Format: 1.8 Date: Thu, 01 Nov 2018 16:16:02 -0300 Source: openssh Binary: openssh-client openssh-client-ssh1 openssh-server openssh-sftp-server ssh ssh-krb5 ssh-askpass-gnome openssh-client-udeb openssh-server-udeb Architecture: arm64 arm64_translations Version: 1:7.2p2-4ubuntu2.6 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas S. Barbosa Description: openssh-client - secure shell (SSH) client, for secure access to remote machines openssh-client-ssh1 - secure shell (SSH) client for legacy SSH1 protocol openssh-client-udeb - secure shell client for the Debian installer (udeb) openssh-server - secure shell (SSH) server, for secure access from remote machines openssh-server-udeb - secure shell server for the Debian installer (udeb) openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot ssh - secure shell client and server (metapackage) ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad ssh-krb5 - secure shell client and server (transitional package) Launchpad-Bugs-Fixed: 1794629 Changes: openssh (1:7.2p2-4ubuntu2.6) xenial-security; urgency=medium . [ Ryan Finnie ] * SECURITY UPDATE: OpenSSH User Enumeration Vulnerability (LP: #1794629) - debian/patches/CVE-2018-15473.patch: delay bailout for invalid authenticating user until after the packet containing the request has been fully parsed. - CVE-2018-15473 * SECURITY UPDATE: Privsep process chrashing via an out-of-sequence - debian/patches/CVE-2016-10708.patch: fix in kex.c, pack.c. - CVE-2016-10708 Checksums-Sha1: 8a98c127b1fcd85965540dc227446e6fe25d960c 1090258 openssh-client-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 1bd0c5a8649d542718268025a8c879d4bf871ef5 647446 openssh-client-ssh1-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb f34dbe1a8e6818c65aa3bb67187680e2bfb4533d 275502 openssh-client-ssh1_7.2p2-4ubuntu2.6_arm64.deb 02e4419dbd7a46fb2abeee772f9436fbc1275a8d 518496 openssh-client-udeb-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 78571f90687eece37f18b8c27cfba590b5670934 235496 openssh-client-udeb_7.2p2-4ubuntu2.6_arm64.udeb 81dd94b9bd33ef433022d947e89abf9b4dc412e9 501014 openssh-client_7.2p2-4ubuntu2.6_arm64.deb e14393ad4ea9d5853fd6171e4a86c3ecbe94fd1b 585836 openssh-server-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb d9fb4cfa1ccf375b36cffd2af9eff537fd90afe9 571646 openssh-server-udeb-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 0540158f3df7ac89942988111fb99c027953081a 243808 openssh-server-udeb_7.2p2-4ubuntu2.6_arm64.udeb c78e6eae3fc25c04115f6ee07eab94b04d4d6408 289934 openssh-server_7.2p2-4ubuntu2.6_arm64.deb 190afccd3e865f36249bbb3b0357569925913f0b 80230 openssh-sftp-server-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 842841fd72cab40c80954b62f9abb49f572e3a33 33602 openssh-sftp-server_7.2p2-4ubuntu2.6_arm64.deb 347ea0f074e568fc609a0ab40b4b6742d04dcc9d 8422 openssh_7.2p2-4ubuntu2.6_arm64_translations.tar.gz fa7770864ee16a8db9bc73359bb6883f20ef9924 11786 ssh-askpass-gnome-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb fb64784c556ee7ab304de067b901d6863e99887d 14102 ssh-askpass-gnome_7.2p2-4ubuntu2.6_arm64.deb Checksums-Sha256: e90bd09a17c7980a3a7d8477d0d2a40c07a8fb1ffb8aa132c5c6e63f68333fbe 1090258 openssh-client-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb af672942b6de4b647bfac8c7ab4792e193aa270eed7e5b2859aad23b20972052 647446 openssh-client-ssh1-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 