-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 17 May 2018 16:28:00 +0200 Source: procps Binary: procps libprocps3 libprocps3-dev Architecture: source Version: 2:3.3.9-9+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Craig Small <csmall@debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: libprocps3 - library for accessing process information from /proc libprocps3-dev - library for accessing process information from /proc procps - /proc file system utilities Changes: procps (2:3.3.9-9+deb8u1) jessie-security; urgency=high . * Non-maintainer upload by the Security Team. * top: Do not default to the cwd in configs_read(). (CVE-2018-1122) * ps/output.c: Fix outbuf overflows in pr_args() etc. (CVE-2018-1123) * proc/readproc.c: Fix bugs and overflows in file2strvec(). (CVE-2018-1124) * pgrep: Prevent a potential stack-based buffer overflow (CVE-2018-1125) * proc/alloc.*: Use size_t, not unsigned int. (CVE-2018-1126) Checksums-Sha1: 6c6baeb92159b6f4d0cc8cb64882fffeacd4504e 2249 procps_3.3.9-9+deb8u1.dsc 088c77631745fc75ee41fc29c254a4069be4869a 560812 procps_3.3.9.orig.tar.xz 2d54bbf4e734d37cdcde4c18e79a34b13094b9d5 41180 procps_3.3.9-9+deb8u1.debian.tar.xz Checksums-Sha256: 1137afe6cd82a3f2f70402f6091c9f7a4898c6da9dcf4b89c39cb315e5432d16 2249 procps_3.3.9-9+deb8u1.dsc 00f0cb0fadf968ddf605b0ef119846af07386629244d4f3da711a2cecf4e8663 560812 procps_3.3.9.orig.tar.xz 41aeb4ebb60ebad15e9c30fb736ee15b4a5d8045c39d3ecf31e8b1237752bc28 41180 procps_3.3.9-9+deb8u1.debian.tar.xz Files: 4ce0c3d80fc3f32555c7a321f9082d88 2249 admin important procps_3.3.9-9+deb8u1.dsc 0980646fa25e0be58f7afb6b98f79d74 560812 admin important procps_3.3.9.orig.tar.xz c78d17d2b5bd5ef1a07d9b775152c573 41180 admin important procps_3.3.9-9+deb8u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAlr9s/RfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89EiWwQAJQjoA+FovoJ3hgLN48YvHJPXnzyyQgF hMxd4qYIC32dYgzMf7Faut54hZ1QoouBdWFChJuze1BruyISq+WpMVc/JG6TKSSP YtNG7WyF8ifKy4Pg4+HuxGbFJYdXsv4zQkb7npLdZb7pseDlLXO+XiaVwPBls8P5 ZdQyvqSO4Syqq3z+JUA7EsJ53mhSkFqe/P5fSTCXff8E0h/KKZSqFU2MvxUVP5e+ NimKu46bvZ237RxWL4weRpwrCWsbMercaFwyYGuM9D8Mf69X6VUn2fN9SnwN4Qe+ r3V3z8g+sDHzsaj/qTx32XDQECBEbI6ljFC05BlunprumF2bdKgrjAR8N06snvHm s45xJagYfHMuHD5dkYPOHrD0dv5XsgUtwskiqEC/fwd6Gp+eMVIwfeJDZ5FSlbaQ mS0YY4W4FUbR7c1qDoh7aRn2Cee76aVUf076g/GhQ4BpgIezg5GBBG0usUhr9XLK V8cWr3y79a9o7Jj4yDwM2db6zUq6m0d1ev9dJ3Ta7hBYGroS79tmqDfyYKA+61iD epku8820GgKmoZTevT59fuokeOOjVfTj704IE3WNjJvruM1BzZZS5Yb2o78J+VFq ueVmJPdtKAXOshaTABPjbe20j3/F86jNeA5hvgLUVUgLqkS8FsCtzoGTlkr+lP/c J+kSoQJ5dndc =yrAx -----END PGP SIGNATURE-----