changes_fields:
Architecture: amd64
Binary: apt libapt-pkg5.0 libapt-inst2.0 apt-doc libapt-pkg-dev libapt-pkg-doc apt-utils
apt-transport-https
Changed-By: Julian Andres Klode <jak@debian.org>
Changes: |2-
apt (1.4.11) stretch-security; urgency=high
.
* SECURITY UPDATE: Integer overflow in parsing (LP: #1899193)
- apt-pkg/contrib/arfile.cc: add extra checks.
- apt-pkg/contrib/tarfile.cc: limit tar item sizes to 128 GiB
- apt-pkg/deb/debfile.cc: limit control file sizes to 64 MiB
- test/*: add tests.
- CVE-2020-27350
* Additional hardening:
- apt-pkg/contrib/tarfile.cc: Limit size of long names and links to 1 MiB
+ * Fix autopkgtest regression in 1.8.2.1 security update
Checksums-Sha1:
- name: apt-dbgsym_1.4.11_amd64.deb
sha1: a9386f48c76ee1ebc8f93839e074f6f4dcc91416
size: '4449584'
- name: apt-transport-https-dbgsym_1.4.11_amd64.deb
sha1: 91f77d0c317ff72bef9d25609bc877a6250b7090
size: '292518'
- name: apt-transport-https_1.4.11_amd64.deb
sha1: 96310e856e8da47a1855a34f51c8e28957658712
size: '170970'
- name: apt-utils-dbgsym_1.4.11_amd64.deb
sha1: 1cd68d5e9a4974d21d45dfd6dd4c931e4fa09bb4
size: '1289358'
- name: apt-utils_1.4.11_amd64.deb
sha1: 2dda8e66b091803815702b4a8a1ca39f8e777c5e
size: '410332'
- name: apt_1.4.11_amd64.buildinfo
sha1: 53c11fb40999e99fd3e2589f6f43bc7bef5a4b52
size: '9601'
- name: apt_1.4.11_amd64.deb
sha1: 0c00ef2b170b4214f22909abcf1862d97ace3df3
size: '1231930'
- name: libapt-inst2.0-dbgsym_1.4.11_amd64.deb
sha1: d20fe9bfd542bcf1cfedbff92a8f2943f8ac13b3
size: '221828'
- name: libapt-inst2.0_1.4.11_amd64.deb
sha1: e1c3c874b046e39c81cb9aa5aeddafc53b016aa9
size: '191466'
- name: libapt-pkg-dev_1.4.11_amd64.deb
sha1: 63ec86106d6c199c333e1d300f89ca8dab1d98c5
size: '235546'
- name: libapt-pkg5.0-dbgsym_1.4.11_amd64.deb
sha1: 692ab65ad966c8ae32b077a210fd04860b97460b
size: '6076036'
- name: libapt-pkg5.0_1.4.11_amd64.deb
sha1: 4ccbc7ed222ae245bb1516c32492273456828699
size: '917128'
Checksums-Sha256:
- name: apt-dbgsym_1.4.11_amd64.deb
sha256: 88960ef2362b141832bdbfdcb062b69e6b2070ce6c044a2d215ff3133561439d
size: '4449584'
- name: apt-transport-https-dbgsym_1.4.11_amd64.deb
sha256: daf08c37d9d69f39760cd2d5356640768a2ca51d034231790e1a646d632065a8
size: '292518'
- name: apt-transport-https_1.4.11_amd64.deb
sha256: 6f6a49b9c3c8c12c52d0aca92612cfcb17708f0ae624433b2a683573e996666b
size: '170970'
- name: apt-utils-dbgsym_1.4.11_amd64.deb
sha256: 1f2fae7add281edd04702a6e7747dee5d40e21c7f0941bf5baa56be79638be4c
size: '1289358'
- name: apt-utils_1.4.11_amd64.deb
sha256: 87671557fdfb1c5dc1bb182903df8e0071513e23bd929223f846b7750fada9df
size: '410332'
- name: apt_1.4.11_amd64.buildinfo
sha256: a30fe5356a6033008c3fe836961455e54750e6af2c8c2af82b561d7062c528ad
size: '9601'
- name: apt_1.4.11_amd64.deb
sha256: 6f4149498e00ff3ab82f484d5e58307308b3bf23ca222cd57bb7d80d16b035a1
size: '1231930'
