[ubuntu/saucy-proposed] nas 1.9.3-6 (Accepted)

Colin Watson cjwatson at canonical.com
Fri Aug 30 08:59:38 UTC 2013


nas (1.9.3-6) unstable; urgency=high

  * Fixes for various long-standing security issues found by Hamid
    Zamani <me at hamidx9.ir>. Closes: #720287
    + Validate the port offset of nasd to fix a potential buffer overflow
      (CVE-2013-4256)
    + Use better string functions to guard against heap overflows
      (CVE-2013-4257)
    + Sanity-check the TCP_DEVICE environment variable to remove a format
      string bug (CVE-2013-4258)

Date: 2013-08-28 10:16:29.272323+00:00
Changed-By: Steve McIntyre <steve.mcintyre at linaro.org>
Signed-By: Colin Watson <cjwatson at canonical.com>
https://launchpad.net/ubuntu/saucy/+source/nas/1.9.3-6
-------------- next part --------------
Sorry, changesfile not available.


More information about the Saucy-changes mailing list