Format: 1.8 Date: Mon, 24 Feb 2020 12:20:52 -0500 Source: opensmtpd Binary: opensmtpd Architecture: ppc64el Version: 6.6.4p1-1 Distribution: focal-proposed Urgency: high Maintainer: Launchpad Build Daemon Changed-By: Ryan Kavanagh Description: opensmtpd - secure, reliable, lean, and easy-to configure SMTP server Closes: 952453 Changes: opensmtpd (6.6.4p1-1) unstable; urgency=high . * New upstream release fixes critical security bug (Closes: #952453). Quoting from OpenBSD errata: . An out of bounds read in smtpd allows an attacker to inject arbitrary commands into the envelope file which are then executed as root. . Separately, missing privilege revocation in smtpctl allows arbitrary commands to be run with the _smtpq group. . * Update copyright file with new copyright holders * Remove stale entries from Uploaders field Checksums-Sha1: 37cb5b786869ceeacd256bef2bb96e244dd9af83 972548 opensmtpd-dbgsym_6.6.4p1-1_ppc64el.ddeb 7e6e3848fc442e7f3e9040ecf8f11b146b5c1300 5702 opensmtpd_6.6.4p1-1_ppc64el.buildinfo bdf3becbf08d408e0cf9b76ea1176bf561a0e19f 331032 opensmtpd_6.6.4p1-1_ppc64el.deb Checksums-Sha256: e601d4a6ebc39a952de00b95bf12920cf7dbfa430570900fa331859af4c87a2c 972548 opensmtpd-dbgsym_6.6.4p1-1_ppc64el.ddeb 9cb716df2267a23dd0053efe0e072f7d7d7ddd58ce2be86fdf287f4a33e39e24 5702 opensmtpd_6.6.4p1-1_ppc64el.buildinfo 1df08ef792c9607681bdd0d4fe3d0908a397c3a120707dd3b5b012967c7607e4 331032 opensmtpd_6.6.4p1-1_ppc64el.deb Files: 4d270c54144c52d1a7904a6d93aadfd8 972548 debug optional opensmtpd-dbgsym_6.6.4p1-1_ppc64el.ddeb d2116b72712981b4c8ac7da9bf258800 5702 mail optional opensmtpd_6.6.4p1-1_ppc64el.buildinfo 278fac7c5864d2b71411e58011bfdb03 331032 mail optional opensmtpd_6.6.4p1-1_ppc64el.deb