Format: 1.8 Date: Mon, 14 Mar 2016 12:57:00 -0400 Source: exim4 Binary: exim4-base exim4-config exim4-daemon-light exim4 exim4-daemon-heavy exim4-daemon-custom eximon4 exim4-dbg exim4-daemon-light-dbg exim4-daemon-heavy-dbg exim4-daemon-custom-dbg exim4-dev Architecture: armhf armhf_translations Version: 4.82-3ubuntu2.1 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: exim4 - metapackage to ease Exim MTA (v4) installation exim4-base - support files for all Exim MTA (v4) packages exim4-config - configuration for the Exim MTA (v4) exim4-daemon-custom - custom Exim MTA (v4) daemon with locally set features exim4-daemon-custom-dbg - debugging symbols for the Exim MTA (v4) packages exim4-daemon-heavy - Exim MTA (v4) daemon with extended features, including exiscan-ac exim4-daemon-heavy-dbg - debugging symbols for the Exim MTA "heavy" daemon exim4-daemon-light - lightweight Exim MTA (v4) daemon exim4-daemon-light-dbg - debugging symbols for the Exim MTA "light" daemon exim4-dbg - debugging symbols for the Exim MTA (utilities) exim4-dev - header files for the Exim MTA (v4) packages eximon4 - monitor application for the Exim MTA (v4) (X11 interface) Changes: exim4 (4.82-3ubuntu2.1) trusty-security; urgency=medium . * SECURITY UPDATE: privilege escalation via crafted lookup value - debian/patches/CVE-2014-2972.patch: only expand integers for integer math once. - CVE-2014-2972 * SECURITY UPDATE: privilege escalation when used with perl_startup - debian/patches/CVE-2016-1531.patch: add new add_environment and keep_environment configuration options. - debian/patches/CVE-2016-1531-2.patch: don't issue env warning if env is empty. - debian/patches/CVE-2016-1531-3.patch: store the initial working directory, expand $initial_cwd. - debian/patches/CVE-2016-1531-4.patch: delay chdir(/) until we opened the main config. - Add macros MAIN_KEEP_ENVIRONMENT and MAIN_ADD_ENVIRONMENT to set the new options. Set "keep_environment =" by default to avoid a runtime warning. - Bump exim4-config Breaks to exim4-daemon-* (<< 4.82-3ubuntu2.1). - debian/exim4-config.NEWS: Add entry to warn of potential breakage. - CVE-2016-1531 * WARNING: This update may break existing installations. Checksums-Sha1: 8f4814d4842e29adc3c0d3fe1a46ecdf4ca32b4c 852462 exim4-base_4.82-3ubuntu2.1_armhf.deb 143a0b05de9fe6ee004655b706c566645b2a5a70 40798 eximon4_4.82-3ubuntu2.1_armhf.deb e757255469f5ee2f8ce631acff24c93ffd182249 403962 exim4-daemon-light_4.82-3ubuntu2.1_armhf.deb f3b837d7bfd3fd6049e11c8e9fb16490d2256136 449448 exim4-daemon-heavy_4.82-3ubuntu2.1_armhf.deb f5fbdb6f2b636d8a1c9cc670c4f8d018119f946f 757396 exim4-daemon-light-dbg_4.82-3ubuntu2.1_armhf.deb 948adc38e64e933100ef9b342a14efda6ea94820 868464 exim4-daemon-heavy-dbg_4.82-3ubuntu2.1_armhf.deb dd42f836b58ae2c5ae37bfb07685f39bbda76cd3 183416 exim4-dbg_4.82-3ubuntu2.1_armhf.deb cc0cc4cadd50b5221dd91cd6bc36cc90e2f620ed 15516 exim4-dev_4.82-3ubuntu2.1_armhf.deb b0e1a77ebf30724f7e183323ed9ab6cb8828b96c 1426 exim4-daemon-heavy-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 2ae0b81af6ba57186b1de54995be9fe21e06a1b8 1350 exim4-daemon-light-dbgsym_4.82-3ubuntu2.1_armhf.ddeb