-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 16 Aug 2006 10:06:30 +0000 Source: binutils Binary: binutils-dev binutils-hppa64 binutils-multiarch binutils binutils-doc Architecture: amd64 Version: 2.15-5ubuntu2.4 Distribution: hoary-security Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Martin Pitt Description: binutils - The GNU assembler, linker and binary utilities binutils-dev - The GNU binary utilities (BFD development files) binutils-multiarch - Binary utilities that support multi-arch targets Changes: binutils (2.15-5ubuntu2.4) hoary-security; urgency=low . * SECURITY UPDATE: Arbitrary code execution when building a crafted source with gas. * Add debian/patches/502-messages-vsnprintf.dpatch: - Use vsnprintf() instead of vsprintf() to avoid overflow on overly long identifiers (and similar). - Patch backported from later stable release. * References: - http://bugs.gentoo.org/show_bug.cgi?id=99464 Files: 6cea7a328eeed4997974a7a1584fb9c5 1369002 devel standard binutils_2.15-5ubuntu2.4_amd64.deb b6b0ebc4d921c4e22fdceb703e378c55 2839652 devel extra binutils-dev_2.15-5ubuntu2.4_amd64.deb bc9f89cb0a83954894b7592d60c5723b 8021684 devel extra binutils-multiarch_2.15-5ubuntu2.4_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFE4vmc0N0xjzyQZEIRAgsYAJ9YknRANGdFbk7ggBDNyX9464RJgQCghRyu hk8tZblt+cndTG54Mywz1s8= =ag3P -----END PGP SIGNATURE-----