Format: 1.8 Date: Tue, 04 Feb 2020 08:14:11 -0500 Source: opensmtpd Binary: opensmtpd Architecture: armhf Version: 6.0.3p1-6ubuntu0.1 Distribution: eoan Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Mike Salvatore Description: opensmtpd - secure, reliable, lean, and easy-to configure SMTP server Changes: opensmtpd (6.0.3p1-6ubuntu0.1) eoan-security; urgency=medium . * SECURITY UPDATE: Arbitrary command execution as root - debian/patches/CVE-2020-7247.patch: Fix a security vulnerability discovered by Qualys which can lead to a privileges escalation on mbox deliveries and unprivileged code execution on lmtp deliveries, due to a logic issue causing a sanity check to be missed. - CVE-2020-7247 Checksums-Sha1: 62981c6ab6ac7abac042a2ba997a6fc4d0b057c3 696932 opensmtpd-dbgsym_6.0.3p1-6ubuntu0.1_armhf.ddeb 55e12bf11a8583bbe4de272dd83f4488bc826126 5567 opensmtpd_6.0.3p1-6ubuntu0.1_armhf.buildinfo 883ea2e55b7d7a23d126d670072e596dafec7128 234976 opensmtpd_6.0.3p1-6ubuntu0.1_armhf.deb Checksums-Sha256: 87fe56c973979177a15529a75f5a39e061ebd88ec585601950724a1fd70575c4 696932 opensmtpd-dbgsym_6.0.3p1-6ubuntu0.1_armhf.ddeb 481093f03427ab332c0df4d0a7db17d5a9c1e6f7362dae56f6c47b51111e0a97 5567 opensmtpd_6.0.3p1-6ubuntu0.1_armhf.buildinfo 6c407097929e170ed3d3be5b60ccc43daccdbdc417016da9f213f2a4749015f2 234976 opensmtpd_6.0.3p1-6ubuntu0.1_armhf.deb Files: b46859c46ef910ffcfe9dd3ac6b27614 696932 debug optional opensmtpd-dbgsym_6.0.3p1-6ubuntu0.1_armhf.ddeb 164b5e915c5eebbf56705d2169820407 5567 mail optional opensmtpd_6.0.3p1-6ubuntu0.1_armhf.buildinfo bfd53b45a76a67f4b9a2425a8bd27d08 234976 mail optional opensmtpd_6.0.3p1-6ubuntu0.1_armhf.deb Original-Maintainer: Ryan Kavanagh