[ubuntu/groovy-proposed] cryptsetup 2:2.3.3-1ubuntu5 (Accepted)
Leonidas S. Barbosa
leo.barbosa at canonical.com
Mon Sep 14 14:07:19 UTC 2020
cryptsetup (2:2.3.3-1ubuntu5) groovy; urgency=medium
* SECURITY UPDATE: Out-of-bounds write
- debian/patches/CVE-2020-14382-*.patch: check segment gaps regardless of
heap space in lib/luks2/luks2_json_metadata.c.
- CVE-2020-14382
* debian/patches/decrease_memlock_ulimit.patch
Fixed FTBFS due a restrict environment in the new Bionic Builder (LP: #1891473)
tests/luks2-validation.test, tests/compat-test, tests/tcrypt-compat-test.
- Thanks Guilherme G. Piccoli.
Date: Wed, 09 Sep 2020 09:29:17 -0300
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/cryptsetup/2:2.3.3-1ubuntu5
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Wed, 09 Sep 2020 09:29:17 -0300
Source: cryptsetup
Architecture: source
Version: 2:2.3.3-1ubuntu5
Distribution: groovy
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Leonidas S. Barbosa <leo.barbosa at canonical.com>
Launchpad-Bugs-Fixed: 1891473
Changes:
cryptsetup (2:2.3.3-1ubuntu5) groovy; urgency=medium
.
* SECURITY UPDATE: Out-of-bounds write
- debian/patches/CVE-2020-14382-*.patch: check segment gaps regardless of
heap space in lib/luks2/luks2_json_metadata.c.
- CVE-2020-14382
* debian/patches/decrease_memlock_ulimit.patch
Fixed FTBFS due a restrict environment in the new Bionic Builder (LP: #1891473)
tests/luks2-validation.test, tests/compat-test, tests/tcrypt-compat-test.
- Thanks Guilherme G. Piccoli.
Checksums-Sha1:
0b29c3515908e869a302b57f4cf54745621589cc 2939 cryptsetup_2.3.3-1ubuntu5.dsc
2fad6548ecc93ce0cff7174d878ad18f9598738c 126740 cryptsetup_2.3.3-1ubuntu5.debian.tar.xz
7277bebed509dd80cb34231056de39bfdf09cc84 6959 cryptsetup_2.3.3-1ubuntu5_source.buildinfo
Checksums-Sha256:
02a3b4267650ef41b8d05d1813e57ee4d18dd4d7dba59212570a58f086b5d5fe 2939 cryptsetup_2.3.3-1ubuntu5.dsc
c38306d4952c70911bced49d107f1409043d29747449a9cb1194038e5a7afb00 126740 cryptsetup_2.3.3-1ubuntu5.debian.tar.xz
b0e99b4f6428ce8ea09d8e63089760e83b5caf9fe6c54d201a07b3a98eb69334 6959 cryptsetup_2.3.3-1ubuntu5_source.buildinfo
Files:
f9b4945351af464c7ba729a74be2c0c7 2939 admin optional cryptsetup_2.3.3-1ubuntu5.dsc
11c044fe5680a1ca6793a6d218281aad 126740 admin optional cryptsetup_2.3.3-1ubuntu5.debian.tar.xz
9d2042e40b0c192203b7a34a7c0f9c7c 6959 admin optional cryptsetup_2.3.3-1ubuntu5_source.buildinfo
Original-Maintainer: Debian Cryptsetup Team <pkg-cryptsetup-devel at alioth-lists.debian.net>
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEUMSg3c8x5FLOsZtRZWnYVadEvpMFAl9feG4ACgkQZWnYVadE
vpP3Tw/9GsFcTu20WFrOp8vX3Ar4YjZuKxspAtTEZgTjCau/mngsQAYkzWtqZjEz
BjpO28TwPRnhKS2ncbQMGpC6a6q73e+pZhS4a6URmGpv54o4IAItIosusbjQawzU
GTiQoYHwhUwV8jcuRMBYxhjVci0SLtso2+rBLoAqDTyPNducpIUA3B06dzah0fYo
Bp2mKRzUG/MmNeoHYn8OP5325dP+nCv0Ew2uqdALsfVEYZ5zZsXYhN0KJzc7gzp8
23LicUR8vP1wroJRLN2iYZT+BlDcvN2R/VoTYnANxs6uhYuKvTAqf2oSAJkb0orb
dxJ4lq+HY5NngJZpUx6gYL07Bva/K4LHyxuxusdaXjqKEXFnMC3lt2u7Iwz1HLvm
G3p5uBPCFbP2bAJiQslSpel0ond2UvzQhYYHvgajZaKW4RebkFOE5xG6S34Cc2TS
YS73xmhg0r97DsSfX7RnXsyoBaLFqgwDnuQQ38+hVQAtQGBcy6kPWBZ13l6vL0bL
fQ5l7Rt5avJPw/SHJAkITBlhtc4Q8WmTru7X4HOEDEhgErkQbFT/iKwyMW4UguiN
47XYfegXSrA+Sg4g44mOmKKRs5ODNSfvxXeB9UbaXq6p955Unj2cxxgdLwSPuVXj
PHp3Qp8oUlHHZqV7E3F8zVLHBPaIWxROyTb5w8JJPopeM4VfJGI=
=Nkm9
-----END PGP SIGNATURE-----
More information about the Groovy-changes
mailing list