c4bca615eabcad5fe953458f5e20ab585dd1347c 914 eximon4-dbgsym_4.82-3ubuntu2.1_armhf.ddeb aa3c9fee512cf9bf7bdad42edc0fef080f69d2c8 1362 exim4-base-dbgsym_4.82-3ubuntu2.1_armhf.ddeb d6f6914901241b17ba95d71bac8e387b53fbcff1 353689 exim4_4.82-3ubuntu2.1_armhf_translations.tar.gz Checksums-Sha256: a2574347371f2cf4e4713618d8f193a2fbf34d63800399a759f909ad81916620 852462 exim4-base_4.82-3ubuntu2.1_armhf.deb 4db60823815412c440d3ff731c67f3e447d644c7e7fe3577a97be60348427ef2 40798 eximon4_4.82-3ubuntu2.1_armhf.deb e23c6417531972e97ff539e9b4e388715592aac5e416e9f9373bcd04fa5f5af7 403962 exim4-daemon-light_4.82-3ubuntu2.1_armhf.deb f541398011eaf2851e5aa790ac10e834810c4309a06a17ec825291eb16b12d01 449448 exim4-daemon-heavy_4.82-3ubuntu2.1_armhf.deb 84dccc115f090bcd69a9b4cd4e1b32c52d2de41e81a0b51e2ac0bac1b92ab0ac 757396 exim4-daemon-light-dbg_4.82-3ubuntu2.1_armhf.deb 62ae33de29f7a82795f98180b86a2b969edd8aa7f71600d9016e8f605630d376 868464 exim4-daemon-heavy-dbg_4.82-3ubuntu2.1_armhf.deb 511f3cc0d72ad7a657920327596110c63af2a514a70810130c7dabb6c2ecdba5 183416 exim4-dbg_4.82-3ubuntu2.1_armhf.deb 1ebccb6c1a8deb1cc6a36c326611ab81b797373c2d4937e5addd8ad45a1ae699 15516 exim4-dev_4.82-3ubuntu2.1_armhf.deb 8558e705f3845aa3e003e7e0a2f8a3f294589b9a12f9da8b239b1c3f68309927 1426 exim4-daemon-heavy-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 8abf79a932f448f543963aee2d30e53b3847114f2c5734cdb86ccfb7b5806f28 1350 exim4-daemon-light-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 12217a0fb49642de41d6e563811de80d8b5d716f4038fcd0e53edfbe05c083fd 914 eximon4-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 40297930da510ef80eca07baba9c5704631a46f5a6f41983dfd98f4fe4072d71 1362 exim4-base-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 0d321373fa15cd2455ba0f52749f0c4b7a24a7b7d27653b1a94c2477aff06439 353689 exim4_4.82-3ubuntu2.1_armhf_translations.tar.gz Files: 2b384d7200d2edda5a1f97cc457d99af 852462 mail standard exim4-base_4.82-3ubuntu2.1_armhf.deb ee13ee4f2096ddee1529192a347acae9 40798 mail optional eximon4_4.82-3ubuntu2.1_armhf.deb 982d7ce56eb186af46f7a5fca57b046d 403962 mail standard exim4-daemon-light_4.82-3ubuntu2.1_armhf.deb 50b31ffcdfa26ee5cfd975f21ab7c50b 449448 mail optional exim4-daemon-heavy_4.82-3ubuntu2.1_armhf.deb 7ce9cb5dafcbaa419b5c16a3fcc37fa5 757396 debug extra exim4-daemon-light-dbg_4.82-3ubuntu2.1_armhf.deb 6db4c1d0ec5412c6557066e5164bd833 868464 debug extra exim4-daemon-heavy-dbg_4.82-3ubuntu2.1_armhf.deb 466b79cbdc70ac8c98bc0e9c2ad25343 183416 debug extra exim4-dbg_4.82-3ubuntu2.1_armhf.deb 16f6d57cc32c5475824e721d87a4a406 15516 mail extra exim4-dev_4.82-3ubuntu2.1_armhf.deb 481b01c3e00b9e43c6914e0d47a26b5c 1426 mail extra exim4-daemon-heavy-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 078ca34e137b7a4701804aa60d605f00 1350 mail extra exim4-daemon-light-dbgsym_4.82-3ubuntu2.1_armhf.ddeb d5b1b5e262648506af17167610f9508f 914 mail extra eximon4-dbgsym_4.82-3ubuntu2.1_armhf.ddeb 79fd568c3d0a1d5a71b730de34b7a60e 1362 mail extra exim4-base-dbgsym_4.82-3ubuntu2.1_armhf.ddeb c58b9a0e356f164a0b896907a383bf05 353689 raw-translations - exim4_4.82-3ubuntu2.1_armhf_translations.tar.gz Original-Maintainer: Exim4 Maintainers