-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 16 Aug 2006 10:02:46 +0000 Source: binutils Binary: binutils-dev binutils-hppa64 binutils-multiarch binutils-static-udeb binutils-static binutils binutils-doc Architecture: amd64 Version: 2.16.1-2ubuntu6.2 Distribution: breezy-security Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Martin Pitt Description: binutils - The GNU assembler, linker and binary utilities binutils-dev - The GNU binary utilities (BFD development files) binutils-multiarch - Binary utilities that support multi-arch targets binutils-static - statically linked binutils tools binutils-static-udeb - statically linked binutils tools for for the Debian installer (udeb) Changes: binutils (2.16.1-2ubuntu6.2) breezy-security; urgency=low . * SECURITY UPDATE: Arbitrary code execution when building a crafted source with gas. * Add debian/patches/131_gas-messages-vsnprintf.dpatch: - Use vsnprintf() instead of vsprintf() to avoid overflow on overly long identifiers (and similar). - Patch backported from later stable release. * References: - http://bugs.gentoo.org/show_bug.cgi?id=99464 Files: 7189b2459d4b502d48aa9672b7ec6549 1553658 devel standard binutils_2.16.1-2ubuntu6.2_amd64.deb c9219796dd147dcab7b8c53bc71555c6 2359240 devel extra binutils-dev_2.16.1-2ubuntu6.2_amd64.deb 5d5ff31efc9c788ee212cf16927fd25d 7202160 devel extra binutils-multiarch_2.16.1-2ubuntu6.2_amd64.deb 13baf60e6742003f98f37a5634185642 631940 devel standard binutils-static_2.16.1-2ubuntu6.2_amd64.deb 859dc5148f5e9a03287d00f363f1b49d 605798 debian-installer standard binutils-static-udeb_2.16.1-2ubuntu6.2_amd64.udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFE4vse0N0xjzyQZEIRAsisAKCGOW9Y+sLDgCzIZ0w9aPM6AEKbJACdECGL NQud11Jaeiih3rjML5BYqVc= =Q5r1 -----END PGP SIGNATURE-----