[ubuntu/resolute-proposed] gpsd 3.27-1.1ubuntu1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Jan 6 19:02:17 UTC 2026


gpsd (3.27-1.1ubuntu1) resolute; urgency=medium

  * SECURITY UPDATE: heap OOB write in NMEA2000 PGN 129540 driver
    - debian/patches/CVE-2025-67268.patch: fix skyview buffer overrun in
      drivers/driver_nmea2000.c.
    - CVE-2025-67268
  * SECURITY UPDATE: integer underflow when parsing a NAVCOM packet
    - debian/patches/CVE-2025-67269.patch: fix integer underflow in
      malicious Navcom packet in gpsd/packet.c.
    - CVE-2025-67269

Date: Tue, 06 Jan 2026 13:32:53 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/gpsd/3.27-1.1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Tue, 06 Jan 2026 13:32:53 -0500
Source: gpsd
Built-For-Profiles: noudeb
Architecture: source
Version: 3.27-1.1ubuntu1
Distribution: resolute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
 gpsd (3.27-1.1ubuntu1) resolute; urgency=medium
 .
   * SECURITY UPDATE: heap OOB write in NMEA2000 PGN 129540 driver
     - debian/patches/CVE-2025-67268.patch: fix skyview buffer overrun in
       drivers/driver_nmea2000.c.
     - CVE-2025-67268
   * SECURITY UPDATE: integer underflow when parsing a NAVCOM packet
     - debian/patches/CVE-2025-67269.patch: fix integer underflow in
       malicious Navcom packet in gpsd/packet.c.
     - CVE-2025-67269
Checksums-Sha1:
 0bacdf74294b8cca58776f5fc6668afac3940db6 3177 gpsd_3.27-1.1ubuntu1.dsc
 a40c7ed141ea03118c1c936f0fa5873b7c6df2c8 53960 gpsd_3.27-1.1ubuntu1.debian.tar.xz
 be65ec62ef2530c37035a72cc9e5c42d8937f059 18263 gpsd_3.27-1.1ubuntu1_source.buildinfo
Checksums-Sha256:
 bc23a64d2399429f6827762cf7e9c1723e0b572865f373d1d1370376c8826554 3177 gpsd_3.27-1.1ubuntu1.dsc
 eec90c2b62fabc973c88d0c94cf3daf1bc07a3124fe82620c288387d69946047 53960 gpsd_3.27-1.1ubuntu1.debian.tar.xz
 155c7849643716c483639e79aad218fa981b5cf334d2ba13f9220cd54d529fad 18263 gpsd_3.27-1.1ubuntu1_source.buildinfo
Files:
 d1ed76bee362ed55d3a8ae5e06ec30d1 3177 misc optional gpsd_3.27-1.1ubuntu1.dsc
 00542c722be0bc7f801abbf2025f5c33 53960 misc optional gpsd_3.27-1.1ubuntu1.debian.tar.xz
 f4cf0a49c8f944e54509e69f087a72d7 18263 misc optional gpsd_3.27-1.1ubuntu1_source.buildinfo
Original-Maintainer: Boian Bonev <bbonev at ipacct.com>


More information about the Resolute-changes mailing list