- name: libapt-inst2.0-dbgsym_1.4.11_amd64.deb
sha256: 3e0ed593a8097339144e3d78294d2c653f2350f326024a9786d7eb75e38a8e7b
size: '221828'
- name: libapt-inst2.0_1.4.11_amd64.deb
sha256: 82bab15d17b219823c204a5078c3d5ea2fad2e4462233d53bf153bf94ad8eab6
size: '191466'
- name: libapt-pkg-dev_1.4.11_amd64.deb
sha256: fc4e794457f32f1b2e95e588a97ca3d2921db58c54d07b09cfd3634d0c418630
size: '235546'
- name: libapt-pkg5.0-dbgsym_1.4.11_amd64.deb
sha256: 01f96c9200bac059cf5513df1b7fd9fcac5aa9ca23f6ebf3ccbda9143103cb0b
size: '6076036'
- name: libapt-pkg5.0_1.4.11_amd64.deb
sha256: a9ae561e91e27246969a552f2cbb28cfc8d31153febab4ab0bb1679bf43bcee9
size: '917128'
Date: Mon, 07 Dec 2020 13:45:23 +0100
Description: |2-
apt - commandline package manager
apt-doc - documentation for APT
apt-transport-https - https download transport for APT
apt-utils - package management related utility programs
libapt-inst2.0 - deb package format runtime library
libapt-pkg-dev - development files for APT's libapt-pkg and libapt-inst
libapt-pkg-doc - documentation for APT development
libapt-pkg5.0 - package management runtime library
Distribution: stretch
Files:
- md5sum: d88fbb317c01edc21cfabf7e188b2eb7
name: apt-dbgsym_1.4.11_amd64.deb
priority: extra
section: debug
size: '4449584'
- md5sum: e88324e745db20e13b3751728eda9079
name: apt-transport-https-dbgsym_1.4.11_amd64.deb
priority: extra
section: debug
size: '292518'
- md5sum: 6cc90102f46042b695f7080b7a5d16e8
name: apt-transport-https_1.4.11_amd64.deb
priority: optional
section: admin
size: '170970'
- md5sum: fe81c52a01544891909cb9abe85d0b8b
name: apt-utils-dbgsym_1.4.11_amd64.deb
priority: extra
section: debug
size: '1289358'
- md5sum: bea6b18c73b85668e7632c5ffdedf3e5
name: apt-utils_1.4.11_amd64.deb
priority: important
section: admin
size: '410332'
- md5sum: 7b51a7ff6f9b3fae0d1b531c2d0b3195
name: apt_1.4.11_amd64.buildinfo
priority: important
section: admin
size: '9601'
- md5sum: e3757d5f445d43cc6ba31e9d9f57240d
name: apt_1.4.11_amd64.deb
priority: important
section: admin
size: '1231930'
- md5sum: e202786eee8be9cd3426d402988feb0d
name: libapt-inst2.0-dbgsym_1.4.11_amd64.deb
priority: extra
section: debug
size: '221828'
- md5sum: b3f99870d0b76829ea0e9abbf1ef5dde
name: libapt-inst2.0_1.4.11_amd64.deb
priority: important
section: libs
size: '191466'
- md5sum: 862a2b82ca226cfa3e9592cb91023839
name: libapt-pkg-dev_1.4.11_amd64.deb
priority: optional
section: libdevel
size: '235546'
- md5sum: 8b0c655fca074410b55d0c609d1a87a4
name: libapt-pkg5.0-dbgsym_1.4.11_amd64.deb
priority: extra
section: debug
size: '6076036'
- md5sum: fd7a080de7434cafbf216af40f9220b7
name: libapt-pkg5.0_1.4.11_amd64.deb
priority: important
section: libs
size: '917128'
Format: '1.8'
Maintainer: APT Development Team <deity@lists.debian.org>
Source: apt
Urgency: high
Version: 1.4.11
type: dpkg