Format: 1.8 Date: Tue, 04 Feb 2020 08:14:11 -0500 Source: opensmtpd Binary: opensmtpd Architecture: arm64 Version: 6.0.3p1-6ubuntu0.1 Distribution: eoan Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Mike Salvatore Description: opensmtpd - secure, reliable, lean, and easy-to configure SMTP server Changes: opensmtpd (6.0.3p1-6ubuntu0.1) eoan-security; urgency=medium . * SECURITY UPDATE: Arbitrary command execution as root - debian/patches/CVE-2020-7247.patch: Fix a security vulnerability discovered by Qualys which can lead to a privileges escalation on mbox deliveries and unprivileged code execution on lmtp deliveries, due to a logic issue causing a sanity check to be missed. - CVE-2020-7247 Checksums-Sha1: 27dbc251a06ee833b3fb77c585b7706c0c33892e 703120 opensmtpd-dbgsym_6.0.3p1-6ubuntu0.1_arm64.ddeb f622d74da047901e6b266e6a2f3396d928897b99 5654 opensmtpd_6.0.3p1-6ubuntu0.1_arm64.buildinfo f9e3df2242d2d8a204e89343f7c6e5400f36758d 247716 opensmtpd_6.0.3p1-6ubuntu0.1_arm64.deb Checksums-Sha256: cd22022a4a57044341cad52d62f18bf88dbfd40ec8422de7ea7d4e560ea8fe8e 703120 opensmtpd-dbgsym_6.0.3p1-6ubuntu0.1_arm64.ddeb 3d1dc7dc84f9abb28d7e705c7c1b684cd99e9a4362345a23085ab276e9d852ed 5654 opensmtpd_6.0.3p1-6ubuntu0.1_arm64.buildinfo 8ce2fbd708d34437871dc8cef0026c5e8c95f2adafc7a3c70ebc0251a98f480f 247716 opensmtpd_6.0.3p1-6ubuntu0.1_arm64.deb Files: eed97ec4f6729066d77d40ca59dc7561 703120 debug optional opensmtpd-dbgsym_6.0.3p1-6ubuntu0.1_arm64.ddeb 9e29d87f1f26331ca0bc69e2f234d903 5654 mail optional opensmtpd_6.0.3p1-6ubuntu0.1_arm64.buildinfo 9fe64ed9015fc746cb6a6dea037e2812 247716 mail optional opensmtpd_6.0.3p1-6ubuntu0.1_arm64.deb Original-Maintainer: Ryan Kavanagh