aide 0.16.1-1ubuntu0.1 source package in Ubuntu

Changelog

aide (0.16.1-1ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: heap overflow in base64 functions
    - debian/patches/CVE-2021-45417.patch: use appropriate lengths in
      include/base64.h, src/base64.c, src/db.c.
    - CVE-2021-45417

 -- Marc Deslauriers <email address hidden>  Mon, 17 Jan 2022 07:02:10 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Focal
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
admin
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Focal updates main admin
Focal security main admin

Downloads

File Size SHA-256 Checksum
aide_0.16.1.orig.tar.gz 382.4 KiB 0f2b7cecc70c1a27d35c06c98804fcdb9f326630de5d035afc447122186010b7
aide_0.16.1.orig.tar.gz.asc 659 bytes 25c9a30763919a24ab2d5d464f9f633c6b1782b3ba28f6542ed1c8f0865956db
aide_0.16.1-1ubuntu0.1.debian.tar.xz 85.3 KiB 1638e0a9820dfe2954dee3287780d6ce267b819f2de066a7960ff55c473dcb81
aide_0.16.1-1ubuntu0.1.dsc 2.5 KiB b0a713302851f600770f48fa1859b1eba7b6119050df910fd05fb6cc834fc459

View changes file

Binary packages built by this source

aide: Advanced Intrusion Detection Environment - static binary

 AIDE is an intrusion detection system that detects changes to files on
 the local system. It creates a database from the regular expression rules
 that it finds from the config file. Once this database is initialized
 it can be used to verify the integrity of the files. It has several
 message digest algorithms (md5, sha1, rmd160, tiger, haval, etc.) that are
 used to check the integrity of the file. More algorithms can be added
 with relative ease. All of the usual file attributes can also be checked
 for inconsistencies.
 .
 This package contains the statically linked binary for "normal"
 systems.

aide-common: Advanced Intrusion Detection Environment - Common files

 AIDE is an intrusion detection system that detects changes to files on
 the local system. It creates a database from the regular expression rules
 that it finds from the config file. Once this database is initialized
 it can be used to verify the integrity of the files. It has several
 message digest algorithms (md5, sha1, rmd160, tiger, haval, etc.) that are
 used to check the integrity of the file. More algorithms can be added
 with relative ease. All of the usual file attributes can also be checked
 for inconsistencies.
 .
 This package contains base and configuration files that are needed to
 run the actual binaries.
 .
 You will almost certainly want to tweak the configuration file in
 /etc/aide/aide.conf or drop your own config snippets into
 /etc/aide/aide.conf.d.

aide-dbgsym: debug symbols for aide
aide-dynamic: Advanced Intrusion Detection Environment - dynamic binary

 AIDE is an intrusion detection system that detects changes to files on
 the local system. It creates a database from the regular expression rules
 that it finds from the config file. Once this database is initialized
 it can be used to verify the integrity of the files. It has several
 message digest algorithms (md5, sha1, rmd160, tiger, haval, etc.) that are
 used to check the integrity of the file. More algorithms can be added
 with relative ease. All of the usual file attributes can also be checked
 for inconsistencies.
 .
 This package contains a dynamically linked binary and should only be
 used in exeptional circumstances. To avoid exposure to trojaned
 libraries, it is advised to use one of the statically linked binaries.

aide-dynamic-dbgsym: debug symbols for aide-dynamic
aide-xen: Advanced Intrusion Detection Environment - static binary for XEN

 AIDE is an intrusion detection system that detects changes to files on
 the local system. It creates a database from the regular expression rules
 that it finds from the config file. Once this database is initialized
 it can be used to verify the integrity of the files. It has several
 message digest algorithms (md5, sha1, rmd160, tiger, haval, etc.) that are
 used to check the integrity of the file. More algorithms can be added
 with relative ease. All of the usual file attributes can also be checked
 for inconsistencies.
 .
 This package contains the statically linked binary for XEN-enabled
 systems and should be used in Dom0 and DomU.

aide-xen-dbgsym: debug symbols for aide-xen