[ubuntu/kinetic-proposed] nbd 1:3.24-1 (Accepted)

Athos Ribeiro athos.ribeiro at canonical.com
Mon May 23 18:02:09 UTC 2022


nbd (1:3.24-1) unstable; urgency=medium

  * New upstream release.
    - CVE-2022-26495: Disallow name lenghts of (unsigned int)-1, by
      constraining the length to 4096 bytes
    - CVE-2022-26496: Fix buffer overflow in NBD_OPT_INFO/NBD_OPT_GO
      handling.
    - These security are tracked in the Debian BTS; Closes: #1006915.
    - nbd-server transaction logs can now optionally also log data
    - New binary: nbd-trplay, to replay (to an image) a transaction log.

Date: 2022-03-08 22:37:45.943368+00:00
Changed-By: Wouter Verhelst <wouter at debian.org>
Signed-By: Athos Ribeiro <athos.ribeiro at canonical.com>
https://launchpad.net/ubuntu/+source/nbd/1:3.24-1
-------------- next part --------------
Sorry, changesfile not available.


More information about the kinetic-changes mailing list