Format: 1.8 Date: Tue, 14 Apr 2020 04:08:13 +0200 Source: inetutils Binary: inetutils-ftp inetutils-ftpd inetutils-inetd inetutils-ping inetutils-syslogd inetutils-talk inetutils-talkd inetutils-telnet inetutils-telnetd inetutils-tools inetutils-traceroute Architecture: amd64 Version: 2:1.9.4-12 Distribution: groovy-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Guillem Jover Description: inetutils-ftp - File Transfer Protocol client inetutils-ftpd - File Transfer Protocol server inetutils-inetd - internet super server inetutils-ping - ICMP echo tool inetutils-syslogd - system logging daemon inetutils-talk - talk to another user inetutils-talkd - remote user communication server inetutils-telnet - telnet client inetutils-telnetd - telnet server inetutils-tools - base networking utilities (experimental package) inetutils-traceroute - trace the IPv4 route to another host Closes: 804766 951680 956084 Changes: inetutils (2:1.9.4-12) unstable; urgency=medium . * Switch to Standards-Version 4.5.0 (no changes needed). * Remove patches from upstream: - tftpd: Restore logging while chrooted. (We do not ship tftpd.) * Add patches from upstream: - Change header inclusion for ifconfig on GNU/Linux, to support musl. - telnetd: More work on CVE-2019-0053. - Various compiler warnings fixes. - telnet: Various off-by-one checks. - ftp: Fix buffer overflows. - ping, ping6: Fix memory leaks. * Add patch from Red Hat / Fedora: - Fix arbitrary remote code execution in telnetd via short writes or urgent data. Fixes CVE-2020-10188. Closes: #956084 Thanks to Michal Ruprich . Note: While the PoC exploit does not work on inetutils due to the different codebases, the adapted patch was close enough to apply almost directly, even though the information leak might appear to still remain. * Document inetutils-inetd IPv6 support in man page, and modify the default template inetd.conf to use udp6 and tcp6. Closes: #804766 * Minor wording fixes to default templated inetd.conf. * Remove long obsolete netkit-inetd Provides and Conflicts from inetutils-inetd. * Document that inetutils-inetd -p option without a filename disables writing a pidfile. Closes: #951680 * Disable building tftp and tftpd, which we are not shipping, and are causing test suite failures on kfreebsd-amd64. Checksums-Sha1: 4ae60c9efdb2eceb9abc8bcb6966013d183d1eeb 168580 inetutils-ftp-dbgsym_1.9.4-12_amd64.ddeb cc84b349dbcabb1f6bd03260674c421a4a030c02 85288 inetutils-ftp_1.9.4-12_amd64.deb 4d5d350dd89d3a25d3e5513683fcef9c01e94993 179064 inetutils-ftpd-dbgsym_1.9.4-12_amd64.ddeb ecad8fee22be4b620d24640cef93eaff9aa860b1 70904 inetutils-ftpd_1.9.4-12_amd64.deb 185881753145fc6f6c3ac61c917577b2b31ac989 101548 inetutils-inetd-dbgsym_1.9.4-12_amd64.ddeb 4ade57f839a8aa2bdc454b076e53e72750920364 44248 inetutils-inetd_1.9.4-12_amd64.deb 0b8a7b92421db7bf4dea3a126de41594b6bb7bad 174960 inetutils-ping-dbgsym_1.9.4-12_amd64.ddeb b2ede1c80303e2ada39da8785859a4c44ac4c0f7 61084 inetutils-ping_1.9.4-12_amd64.deb 