Format: 1.8 Date: Tue, 14 Apr 2020 04:08:13 +0200 Source: inetutils Binary: inetutils-ftp inetutils-ftpd inetutils-inetd inetutils-ping inetutils-syslogd inetutils-talk inetutils-talkd inetutils-telnet inetutils-telnetd inetutils-tools inetutils-traceroute Architecture: i386 Version: 2:1.9.4-12 Distribution: groovy-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Guillem Jover Description: inetutils-ftp - File Transfer Protocol client inetutils-ftpd - File Transfer Protocol server inetutils-inetd - internet super server inetutils-ping - ICMP echo tool inetutils-syslogd - system logging daemon inetutils-talk - talk to another user inetutils-talkd - remote user communication server inetutils-telnet - telnet client inetutils-telnetd - telnet server inetutils-tools - base networking utilities (experimental package) inetutils-traceroute - trace the IPv4 route to another host Closes: 804766 951680 956084 Changes: inetutils (2:1.9.4-12) unstable; urgency=medium . * Switch to Standards-Version 4.5.0 (no changes needed). * Remove patches from upstream: - tftpd: Restore logging while chrooted. (We do not ship tftpd.) * Add patches from upstream: - Change header inclusion for ifconfig on GNU/Linux, to support musl. - telnetd: More work on CVE-2019-0053. - Various compiler warnings fixes. - telnet: Various off-by-one checks. - ftp: Fix buffer overflows. - ping, ping6: Fix memory leaks. * Add patch from Red Hat / Fedora: - Fix arbitrary remote code execution in telnetd via short writes or urgent data. Fixes CVE-2020-10188. Closes: #956084 Thanks to Michal Ruprich . Note: While the PoC exploit does not work on inetutils due to the different codebases, the adapted patch was close enough to apply almost directly, even though the information leak might appear to still remain. * Document inetutils-inetd IPv6 support in man page, and modify the default template inetd.conf to use udp6 and tcp6. Closes: #804766 * Minor wording fixes to default templated inetd.conf. * Remove long obsolete netkit-inetd Provides and Conflicts from inetutils-inetd. * Document that inetutils-inetd -p option without a filename disables writing a pidfile. Closes: #951680 * Disable building tftp and tftpd, which we are not shipping, and are causing test suite failures on kfreebsd-amd64. Checksums-Sha1: d5cc917733a56b789e914a3d93feea924e5869f9 155216 inetutils-ftp-dbgsym_1.9.4-12_i386.ddeb 5d64e1eb6e91628c0606f45909f2db9182f449fb 88692 inetutils-ftp_1.9.4-12_i386.deb 7bd162c646de47fd5d2cc3d2d8e2114d8cc2cb69 165788 inetutils-ftpd-dbgsym_1.9.4-12_i386.ddeb 3c8cfe3346ca4f9d9c3dd32a96bc77bd038332cc 76636 inetutils-ftpd_1.9.4-12_i386.deb f3fab3882dc2950e379027899a75ed4102991f2e 93412 inetutils-inetd-dbgsym_1.9.4-12_i386.ddeb 2be777aee90faa8ab970b3cc9f868e205b9868be 46044 inetutils-inetd_1.9.4-12_i386.deb 35a10e6e6dc92e6da4db94e3e38e07c436fc253c 159244 inetutils-ping-dbgsym_1.9.4-12_i386.ddeb 4056207411ab6deaf660e24a75dcaa106501ba0a 62920 inetutils-ping_1.9.4-12_i386.deb