Format: 1.8 Date: Wed, 03 Jul 2019 11:29:28 -0300 Source: zeromq3 Binary: libzmq5 libzmq3-dev Architecture: armhf Version: 4.2.5-2ubuntu0.2 Distribution: cosmic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Eduardo Barretto Description: libzmq3-dev - lightweight messaging kernel (development files) libzmq5 - lightweight messaging kernel (shared library) Changes: zeromq3 (4.2.5-2ubuntu0.2) cosmic-security; urgency=medium . * SECURITY UPDATE: Unauthenticated client can cause a stack overflow on any server that is supposed to be protected by encryption/authentication, leading to a DoS (crash) or possibly other impact. - debian/patches/CVE-2019-13132.patch: create buffers large enough to contain arbitrary metadata. - CVE-2019-13132 Checksums-Sha1: 22316c83ad8129c896973be61309ee18f3673dae 392736 libzmq3-dev_4.2.5-2ubuntu0.2_armhf.deb 48b88d09ff556a47624c1d2802226138251c9bba 4308604 libzmq5-dbgsym_4.2.5-2ubuntu0.2_armhf.ddeb 96e8c66f28ca574dea90a857daaa2d17687d16c1 189760 libzmq5_4.2.5-2ubuntu0.2_armhf.deb eaa1955352cc804b3770526fe7d2503ff98a72fd 6896 zeromq3_4.2.5-2ubuntu0.2_armhf.buildinfo Checksums-Sha256: d2f269e2dcabfe4c1b4d049513f853f8e2f181bf875b1bc9adb306c8d8837a36 392736 libzmq3-dev_4.2.5-2ubuntu0.2_armhf.deb 5e406d1213107d7f6406347ba368079acbdfcf4baf5a381b841c6888e8eb6536 4308604 libzmq5-dbgsym_4.2.5-2ubuntu0.2_armhf.ddeb b2c7333ae297e2bd1f3f4a343e95878db4b869bd26156c444612f6958aecae13 189760 libzmq5_4.2.5-2ubuntu0.2_armhf.deb 7a2a64df51d15faa5a983e87529d215f4688e7f4031667d4223abe34c5b818b1 6896 zeromq3_4.2.5-2ubuntu0.2_armhf.buildinfo Files: 7af6b9a2746977d08705a6d4899bef89 392736 libdevel optional libzmq3-dev_4.2.5-2ubuntu0.2_armhf.deb 5582bd1e582d66f8415dcca8734b749d 4308604 debug optional libzmq5-dbgsym_4.2.5-2ubuntu0.2_armhf.ddeb 6216a3481f0c5e7743d7ff99c4908cbc 189760 libs optional libzmq5_4.2.5-2ubuntu0.2_armhf.deb b9390aecb3c9127cdfc8957c2e42cca6 6896 libs optional zeromq3_4.2.5-2ubuntu0.2_armhf.buildinfo Original-Maintainer: Laszlo Boszormenyi (GCS)