Format: 1.8 Date: Mon, 08 Jan 2018 14:40:23 -0500 Source: irssi Binary: irssi irssi-dev Architecture: ppc64el Version: 0.8.20-2ubuntu2.3 Distribution: zesty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: irssi - terminal based IRC client irssi-dev - terminal based IRC client - development files Changes: irssi (0.8.20-2ubuntu2.3) zesty-security; urgency=medium . * SECURITY UPDATE: buffer overread via incomplete escape codes - debian/patches/CVE-2018-5205.patch: check for complete char in src/core/misc.c. - CVE-2018-5205 * SECURITY UPDATE: NULL dereference via setting channel topic without specifying a sender - debian/patches/CVE-2018-5206.patch: do not record topic change time when sender is blank in src/irc/core/channel-events.c. - CVE-2018-5206 * SECURITY UPDATE: buffer overread via incomplete variable argument - debian/patches/CVE-2018-5207.patch: disable variable arguments code in src/core/special-vars.c. - CVE-2018-5207 * SECURITY UPDATE: heap overflow in completion code - debian/patches/CVE-2018-5208.patch: check for direct match of separator in src/fe-common/core/completion.c. - CVE-2018-5208 Checksums-Sha1: 1a4db371c03e217e45972a78daac3c82f606dc5c 1494146 irssi-dbgsym_0.8.20-2ubuntu2.3_ppc64el.ddeb 013d6b53d835be4d0341a9f9d6bf1bdc6fa642b9 41650 irssi-dev_0.8.20-2ubuntu2.3_ppc64el.deb b8f233ff535d64d7bc50b1ca134c9955202f6a17 635808 irssi_0.8.20-2ubuntu2.3_ppc64el.deb Checksums-Sha256: ae6862c90aff0af3266fbcd62c632575b8a80854c8eab639589cdea041fa5d3b 1494146 irssi-dbgsym_0.8.20-2ubuntu2.3_ppc64el.ddeb 5d8a428909977198fa6526d145fd9c7eef04f7d6983bd775c788d66cc99759ee 41650 irssi-dev_0.8.20-2ubuntu2.3_ppc64el.deb 46c292b34a6a57a239893a60ecade019f2f58649346a3931b2341affc291addd 635808 irssi_0.8.20-2ubuntu2.3_ppc64el.deb Files: b19623815482ea48b3934c4fff92a922 1494146 net extra irssi-dbgsym_0.8.20-2ubuntu2.3_ppc64el.ddeb eb5c5fbcd3340678162cc9cc3e156de6 41650 net extra irssi-dev_0.8.20-2ubuntu2.3_ppc64el.deb 429dc40bf5699fbc51fdaf4f66fa327a 635808 net optional irssi_0.8.20-2ubuntu2.3_ppc64el.deb Original-Maintainer: Rhonda D'Vine