Format: 1.8 Date: Mon, 22 Aug 2016 14:13:11 -0400 Source: libidn Binary: idn libidn11-dev libidn11 libidn11-java Architecture: ppc64el ppc64el_translations Version: 1.32-3ubuntu1.1 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: idn - Command line and Emacs interface to GNU Libidn libidn11 - GNU Libidn library, implementation of IETF IDN specifications libidn11-dev - Development files for GNU Libidn, an IDN library libidn11-java - Java port of the GNU Libidn library, an IDN implementation Changes: libidn (1.32-3ubuntu1.1) xenial-security; urgency=medium . * SECURITY UPDATE: out-of-bounds read when reading one zero byte - debian/patches/CVE-2015-8948.patch: use getline instead of fgets with fixed-size buffer in gl/Makefile.am, gl/getdelim.c, gl/getline.c, gl/m4/getdelim.m4, gl/m4/getline.m4, gl/m4/gnulib-cache.m4, gl/m4/gnulib-comp.m4, gl/m4/realloc.m4, gl/realloc.c, gl/stdint.in.h, gl/stdlib.in.h, gltests/Makefile.am, gltests/test-getdelim.c, gltests/test-getline.c, src/idn.c. - debian/patches/CVE-2016-6262.patch: add extra check in src/idn.c. - CVE-2015-8948 - CVE-2016-6262 * SECURITY UPDATE: out-of-bounds stack read in idna_to_ascii_4i - debian/patches/CVE-2016-6261-1.patch: fix out of bounds read in lib/idna.c. - debian/patches/CVE-2016-6261-2.patch: fix memory leak in lib/idna.c. - debian/patches/CVE-2016-6261-3.patch: add test to tests/Makefile.am, tests/tst_toascii64oob.c. - CVE-2016-6261 * SECURITY UPDATE: invalid UTF-8 DoS in stringprep_utf8_nfkc_normalize - debian/patches/CVE-2016-6263.patch: reject invalid UTF-8 in lib/nfkc.c, tests/Makefile.am, tests/tst_badutf8nfkc.c. - CVE-2016-6263 * Fix FTBFS caused by docs regeneration - debian/patches/fix_gdoc_path.patch: fix path to gdoc location. - debian/control: added help2man and texinfo to Build-Depends. Checksums-Sha1: 1ff249bd4bc7a183a6dc22c898bb7679f0b0a684 20278 idn-dbgsym_1.32-3ubuntu1.1_ppc64el.ddeb f0bcb2ca54e52dd8618321d22d1712b752bea692 75356 idn_1.32-3ubuntu1.1_ppc64el.deb cd1465770e41ab4951e5c2253d7480a9f8f00d07 38180 libidn11-dbgsym_1.32-3ubuntu1.1_ppc64el.ddeb 2a03a2101cf42909734126ff09fae6d01b68bc10 519798 libidn11-dev_1.32-3ubuntu1.1_ppc64el.deb ac810f2abd97e464fd7e18d416e3a7b1d680e833 46014 libidn11_1.32-3ubuntu1.1_ppc64el.deb 3f02f84162051a59c881ec7db7be77e3e92a4c47 35752 libidn_1.32-3ubuntu1.1_ppc64el_translations.tar.gz Checksums-Sha256: 20a7c9c429a5f75140f66e5e55213c95496fe4445f20e9874020c7eea7b2d05e 20278 idn-dbgsym_1.32-3ubuntu1.1_ppc64el.ddeb 66ba334c147134b5961498324ef4f5cad5d2d68c0e06a19b30f88ed894210659 75356 idn_1.32-3ubuntu1.1_ppc64el.deb 1ebf1df54534baf0742d510e880c5a97efdb0da6bcb5ec1d41561d4974f49777 38180 libidn11-dbgsym_1.32-3ubuntu1.1_ppc64el.ddeb 14cb64e69ec54f0f96dfa9af5b9cdf0b13a9a219d30d086e962824be3ea5a84d 519798 libidn11-dev_1.32-3ubuntu1.1_ppc64el.deb d2cdd1b9a8ac288fcb2c986485ccca4343541ff574dbc6734abc4bba2e60f397 46014 libidn11_1.32-3ubuntu1.1_ppc64el.deb ff5bbac698041107f3c6541bc1018a620a2332fbd7d4d0f8ca7a8dda73fc1831 35752 libidn_1.32-3ubuntu1.1_ppc64el_translations.tar.gz Files: 44c52a6a635a2543f8e520676ec3ba72 20278 misc extra idn-dbgsym_1.32-3ubuntu1.1_ppc64el.ddeb d5388cf05b24d562ad0e43c7fb1a3a02 75356 misc optional idn_1.32-3ubuntu1.1_ppc64el.deb 1bbf0ca0038712eb9381a7dca546995e 38180 libs extra libidn11-dbgsym_1.32-3ubuntu1.1_ppc64el.ddeb 6ef76e7b47bcb1a2f4acdf35209e718f 519798 libdevel optional libidn11-dev_1.32-3ubuntu1.1_ppc64el.deb 11b644e1d5f89af50a5b94fe4a0e332b 46014 libs standard libidn11_1.32-3ubuntu1.1_ppc64el.deb 463732e9861408a593f69c58b94a0f9c 35752 raw-translations - libidn_1.32-3ubuntu1.1_ppc64el_translations.tar.gz Original-Maintainer: Debian Libidn Team