7e7e54ac4e12b681a75f99499fe94e88cb0da18c 107212 inetutils-syslogd-dbgsym_1.9.4-12_amd64.ddeb 99daf24a9fe2ce0f291df050014c6bd781ea99a5 59344 inetutils-syslogd_1.9.4-12_amd64.deb e6618096fe0f20b0cbab52a5a81206696afc63fb 83652 inetutils-talk-dbgsym_1.9.4-12_amd64.ddeb df049896689672ddb874b0c887c506c660977f3f 44904 inetutils-talk_1.9.4-12_amd64.deb e442c0d7e40a7ce37d88b6bea8a098a3396827b6 95720 inetutils-talkd-dbgsym_1.9.4-12_amd64.ddeb fcba91f7e40ee67090ecd3e4037321b5f04cf508 35248 inetutils-talkd_1.9.4-12_amd64.deb ad7e1f27901c52989cabde9c7ad6db76b9cd5311 191528 inetutils-telnet-dbgsym_1.9.4-12_amd64.ddeb 47ddaa73c2e4d274e001b47757eef69d1e39ecc3 94084 inetutils-telnet_1.9.4-12_amd64.deb 3687ef873325dead19e40a675457996c082bca86 158024 inetutils-telnetd-dbgsym_1.9.4-12_amd64.ddeb c0f33b216ae4e440bd77056907d140e9259bc0bf 65232 inetutils-telnetd_1.9.4-12_amd64.deb d718e41ee1ea8dcc846f3228d7ee1a2f9c1ef648 302696 inetutils-tools-dbgsym_1.9.4-12_amd64.ddeb 0b73615b3eb88a64afcf0d0c28c11c09b0cff987 74808 inetutils-tools_1.9.4-12_amd64.deb 83bc04d6c2f1977142443c3e76f09a031579aaab 81780 inetutils-traceroute-dbgsym_1.9.4-12_amd64.ddeb 0be37c8631c52c4318c731467ad103bb410a13e8 42244 inetutils-traceroute_1.9.4-12_amd64.deb 52c6ae74f4dd060d4602b6aa411815e215509018 12148 inetutils_1.9.4-12_amd64.buildinfo Checksums-Sha256: 9df2e1b67fc1ad6d1db378c6fa5bd8e30fff8021e64e353f7b6db447d6f45449 168580 inetutils-ftp-dbgsym_1.9.4-12_amd64.ddeb 465e0c8bcb64b94e9e0ed00da471f154cb61f8f491dce9510a03d763be3b0f31 85288 inetutils-ftp_1.9.4-12_amd64.deb c603d7c3a60735517dfa7635de0eac06a8b3b655c0bcae132748820250454ade 179064 inetutils-ftpd-dbgsym_1.9.4-12_amd64.ddeb 6b437f96875a319c192dc6fbc0996adcaa52b713abbb4e4ba29a4ebbdb720d99 70904 inetutils-ftpd_1.9.4-12_amd64.deb bb0d63af3cc70536dda2fcc8e013188d4b0e4045550cbcafa435e15979f0ffce 101548 inetutils-inetd-dbgsym_1.9.4-12_amd64.ddeb 17157566e41b58235ba834cabd6b375179c0a0677b309689b42b0c97fe89e88e 44248 inetutils-inetd_1.9.4-12_amd64.deb 43ab7d88413e56d728453069bf1280ddfdb3344a31390d7daed6ecb4e53630e2 174960 inetutils-ping-dbgsym_1.9.4-12_amd64.ddeb ccae2edbfdb7d51425bd8342528b06f9393debab131ea30744bb7b80af5dda15 61084 inetutils-ping_1.9.4-12_amd64.deb 5a09971377454f50994ca3ff46daf24c08db5a0c8f18af44f4dba48999020eaa 107212 inetutils-syslogd-dbgsym_1.9.4-12_amd64.ddeb bbd878dde190a3547e5400be726582f54fde2a8d3a377b03f7296d060b49cf86 59344 inetutils-syslogd_1.9.4-12_amd64.deb a7c4fdd2552b805d7479f730a9654e71fc41ec0017fa8a8fd120cdbcd634ab58 83652 inetutils-talk-dbgsym_1.9.4-12_amd64.ddeb 0487bf103df7cce66731349f8b38124a8df255b10e8b82111e48b5785daeb1a2 44904 inetutils-talk_1.9.4-12_amd64.deb fdc923df094ed363989b724729ff1676efa94bcc2f24d17e12bcf4cc07f52388 95720 inetutils-talkd-dbgsym_1.9.4-12_amd64.ddeb d3a981dd5c7bde3f88f1bfe76ea4125aa1876a56dbfd310a15be6400ce52ad19 35248 inetutils-talkd_1.9.4-12_amd64.deb e66f1a7cc2a8e3cdd57465775c3714fa7e964b36990c8b088510948c56dd5b66 191528 inetutils-telnet-dbgsym_1.9.4-12_amd64.ddeb 