-
c-ares (1.14.0-1+deb10u1) buster-security; urgency=high
* Non-maintainer upload by the Security Team.
* Missing input validation on hostnames returned by DNS servers
(CVE-2021-3672)
- ares_expand_name() should escape more characters
- ares_expand_name(): fix formatting and handling of root name response
-- Salvatore Bonaccorso <email address hidden> Sat, 07 Aug 2021 13:02:07 +0200
-
c-ares (1.14.0-1) unstable; urgency=low
* Imported Upstream version 1.14.0
* Update upstream signature key
* Remove already applied patches
-- Gregor Jasny <email address hidden> Fri, 16 Feb 2018 20:40:22 +0100
-
c-ares (1.13.0-3) unstable; urgency=low
* Bumped standards to version 4.1.3 (adjusted priority)
* Enable bindnow hardening flag
-- Gregor Jasny <email address hidden> Sat, 30 Dec 2017 15:11:34 +0100
-
c-ares (1.13.0-2) unstable; urgency=medium
* ares_parse_naptr_reply: make buffer length check more accurate
-- Gregor Jasny <email address hidden> Sun, 16 Jul 2017 19:12:12 +0200
-
c-ares (1.13.0-1) unstable; urgency=medium
* Imported Upstream version 1.13.0
* Bump standards to 4.0.0 (no changes needed)
-- Gregor Jasny <email address hidden> Wed, 28 Jun 2017 22:52:31 +0200