Format: 1.8 Date: Mon, 19 Jun 2017 13:34:57 -0500 Source: bash Binary: bash bash-static bash-builtins bash-doc Architecture: source Version: 4.3-11ubuntu2.1 Distribution: vivid-security Urgency: medium Maintainer: Ubuntu Developers Changed-By: Emily Ratliff Description: bash - GNU Bourne Again SHell bash-builtins - Bash loadable builtins - headers & examples bash-doc - Documentation and examples for the GNU Bourne Again SHell bash-static - GNU Bourne Again SHell (static version) Changes: bash (4.3-11ubuntu2.1) vivid-security; urgency=medium . [ Marc Deslauriers ] * SECURITY UPDATE: word expansions on the prompt strings - debian/patches/bash43-047.diff: add quoting to parse.y, y.tab.c. - CVE-2016-0634 * SECURITY UPDATE: code execution via crafted SHELLOPTS and PS4 - debian/patches/bash43-048.diff: check for root in variables.c. - CVE-2016-7543 * SECURITY UPDATE: restricted shell bypass via use-after-free - debian/patches/bash44-006.diff: check for negative offsets in builtins/pushd.def. - CVE-2016-9401 Checksums-Sha1: 94c9583838faae27a7714e52d150f7400001e109 2293 bash_4.3-11ubuntu2.1.dsc ad325d48131e9a03398b8c863911b4fa695a0889 86120 bash_4.3-11ubuntu2.1.debian.tar.xz Checksums-Sha256: cfea01dd34094a544c35c6169f1413560940e626abdfcb148732b0fd02252716 2293 bash_4.3-11ubuntu2.1.dsc 5b1d1f84028cb18c9e6e2435da5195355102438137ec275e8b8086083acb51cc 86120 bash_4.3-11ubuntu2.1.debian.tar.xz Files: 0cdbe50af6ed79ab08b2f177a7863498 2293 base required bash_4.3-11ubuntu2.1.dsc 1631b752c938822d575b4f793dc70158 86120 base required bash_4.3-11ubuntu2.1.debian.tar.xz Original-Maintainer: Matthias Klose