9f76fe7083ccabaeae1717d35a5ff02f819c5b7c9214bfb185322d1a8f0739bc 94084 inetutils-telnet_1.9.4-12_amd64.deb 276686130bc8e9b1b6a36f18c6b74d869ad592f479e37a08af3f537d484fea64 158024 inetutils-telnetd-dbgsym_1.9.4-12_amd64.ddeb 78324abc99fb4f4d499ccfc52c7e5803837a97163516d85ac8e654672a1a7c63 65232 inetutils-telnetd_1.9.4-12_amd64.deb 830d39aed65205f8c6be43d683287f83970be17b27b8c9e23e47fab3ce9a5b59 302696 inetutils-tools-dbgsym_1.9.4-12_amd64.ddeb b0f2354e4731f9af6580b35b1a5d27daf431ebd1907cfb1ba3a5a6f79ccee72b 74808 inetutils-tools_1.9.4-12_amd64.deb 8591ddadf1b858fbfe535cef32aeab7869c670d93ec526268a788b465d32ef3f 81780 inetutils-traceroute-dbgsym_1.9.4-12_amd64.ddeb 94b472495992c4489587e142b450a320cb0a909c3d6bd5eeffdd36c546a37c01 42244 inetutils-traceroute_1.9.4-12_amd64.deb 139b2efb6ca25346ba5618f4dcf0cfbfbe9b3fb2f5d8607facb726d1b2f16884 12148 inetutils_1.9.4-12_amd64.buildinfo Files: 90444874c6c89daa4241613156f41043 168580 debug optional inetutils-ftp-dbgsym_1.9.4-12_amd64.ddeb d788dd659179751866d79d7c6a174fad 85288 net optional inetutils-ftp_1.9.4-12_amd64.deb ee6106483f947595a0a9fcd26abb2802 179064 debug optional inetutils-ftpd-dbgsym_1.9.4-12_amd64.ddeb d554cf42b5c164076dca5bc07e9bded7 70904 net optional inetutils-ftpd_1.9.4-12_amd64.deb 4c67f84a180295371807fd9f9305dfe0 101548 debug optional inetutils-inetd-dbgsym_1.9.4-12_amd64.ddeb 19880d421b2eeece3b680fdbf20804a7 44248 net optional inetutils-inetd_1.9.4-12_amd64.deb 7ca3c35b6a5bf8fa1e1d7335de94ea26 174960 debug optional inetutils-ping-dbgsym_1.9.4-12_amd64.ddeb 14a690f81f10c8312d5ab32e3c2c0249 61084 net optional inetutils-ping_1.9.4-12_amd64.deb cad15e2d16a6064201802b547ee31622 107212 debug optional inetutils-syslogd-dbgsym_1.9.4-12_amd64.ddeb ae9bd80d5d0f6a0de3d7431fb154e2c0 59344 net optional inetutils-syslogd_1.9.4-12_amd64.deb f87b646f462823fc14eb28772bb825b4 83652 debug optional inetutils-talk-dbgsym_1.9.4-12_amd64.ddeb 56556d10322f08688e27681591e3c98f 44904 net optional inetutils-talk_1.9.4-12_amd64.deb 28b37ddb3faec882459b362cf2302667 95720 debug optional inetutils-talkd-dbgsym_1.9.4-12_amd64.ddeb 0f101f0f0626765f996f9be8582796bb 35248 net optional inetutils-talkd_1.9.4-12_amd64.deb 769c0f241d04c14a2146dc6dab503658 191528 debug optional inetutils-telnet-dbgsym_1.9.4-12_amd64.ddeb d76ad5e4495ada13b737c418414b5587 94084 net optional inetutils-telnet_1.9.4-12_amd64.deb 522070d1b4db3d392621e3ce4b1242ec 158024 debug optional inetutils-telnetd-dbgsym_1.9.4-12_amd64.ddeb 7818f0200ee592093bf3a206c611be64 65232 net optional inetutils-telnetd_1.9.4-12_amd64.deb 18e39c69b82edb190fbc0bcb436fa3a6 302696 debug optional inetutils-tools-dbgsym_1.9.4-12_amd64.ddeb 16230d35072052e56868d1825e587e0e 74808 net optional inetutils-tools_1.9.4-12_amd64.deb 2b069912b445df8788fb70002e61e415 81780 debug optional inetutils-traceroute-dbgsym_1.9.4-12_amd64.ddeb 12aec96740ba367dd749ea725b1e4aca 42244 net optional inetutils-traceroute_1.9.4-12_amd64.deb a7fe18adbb7a80a1d571391678f3055e 12148 net optional inetutils_1.9.4-12_amd64.buildinfo