libvncserver 0.9.13+dfsg-1 source package in Ubuntu

Changelog

libvncserver (0.9.13+dfsg-1) unstable; urgency=medium

  * New upstream release:
    - CVE-2018-21247: When connecting to a repeater, only send initialised
      string
    - CVE-2019-20839: libvncclient: bail out if unix socket name would overflow
    - CVE-2019-20840: fix crash because of unaligned accesses in
      hybiReadAndDecode()
    - CVE-2020-14396: libvncclient/tls_openssl: do not deref a NULL pointer
    - CVE-2020-14397: libvncserver: add missing NULL pointer checks
    - CVE-2020-14398: libvncclient: handle half-open TCP connections
    - CVE-2020-14399: libvncclient: fix pointer aliasing/alignment issue
    - CVE-2020-14400: libvncserver: fix pointer aliasing/alignment issue
    - CVE-2020-14401: libvncserver: scale: cast to 64 bit before shifting
    - CVE-2020-14402: libvncserver: encodings: prevent OOB accesses
    - CVE-2020-14403: encodings: prevent OOB accesses
    - CVE-2020-14404: libvncserver: encodings: prevent OOB accesses
    - CVE-2020-14405: libvncclient/rfbproto: limit max textchat size
  * debian/patches:
    + Drop all patches. All applied upstream.
    + Add README file explaining on our patch naming scheme.
  * debian/*.symbols:
    + Update symbols.
  * debian/control:
    + Bump DH compat level to version 13.

 -- Mike Gabriel <email address hidden>  Mon, 29 Jun 2020 14:44:43 +0200

Upload details

Uploaded by:
Debian Remote Maintainers
Uploaded to:
Sid
Original maintainer:
Debian Remote Maintainers
Architectures:
any
Section:
x11
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
libvncserver_0.9.13+dfsg-1.dsc 2.3 KiB 61e6bc6179ad506527208c175769ef952b1bc9f7e68be5c2efa168e7700e3a82
libvncserver_0.9.13+dfsg.orig.tar.xz 413.3 KiB 4048514b74d9e614102d60bc038de58a34dbc5eaaf1a4961b76027578e770e9d
libvncserver_0.9.13+dfsg-1.debian.tar.xz 14.5 KiB f3411343c738c1b099dbc745c09b60f3fdc670090d103a0aa92dea3bbf20ec82

Available diffs

No changes file available.

Binary packages built by this source

libvncclient1: No summary available for libvncclient1 in ubuntu groovy.

No description available for libvncclient1 in ubuntu groovy.

libvncclient1-dbgsym: No summary available for libvncclient1-dbgsym in ubuntu hirsute.

No description available for libvncclient1-dbgsym in ubuntu hirsute.

libvncserver-dev: No summary available for libvncserver-dev in ubuntu hirsute.

No description available for libvncserver-dev in ubuntu hirsute.

libvncserver1: No summary available for libvncserver1 in ubuntu groovy.

No description available for libvncserver1 in ubuntu groovy.

libvncserver1-dbgsym: No summary available for libvncserver1-dbgsym in ubuntu groovy.

No description available for libvncserver1-dbgsym in ubuntu groovy.