[ubuntu/resolute-proposed] util-linux 2.41.2-4ubuntu3 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Fri Jan 9 17:11:17 UTC 2026


util-linux (2.41.2-4ubuntu3) resolute; urgency=medium

  * SECURITY UPDATE: heap overread with 256-byte usernames
    - debian/patches/CVE-2025-14104-1.patch: add length check in
      login-utils/setpwnam.c.
    - debian/patches/CVE-2025-14104-2.patch: update buflen in
      login-utils/setpwnam.c.
    - CVE-2025-14104

Date: Fri, 09 Jan 2026 10:49:15 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/util-linux/2.41.2-4ubuntu3
-------------- next part --------------
Format: 1.8
Date: Fri, 09 Jan 2026 10:49:15 -0500
Source: util-linux
Built-For-Profiles: noudeb
Architecture: source
Version: 2.41.2-4ubuntu3
Distribution: resolute
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
 util-linux (2.41.2-4ubuntu3) resolute; urgency=medium
 .
   * SECURITY UPDATE: heap overread with 256-byte usernames
     - debian/patches/CVE-2025-14104-1.patch: add length check in
       login-utils/setpwnam.c.
     - debian/patches/CVE-2025-14104-2.patch: update buflen in
       login-utils/setpwnam.c.
     - CVE-2025-14104
Checksums-Sha1:
 77c2ac4d6edfef4799cf6cca6d962b2dfd5bcfea 5035 util-linux_2.41.2-4ubuntu3.dsc
 6d6ac51c4a02f80370d4650dd9af9e296f73c179 113324 util-linux_2.41.2-4ubuntu3.debian.tar.xz
 0caa81433f90b2b0c25a741de4ed6f80da30584e 9167 util-linux_2.41.2-4ubuntu3_source.buildinfo
Checksums-Sha256:
 e7a30984bb1f557f2779ad0d4dd2b7e3d0777594df6f4b7df70907f6f1da7515 5035 util-linux_2.41.2-4ubuntu3.dsc
 505b408c27b3e421533a1a4fccd506b52479d96d1ab0e413dbd1c9199c5bfc96 113324 util-linux_2.41.2-4ubuntu3.debian.tar.xz
 0e8da8f28e2c30ae25685413fe6b7886b14d2b604ea71241506aa2ad759922c9 9167 util-linux_2.41.2-4ubuntu3_source.buildinfo
Files:
 1a6e63dc10bd8979d59e7304f3b6164a 5035 utils required util-linux_2.41.2-4ubuntu3.dsc
 97830f994d2060a0b665f76dfc144f78 113324 utils required util-linux_2.41.2-4ubuntu3.debian.tar.xz
 72d85e6d0dbb9d838758eef38a83aa69 9167 utils required util-linux_2.41.2-4ubuntu3_source.buildinfo
Original-Maintainer: Chris Hofstaedtler <zeha at debian.org>


More information about the Resolute-changes mailing list