786a694866447655553e19692ebd1f7c3dc371b1a8e2d590e7dcf625a0899def 275502 openssh-client-ssh1_7.2p2-4ubuntu2.6_arm64.deb cd8a60b21ab607bd1d9946e2f614e8812870be035953acde7f60d87e40d74b0b 518496 openssh-client-udeb-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb eb5a83d3fcfa783a3387feddd0cf31680b1c12cda948a81c1860121c51e54d4a 235496 openssh-client-udeb_7.2p2-4ubuntu2.6_arm64.udeb d4412de7cb1b347d8532d5b301668a5b1b912c777df461058601ac50ad508c9c 501014 openssh-client_7.2p2-4ubuntu2.6_arm64.deb 965ad5f593caf2a7ed89e1c9908b491d0610f9fbdb34c088901e7c2ed4d1b38a 585836 openssh-server-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb fe9d7af5c41154c90103f4bc575105a95f72666958ef909efee375742cef7c50 571646 openssh-server-udeb-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb c550350072569f8d1aa496c828662211b370950f9b7eb5973cb6f6cfd18cbbb5 243808 openssh-server-udeb_7.2p2-4ubuntu2.6_arm64.udeb 909080efa45b3c7976fd6f973a43999b0fde6d088e29fe4dcb949c7490a3024b 289934 openssh-server_7.2p2-4ubuntu2.6_arm64.deb 91a06a41c001366d038265d9117d845f9f4d817577812430f85de36c3af4926f 80230 openssh-sftp-server-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 8e5c153361f94d1a8961190434b3eb100ef720d36460193230e329b713e14181 33602 openssh-sftp-server_7.2p2-4ubuntu2.6_arm64.deb 67a8d169e1ada3b836c5b3b486607d9d6701c5eb0195686b4c909779826ff486 8422 openssh_7.2p2-4ubuntu2.6_arm64_translations.tar.gz d73a8d2bc34a6a7ae46698f37121864735618413abfb0170f637d3e94a0b57e8 11786 ssh-askpass-gnome-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 937a945fcb184d250381ba08e29c080c5436619179f95ba4ef394143fd346c5d 14102 ssh-askpass-gnome_7.2p2-4ubuntu2.6_arm64.deb Files: c50fc3bbf102695af1e1ad68a70ad823 1090258 net extra openssh-client-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 82a7384165a9e6fa9d79cfbc5afacad6 647446 net extra openssh-client-ssh1-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb a6de75394ae24c7ff06c1714da773ed4 275502 net extra openssh-client-ssh1_7.2p2-4ubuntu2.6_arm64.deb 539d9ff912a6ad996555114da1488bdd 518496 debian-installer extra openssh-client-udeb-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 6bd05ba599ff90e61aa5a91f60602634 235496 debian-installer optional openssh-client-udeb_7.2p2-4ubuntu2.6_arm64.udeb c8d36efb94a4df9e7b5e95e193c54d6d 501014 net standard openssh-client_7.2p2-4ubuntu2.6_arm64.deb ba423b1cdd94b126f7f850db01da76a0 585836 net extra openssh-server-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb f20edf9e5fab7acce066833e95e1436e 571646 debian-installer extra openssh-server-udeb-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 0de405141645beaf8007caf440d4671f 243808 debian-installer optional openssh-server-udeb_7.2p2-4ubuntu2.6_arm64.udeb 279dcd6a17a51c8b03f077c249f4a54a 289934 net optional openssh-server_7.2p2-4ubuntu2.6_arm64.deb 54de700f0b9355f6a75568e813854deb 80230 net extra openssh-sftp-server-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb c0d0d01a85343f5aae4d98b6ef753a29 33602 net optional openssh-sftp-server_7.2p2-4ubuntu2.6_arm64.deb a31ef708bfbd139dd3a53dac7f197ee8 8422 raw-translations - openssh_7.2p2-4ubuntu2.6_arm64_translations.tar.gz 67c5f3cf0004ac6b9f32b9d809a5a1c8 11786 gnome extra ssh-askpass-gnome-dbgsym_7.2p2-4ubuntu2.6_arm64.ddeb 85a19a80a7a7e3c14209b9e65f2ed527 14102 gnome optional ssh-askpass-gnome_7.2p2-4ubuntu2.6_arm64.deb Original-Maintainer: Debian OpenSSH Maintainers