d3fe586032600d0df9fe2f5172d6190302204e4d 98700 inetutils-syslogd-dbgsym_1.9.4-12_i386.ddeb eee3a4dbbb24602d2b179becc87faf9c641e827d 61004 inetutils-syslogd_1.9.4-12_i386.deb 77437649ff2086d928e8fe2d3dc3426cb1933083 78232 inetutils-talk-dbgsym_1.9.4-12_i386.ddeb 240d05b941a00ab33f7e2bb9ab548e91924f94bd 45944 inetutils-talk_1.9.4-12_i386.deb 40c8bfb40de7aa71d40710e2f4dee174a449f335 88000 inetutils-talkd-dbgsym_1.9.4-12_i386.ddeb 30e5a6cb32cb73d7fdfa4dca517c13b30223827f 36632 inetutils-talkd_1.9.4-12_i386.deb 6ba29ad4687f29f5997817ef6f70088864454f78 171848 inetutils-telnet-dbgsym_1.9.4-12_i386.ddeb bb8fdcc7e7d987e6aee0946f23d0268a7b0ad56b 97304 inetutils-telnet_1.9.4-12_i386.deb eb57d35dc9d685b733eca0fa1395a64178ac2755 141360 inetutils-telnetd-dbgsym_1.9.4-12_i386.ddeb d3a5a9faa96e2ee28aa4668ecf48941afe1bba73 67932 inetutils-telnetd_1.9.4-12_i386.deb 79bde42abbe2a81e0cc46935a1872573ac2772fe 271620 inetutils-tools-dbgsym_1.9.4-12_i386.ddeb 4e7a7a9f4c9f9553a39d718d2cea1662d72a3b59 77600 inetutils-tools_1.9.4-12_i386.deb 4970fb2854b08e383eb06abfd7b2a1748216088c 75032 inetutils-traceroute-dbgsym_1.9.4-12_i386.ddeb d77b0a6d4a87758fa1277ba6295070759e7ac207 43280 inetutils-traceroute_1.9.4-12_i386.deb 1b7d6fbffa555fe9af18fad161e3c6f42713c868 12000 inetutils_1.9.4-12_i386.buildinfo Checksums-Sha256: 46e4173a5de61f4e6f9371da0b32b74baa7d994b222ff1f2323d9bb72375393c 155216 inetutils-ftp-dbgsym_1.9.4-12_i386.ddeb 9470aad262f28d9e3c91268291427e104f704fc6589eae4ec3b9ce5a0961109a 88692 inetutils-ftp_1.9.4-12_i386.deb a3c1f7f489656719b9ba53428aaffa8f79685cf9659f64ad9bda2c144ee81e52 165788 inetutils-ftpd-dbgsym_1.9.4-12_i386.ddeb c8443c0a3b864a6971e951e25cc82b26f134eead532a6c4b09bb6eb4379b7471 76636 inetutils-ftpd_1.9.4-12_i386.deb d6d539a82aea58d50c4444fbd5dc8071a6f7dcc562caf731eac20f2308ee29dd 93412 inetutils-inetd-dbgsym_1.9.4-12_i386.ddeb 83075deac62822226f16342781dd28ddb51c314ac09a14b1ae0c594c0a5cad33 46044 inetutils-inetd_1.9.4-12_i386.deb 36121f3bea604b4f03f671f6d542c5c61b29f0eb76bfe9803a24051b9c4cc0b8 159244 inetutils-ping-dbgsym_1.9.4-12_i386.ddeb d49ed56d1c1b94b7f289dc8d27df52364d62da6427180695828b0d2d0f4a4a14 62920 inetutils-ping_1.9.4-12_i386.deb 4582cbfcd5c9725af3910247307420a641e4f00b6e1627d7cd7daed1cef2e2dc 98700 inetutils-syslogd-dbgsym_1.9.4-12_i386.ddeb 146448689e4d57887681792cf57abe20196390732cb2515f0c6db5f1971f4dac 61004 inetutils-syslogd_1.9.4-12_i386.deb ebe0ab8a621bbd85183b44f854c6cf80230a8cf649be428d65397b23e03768aa 78232 inetutils-talk-dbgsym_1.9.4-12_i386.ddeb 1849329af5752c368ccb5674a95ccf26da7693414b49b506c87b95eb8cffcf38 45944 inetutils-talk_1.9.4-12_i386.deb eee823bc1c74ec683c92ff14b03ecafe7cd7860f3140dd17d7815a0c6c1e08c2 88000 inetutils-talkd-dbgsym_1.9.4-12_i386.ddeb 16c514e14ae77eabbd4c7c536793a1b9152f4fb0e2a40f31249958973c6b4faa 36632 inetutils-talkd_1.9.4-12_i386.deb 6cd0d161a7c6b3ecc43905f7da7006df916c9e6c0cb3363d7cccb491ab754ec8 171848 inetutils-telnet-dbgsym_1.9.4-12_i386.ddeb 