Format: 1.8 Date: Mon, 05 Nov 2018 08:51:29 -0300 Source: openssh Binary: openssh-client openssh-server openssh-sftp-server ssh ssh-askpass-gnome openssh-client-udeb openssh-server-udeb Architecture: armhf armhf_translations Version: 1:7.6p1-4ubuntu0.1 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas S. Barbosa Description: openssh-client - secure shell (SSH) client, for secure access to remote machines openssh-client-udeb - secure shell client for the Debian installer (udeb) openssh-server - secure shell (SSH) server, for secure access from remote machines openssh-server-udeb - secure shell server for the Debian installer (udeb) openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot ssh - secure shell client and server (metapackage) ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad Launchpad-Bugs-Fixed: 1794629 Changes: openssh (1:7.6p1-4ubuntu0.1) bionic-security; urgency=medium . [ Ryan Finnie ] * SECURITY UPDATE: OpenSSH User Enumeration Vulnerability (LP: #1794629) - debian/patches/CVE-2018-15473.patch: delay bailout for invalid authenticating user until after the packet containing the request has been fully parsed. - CVE-2018-15473 Checksums-Sha1: 985d6bf7ab5c51ca49bd4ccdce7d8de947e24fd5 2991980 openssh-client-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb f5ff239dd14dc4c03bfd67a63de5458555653872 260056 openssh-client-udeb_7.6p1-4ubuntu0.1_armhf.udeb d507016242327496f3c3892b0da69afa3e59d20d 552696 openssh-client_7.6p1-4ubuntu0.1_armhf.deb 987c898bc64bb8ee4ea0aa87f1f71b5a71fd9c61 855380 openssh-server-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb 1a6c312ce0328f5f5955b2d281b6f31ccc40cf4a 265240 openssh-server-udeb_7.6p1-4ubuntu0.1_armhf.udeb c70f04d6c40745eecd3f9838e0d8785f9203266f 315532 openssh-server_7.6p1-4ubuntu0.1_armhf.deb 1dac7a84450552a5ec6e31d28e1f3f2b85e84afc 121548 openssh-sftp-server-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb b7ea6c0c6f899ea4993116e51f95edaf71c3e494 39528 openssh-sftp-server_7.6p1-4ubuntu0.1_armhf.deb 42ee1d09f3797e264a1dea58e84ed9afa1b94833 16881 openssh_7.6p1-4ubuntu0.1_armhf.buildinfo 8f4f227b1283922bcbf828d0d7aa2d607a7d3fa0 8423 openssh_7.6p1-4ubuntu0.1_armhf_translations.tar.gz 174ce305e40786adf57cea1ea59b98f2ce6a9d5e 11892 ssh-askpass-gnome-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb 83d94afd3abb5e1dd3afd662a40e3c8925ff2078 16696 ssh-askpass-gnome_7.6p1-4ubuntu0.1_armhf.deb Checksums-Sha256: 8edbd17362c8f6c567e2d4e386208af7bf547d1eda22b673a3cf79230e73d63c 2991980 openssh-client-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb 13ae807bb18c446e44b4df3b1115b5edaa6765f59e57fc08e04211bc5fbbc011 260056 openssh-client-udeb_7.6p1-4ubuntu0.1_armhf.udeb 133ee82d1c1ba1ff4bc9331f387dd909ffa3af46484c616e1ceb5425e53eb544 552696 openssh-client_7.6p1-4ubuntu0.1_armhf.deb e3d78f07ace54ef2fd672ca129d04c17ec9d2c9883aa6b1f6a84951ccf05a68f 855380 openssh-server-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb a1c91ddf0c035bd3d256e234c0b5aadc953637983f145ba296744686fb963837 265240 openssh-server-udeb_7.6p1-4ubuntu0.1_armhf.udeb 13a149f8161430357ee4514981d7bd857c5091766f7777261650663db25f07c6 315532 openssh-server_7.6p1-4ubuntu0.1_armhf.deb 5278f74c81bb8c7f38d4d5d32bb939438e1e748fdce06b67accd3b22b6f32132 121548 openssh-sftp-server-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb 3dfec61d6177901dc93eb92c07b1fb43cbc2899dd9a00af4b1899e3f1a866f2e 39528 openssh-sftp-server_7.6p1-4ubuntu0.1_armhf.deb 91522265fcb4a42fb545a5e75d29957aef4fd3e9023e938d4112adae2001bd7e 16881 openssh_7.6p1-4ubuntu0.1_armhf.buildinfo 6015fe6da84d008cb5707e6f6781a489654770c36b7e99c2b133eaaed9708d45 8423 openssh_7.6p1-4ubuntu0.1_armhf_translations.tar.gz b5087f2dda0078b32bfe2db145011b2e37dc385e3b988c3ec78f61df7c49c9a5 11892 ssh-askpass-gnome-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb a05f78ffd774b5b242f0c80bdf111653fe74a252c6847fc2141c2af8ca140452 16696 ssh-askpass-gnome_7.6p1-4ubuntu0.1_armhf.deb Files: a9f8b8ca7865d0a7523270794bea084f 2991980 debug optional openssh-client-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb e66e9e85a46322c47162091dfe7c204f 260056 debian-installer optional openssh-client-udeb_7.6p1-4ubuntu0.1_armhf.udeb 4e48be167fe5ca3b1ee297a0ce89d587 552696 net standard openssh-client_7.6p1-4ubuntu0.1_armhf.deb 3f9209d6790ecb50d56dee9ed12e8725 855380 debug optional openssh-server-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb e9a0aa8611feee5d4b53b02ca8f485c6 265240 debian-installer optional openssh-server-udeb_7.6p1-4ubuntu0.1_armhf.udeb 68f2f519671d682b8325867eb7bf885a 315532 net optional openssh-server_7.6p1-4ubuntu0.1_armhf.deb 4620f809b915bbd2e5375337461ee82e 121548 debug optional openssh-sftp-server-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb 31302b4dd27ed673ecd452d4b6cc054f 39528 net optional openssh-sftp-server_7.6p1-4ubuntu0.1_armhf.deb a1cbc7e66089b1e10d2fb426733c40ee 16881 net standard openssh_7.6p1-4ubuntu0.1_armhf.buildinfo c528bad52cab969e316bf5c5ff4d174a 8423 raw-translations - openssh_7.6p1-4ubuntu0.1_armhf_translations.tar.gz a5333336d162e40b7d95e5100fa1df73 11892 debug optional ssh-askpass-gnome-dbgsym_7.6p1-4ubuntu0.1_armhf.ddeb 081bafb38e9d8978595e41beafd812b4 16696 gnome optional ssh-askpass-gnome_7.6p1-4ubuntu0.1_armhf.deb Original-Maintainer: Debian OpenSSH Maintainers