-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 16 Aug 2006 10:02:46 +0000 Source: binutils Binary: binutils-dev binutils-hppa64 binutils-multiarch binutils-static-udeb binutils-static binutils binutils-doc Architecture: hppa Version: 2.16.1-2ubuntu6.2 Distribution: breezy-security Urgency: low Maintainer: Ubuntu/hppa Build Daemon Changed-By: Martin Pitt Description: binutils - The GNU assembler, linker and binary utilities binutils-dev - The GNU binary utilities (BFD development files) binutils-hppa64 - The GNU assembler, linker and binary utilities targeted for hppa6 binutils-multiarch - Binary utilities that support multi-arch targets binutils-static - statically linked binutils tools binutils-static-udeb - statically linked binutils tools for for the Debian installer (udeb) Changes: binutils (2.16.1-2ubuntu6.2) breezy-security; urgency=low . * SECURITY UPDATE: Arbitrary code execution when building a crafted source with gas. * Add debian/patches/131_gas-messages-vsnprintf.dpatch: - Use vsnprintf() instead of vsprintf() to avoid overflow on overly long identifiers (and similar). - Patch backported from later stable release. * References: - http://bugs.gentoo.org/show_bug.cgi?id=99464 Files: 972cace3da6ee765b8a8d5af7da1a093 1546938 devel standard binutils_2.16.1-2ubuntu6.2_hppa.deb 8c7ff838ccfc02253a0abf2bef6abe9a 1932514 devel extra binutils-dev_2.16.1-2ubuntu6.2_hppa.deb 43d6a2c2fa4439fe418a5095162da717 7814060 devel extra binutils-multiarch_2.16.1-2ubuntu6.2_hppa.deb 51ec94f3710483d232b19f7143ec3767 561902 devel standard binutils-static_2.16.1-2ubuntu6.2_hppa.deb d2eea73d6b74beef7bfa98ae5686bae6 536020 debian-installer standard binutils-static-udeb_2.16.1-2ubuntu6.2_hppa.udeb 210a2541c7380cbd6d24834295255407 1239910 devel standard binutils-hppa64_2.16.1-2ubuntu6.2_hppa.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFE4v6p0N0xjzyQZEIRApV3AJ4zYf6sB3AdaIR250id3jxQuwbRlgCfRV/+ ucAGz/HxFiL2KZ5wGCyXMYw= =pRb9 -----END PGP SIGNATURE-----