Format: 1.8 Date: Tue, 16 Aug 2022 13:48:36 -0500 Source: rsync Binary: rsync Architecture: riscv64 Version: 3.1.3-8ubuntu0.4 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Mark Esler Description: rsync - fast, versatile, remote (and local) file-copying tool Changes: rsync (3.1.3-8ubuntu0.4) focal-security; urgency=medium . * SECURITY UPDATE: zlib buffer overflow when inflating certain gzip hearders. - debian/patches/CVE-2022-37434-1.patch: catches overflow in inflateGetHeader by enforcing buffer size. - debian/patches/CVE-2022-37434-2.patch: prevents NULL dereference regression previous patch introduced. - CVE-2022-37434 Checksums-Sha1: e0ad8c1d24f555b7b45f290936fd0ced8b35b16c 481156 rsync-dbgsym_3.1.3-8ubuntu0.4_riscv64.ddeb 8b3c5baca8c20ac0fb8d54e4326e3ca3ced23c3c 5329 rsync_3.1.3-8ubuntu0.4_riscv64.buildinfo bdc15cadf1eab319e88aa35bb11bcac0bb5b523d 308212 rsync_3.1.3-8ubuntu0.4_riscv64.deb Checksums-Sha256: 9f06363abd3ce8b69cd7eb27d053c618585e7054985c55c42105cb897ee76077 481156 rsync-dbgsym_3.1.3-8ubuntu0.4_riscv64.ddeb b7538b36584f78fd4db37d16723396098c58a3792b7f67375cd3b7909383b1a5 5329 rsync_3.1.3-8ubuntu0.4_riscv64.buildinfo d02fd9428f98a06289d58ce0cea7a5907726db989b34c03a41bc683b4c932c23 308212 rsync_3.1.3-8ubuntu0.4_riscv64.deb Files: a882e1d1c51d66e51ebfc71654836657 481156 debug optional rsync-dbgsym_3.1.3-8ubuntu0.4_riscv64.ddeb 9efb2011a07963f4e5a95c068c46fa76 5329 net optional rsync_3.1.3-8ubuntu0.4_riscv64.buildinfo 97f4259cfeb3e69d461bb726003e2627 308212 net optional rsync_3.1.3-8ubuntu0.4_riscv64.deb Original-Maintainer: Paul Slootman