1054c081041c8b3d5da2862d882cc9cad5fba76f83f2ea4797f187914209001a 97304 inetutils-telnet_1.9.4-12_i386.deb cffa6eadf6eec8e96e045eb3cd401f6fbff3b9640e40693ea5c3d604f7f41e1f 141360 inetutils-telnetd-dbgsym_1.9.4-12_i386.ddeb 4984c2c19aa4d6bcd00bafac20c677f21f5f9c0675008ef27ff4ae1fd7780543 67932 inetutils-telnetd_1.9.4-12_i386.deb f0e5ec9a5ab88f819dd197e0624682e7f58c8feaa41a1afbc3e6a47e8bf15b62 271620 inetutils-tools-dbgsym_1.9.4-12_i386.ddeb 3043542efcfc464224ba58d65c83abc130b6077d0453ad98e16230248e26e56c 77600 inetutils-tools_1.9.4-12_i386.deb 2d6b1adee8a25bc77b059c2d70d62d7ccb38f57e627fabfdaa6feab874bac5ab 75032 inetutils-traceroute-dbgsym_1.9.4-12_i386.ddeb 6a21d5f2ab0d35764581250b39d5ca6f804dfbfcf2a5fbb950f544d1bf056762 43280 inetutils-traceroute_1.9.4-12_i386.deb d85ace6f60fcf6698217769bfe625c003ddce6f2eaf79961a83abaaeb0e6c1cb 12000 inetutils_1.9.4-12_i386.buildinfo Files: b2b458fce8a8bc184e374e611e01b722 155216 debug optional inetutils-ftp-dbgsym_1.9.4-12_i386.ddeb 033b05f8fdeb5e3e3cc5ec16e3bd953e 88692 net optional inetutils-ftp_1.9.4-12_i386.deb 8aa4de7523da3bfd0a4955ad4bd27cf7 165788 debug optional inetutils-ftpd-dbgsym_1.9.4-12_i386.ddeb 91da34a24cb8f69337d7635dbe05428e 76636 net optional inetutils-ftpd_1.9.4-12_i386.deb b8af97d510360b598c085fdd4f6f7272 93412 debug optional inetutils-inetd-dbgsym_1.9.4-12_i386.ddeb 8a81e30d8463320896e414fb0f4e7c92 46044 net optional inetutils-inetd_1.9.4-12_i386.deb 7424fec4d8ed25c6ecb7d3fa1f16e1d4 159244 debug optional inetutils-ping-dbgsym_1.9.4-12_i386.ddeb 66bae1dad7de2b131f4409e83baaa6aa 62920 net optional inetutils-ping_1.9.4-12_i386.deb 5025b923c7e9960afb3574f0a7f0f125 98700 debug optional inetutils-syslogd-dbgsym_1.9.4-12_i386.ddeb a265f239bc3cf7c52cff9f0c9d9a1c88 61004 net optional inetutils-syslogd_1.9.4-12_i386.deb 9171caeac8e36fbc3b9f87f4a02a3de1 78232 debug optional inetutils-talk-dbgsym_1.9.4-12_i386.ddeb 109f78364834da66fec8bbe9506a5abb 45944 net optional inetutils-talk_1.9.4-12_i386.deb 27ea677eb5a53922f2279b36c2741b21 88000 debug optional inetutils-talkd-dbgsym_1.9.4-12_i386.ddeb 57fef33587b376abaed25a6c7b51b0f2 36632 net optional inetutils-talkd_1.9.4-12_i386.deb 48395c26b6f0640cee30c839fdbc38c4 171848 debug optional inetutils-telnet-dbgsym_1.9.4-12_i386.ddeb a2a20b4a58de69aee84f724f378809ff 97304 net optional inetutils-telnet_1.9.4-12_i386.deb 3a8db2b124d612eebc03260a28b2b442 141360 debug optional inetutils-telnetd-dbgsym_1.9.4-12_i386.ddeb 9bd81b093801a44250786a811a1e04cd 67932 net optional inetutils-telnetd_1.9.4-12_i386.deb 4e7974fcf2e665b55ab5494fce6d33cb 271620 debug optional inetutils-tools-dbgsym_1.9.4-12_i386.ddeb e01e94817b551d221a8430eef3dc49d6 77600 net optional inetutils-tools_1.9.4-12_i386.deb 66f0f29fb919957f53d2328c96390b8d 75032 debug optional inetutils-traceroute-dbgsym_1.9.4-12_i386.ddeb c727d76a4a1a5359b45bca3ee48c7033 43280 net optional inetutils-traceroute_1.9.4-12_i386.deb 9522856205e0086b939581e3073193dc 12000 net optional inetutils_1.9.4-12_i386.buildinfo