81cff585e85b6 6277 slirp_1.0.17-8+deb9u1_amd64.buildinfo 53f9393f828e96722f09751bff0e0b090498e878 182704 slirp_1.0.17-8+deb9u1_amd64.deb Checksums-Sha256: c3e8698cf79afa911a76ef45e2630cd2fdcd837c63c2f9ee6ec7f7c603c78689 1895 slirp_1.0.17-8+deb9u1.dsc afe59cd298075aa1b9eba5a5f7cf720597372b8b81657de529b2cd35a2a2bc2e 305754 slirp_1.0.17.orig.tar.gz 913e97202f83b2e77cb94779e821f30af857a7c7c31d654d6fd7975a9a1538c3 16404 slirp_1.0.17-8+deb9u1.debian.tar.xz 7417f1f0b32d0eeb471892ee7a9f73691163eeaaf3f438160bfabe7a071dc906 528024 slirp-dbgsym_1.0.17-8+deb9u1_amd64.deb 424195bfbc253d9fdcce48298847634fc727fea88d358cfe9eca628eecdf6433 6277 slirp_1.0.17-8+deb9u1_amd64.buildinfo 80feea4a8a6f79c463a636e923f82e0412ed965ed4535230302b50ac19854ff0 182704 slirp_1.0.17-8+deb9u1_amd64.deb Files: e4efc26388fd10da5ea761abd25ecb34 1895 net optional slirp_1.0.17-8+deb9u1.dsc e167ee2023fbec89468b93b6bff6960e 305754 net optional slirp_1.0.17.orig.tar.gz 1541f8cf4bf519086875b5334cd4228b 16404 net optional slirp_1.0.17-8+deb9u1.debian.tar.xz 62c5e65a905013fe22c9bca8e868b758 528024 debug extra slirp-dbgsym_1.0.17-8+deb9u1_amd64.deb 4e1c0bbf9ab6ab6bed8dfdbdb699c3fa 6277 net optional slirp_1.0.17-8+deb9u1_amd64.buildinfo af5768ec66d9c42ae3866582a08ed3ea 182704 net optional slirp_1.0.17-8+deb9u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmAi5glfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYRzKyD/9+XH1xIjcY2akC2ak8qdOmRQV3uwsU eg3nlPzKtk+i9NBZmmZft3MLZ/KOeIpV5Tpjo+PwVOLvLdZeZn1CShdoyN7SvErF f/3ZdOn35Q8IkGe4Kn2+bTV/7+jFUNZSAtsdC/Yp2coVld6CYallG6DK4M8gXK6v 9K+PP3wDKT0U9CxqO6ngVrMy+BqiJUNCpwYb9GK56WdOns5iLOLXjX0y2jcKNcEC 2p53ae6muaF5y3Wr5v+3EIKjyBLGTfstMKwfCLZ/lYNlnHAad5V8KI4AzWKSFs5x WHTBNlKILt7FUdYDNl5bjE0WMuwV7fvtaSdmO9fFgv4KgWvaW6KNBJXuCloXk8EV IKnPxNu28hzIXZdOTv1lZ0Bks3wQCL3T/XKufsAEmIpuzbYsEIerskdi/rI1NxMO I0rtpHGdyO1ZpPXWhVmOx76ozAIH3Uaf8SUcNl7jcsi+aWP7oDJCBqlanwDzRhLl QzFRUkBc4CYDPEd0NNxbrAuVfCBcw4tsw32wUlTJSqEanSFisgx+l+tXsiRHgFBo V7QR0pMxl8L+7toGMrnSw33TlmUwsO6/B+ivIxSJ/BStBr4fweDn7q2ypQ1LWMWi /f4rfLmDxLFoebY12vwHDQGungHPLr/+Gfra0cb6scJtYsGXiSkD9vc+KCMg0UIV 2ZaLNj8Xfi0Hwg== =ylmf -----END PGP SIGNATURE-----