-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 31 Aug 2017 21:01:20 +0200 Source: ncurses Binary: libtinfo5 libtinfo5-udeb libncurses5 libtinfo-dev libtinfo5-dbg libncurses5-dev libncurses5-dbg libncursesw5 libncursesw5-dev libncursesw5-dbg lib64ncurses5 lib64ncurses5-dev lib32ncurses5 lib32ncurses5-dev lib32ncursesw5 lib32ncursesw5-dev lib64tinfo5 lib32tinfo5 lib32tinfo-dev ncurses-bin ncurses-base ncurses-term ncurses-examples ncurses-doc Architecture: source Version: 6.0+20170827-1 Distribution: unstable Urgency: medium Maintainer: Craig Small <csmall@debian.org> Changed-By: Sven Joachim <svenjoac@gmx.de> Description: lib32ncurses5 - shared libraries for terminal handling (32-bit) lib32ncurses5-dev - developer's libraries for ncurses (32-bit) lib32ncursesw5 - shared libraries for terminal handling (wide character support) ( lib32ncursesw5-dev - developer's libraries for ncursesw (32-bit) lib32tinfo-dev - developer's library for the low-level terminfo library (32-bit) lib32tinfo5 - shared low-level terminfo library for terminal handling (32-bit) lib64ncurses5 - shared libraries for terminal handling (64-bit) lib64ncurses5-dev - developer's libraries for ncurses (64-bit) lib64tinfo5 - shared low-level terminfo library for terminal handling (64-bit) libncurses5 - shared libraries for terminal handling libncurses5-dbg - debugging/profiling libraries for ncurses libncurses5-dev - developer's libraries for ncurses libncursesw5 - shared libraries for terminal handling (wide character support) libncursesw5-dbg - debugging/profiling libraries for ncursesw libncursesw5-dev - developer's libraries for ncursesw libtinfo-dev - developer's library for the low-level terminfo library libtinfo5 - shared low-level terminfo library for terminal handling libtinfo5-dbg - debugging/profiling library for the low-level terminfo library libtinfo5-udeb - shared low-level terminfo library for terminal handling - udeb (udeb) ncurses-base - basic terminal type definitions ncurses-bin - terminal-related programs and man pages ncurses-doc - developer's guide and documentation for ncurses ncurses-examples - test programs and examples for ncurses ncurses-term - additional terminal type definitions Closes: 371855 873723 Changes: ncurses (6.0+20170827-1) unstable; urgency=medium . * New upstream patchlevel. - Add/improve checks in tic's parser to address invalid input (Closes: #873723). + Add a check in comp_scan.c to handle the special case where a nontext file ending with a NUL rather than newline is given to tic as input (CVE-2017-13728). + Allow for cancelled capabilities in _nc_save_str (CVE-2017-13729). + Add validity checks for "use=" target in _nc_parse_entry (CVE-2017-13730). + Check for invalid strings in postprocess_termcap (CVE-2017-13731). + Reset secondary pointers on EOF in next_char() (CVE-2017-13732). + Guard _nc_safe_strcpy() and _nc_safe_strcat() against calls using cancelled strings (CVE-2017-13734). - Add usage message to clear command (Closes: #371855). * Configure the test programs with --datadir=/usr/share/ncurses-examples. * Look for tarballs on ftp.invisible-island.net in the watch files. Checksums-Sha1: c074c90c5a410b0d36622fd0db58dc13286ae068 4021 ncurses_6.0+20170827-1.dsc 7778568c63ff150f584577fe749d1a9408fe4e09 3322384 ncurses_6.0+20170827.orig.tar.gz fcf51edf4e07c8efe2d1e24669ead566384b5922 267 ncurses_6.0+20170827.orig.tar.gz.asc df29dc7296998cf70428167ea405c7724721659b 53448 ncurses_6.0+20170827-1.debian.tar.xz c8d57db8fcf7c1627f5ca35dc4f6b4a131ac6b60 7384 ncurses_6.0+20170827-1_source.buildinfo Checksums-Sha256: f7476efad8861e2ee8ea105461d415f9362cb4f3aec8657f47defef0bb229f5c 4021 ncurses_6.0+20170827-1.dsc 148193cef8ad2cf3cb1fc207c1b16ea1ace3b6b19b9d975e7d1841acf53c37ea 3322384 ncurses_6.0+20170827.orig.tar.gz f6cc0117fb10834c557bc2d1ed336bee1898961ddb1e965325d5a7d3687de7e7 267 ncurses_6.0+20170827.orig.tar.gz.asc 66d89732a20568a74ef193d2d2a9dc5aa81c3b39150a4ce80bf659f4bef1e3ee 53448 ncurses_6.0+20170827-1.debian.tar.xz a04129087f88ff5eb7d5d7163211e86efb3578bdd1dfb3511092ee640d2001e4 7384 ncurses_6.0+20170827-1_source.buildinfo Files: 091ef9ce7262b2a04968523d7ba4f389 4021 libs required ncurses_6.0+20170827-1.dsc 08fdc01a498f19ee75d8638c5504cdb1 3322384 libs required ncurses_6.0+20170827.orig.tar.gz da1f906d1c9786becefa9aedbe1ac697 267 libs required ncurses_6.0+20170827.orig.tar.gz.asc 5b411e999b5c1cccf44386a2b6d33947 53448 libs required ncurses_6.0+20170827-1.debian.tar.xz 5e23bc0f62948d858610e1ce1cacdfe5 7384 libs required ncurses_6.0+20170827-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKF8heKgv5Jai5p4QOxBucY1rMawFAlmoXh4ACgkQOxBucY1r Maw48Q/9GBEXoBWMJstgeb6frE7UyctrzztN5URVWDtn3IbvfA89ruxgxiNx5uZA DAkhlGeIyZTOkhnPoLEFvnADeLeyaSOVCne5ZIQ+RtKEbZyycY0mqUoBYszBEk8B 7gMbu47EXwoVGP1v01pzDPruyXi9pSOKuHUrEbNuiWqOx+mK+5XSeD1FC0SXY8d0 H8kiqnmPftSPyM+ggjc7/xXAUFfktyzOOWAlXi32hpOzPhmndRcFRZs0lNYRYbg6 lOkfaUzebT681UZ/ou8zU0HJfiA4mwTj+tldZPO+TfM20OF+y05Va72VwE/noZGr hP1GFY73Dx664+a1A1jJTojV9IgR9GqQi18K3fi6GnLEwx/+n48W+g/Q5wbaINoe MFf2Dpgu9/hu4Q8mg2jN0MUrPLxMSNpLJsrCzx8S2xZfWv6eniZmWoZ027/Vos3Y PgAq7O1CZIvA3dnD/I7Op+kMmvUSjBb/xqM+F1mzgQfXb/ZkNZKRV+ZDmjEmaP6+ 8Li1+ErSpspSGr0ClZoDOEt4vuOfVQZ78ZDnikveU6pFX8VbKEZM1c8a3oOatek+ 6kxcg+xEKvLtpwwhpsJ+zUz1vNon7tKmkrlC3G4M04y7wdIn9l2qdsF25C/Z8wJG v5JF8OoaHchUcSc13OZNbaQdaUy7PzpwVI7XYI9xImn5v2zqwr0= =RipQ -----END PGP SIGNATURE-----