changes_fields:
Architecture: i386
Binary: apt libapt-pkg5.0 libapt-inst2.0 apt-doc libapt-pkg-dev libapt-pkg-doc apt-utils
apt-transport-https
Changed-By: Julian Andres Klode <jak@debian.org>
Changes: |2-
apt (1.4.11) stretch-security; urgency=high
.
* SECURITY UPDATE: Integer overflow in parsing (LP: #1899193)
- apt-pkg/contrib/arfile.cc: add extra checks.
- apt-pkg/contrib/tarfile.cc: limit tar item sizes to 128 GiB
- apt-pkg/deb/debfile.cc: limit control file sizes to 64 MiB
- test/*: add tests.
- CVE-2020-27350
* Additional hardening:
- apt-pkg/contrib/tarfile.cc: Limit size of long names and links to 1 MiB
+ * Fix autopkgtest regression in 1.8.2.1 security update
Checksums-Sha1:
- name: apt-dbgsym_1.4.11_i386.deb
sha1: 83003b2baf4ff9ccd837909ce4b63333bb24dee4
size: '4312758'
- name: apt-transport-https-dbgsym_1.4.11_i386.deb
sha1: 89b4d314528a1d370b6ac64d773de60d8cbe72f6
size: '281534'
- name: apt-transport-https_1.4.11_i386.deb
sha1: 9fac0a05a131da05e8dfdf487246d4db67c32a3d
size: '174802'
- name: apt-utils-dbgsym_1.4.11_i386.deb
sha1: 334508b23958a85d733a81ca1a395afc4fd1fd57
size: '1239958'
- name: apt-utils_1.4.11_i386.deb
sha1: 57a7e6d93920636ff838cf41686c3ce54d790cee
size: '421734'
- name: apt_1.4.11_i386.buildinfo
sha1: c7ccdf46a7e2ccb9fb38baee7c056423d6727d6f
size: '9504'
- name: apt_1.4.11_i386.deb
sha1: bac509645ea37c68af82385003f0f213482165f9
size: '1264634'
- name: libapt-inst2.0-dbgsym_1.4.11_i386.deb
sha1: 13470d9fe0b18a7c33276fccdd5b4afaf88a8ef7
size: '214748'
- name: libapt-inst2.0_1.4.11_i386.deb
sha1: 439e4f112b3c3e1bf13f26bb1627cbf03b09ac63
size: '193708'
- name: libapt-pkg-dev_1.4.11_i386.deb
sha1: 44849f0a98ec86a1407e5886ec54ea19b73d2010
size: '235542'
- name: libapt-pkg5.0-dbgsym_1.4.11_i386.deb
sha1: d88b91d711bdc8d6bcd5dbe57c7e6360a2af793c
size: '5832700'
- name: libapt-pkg5.0_1.4.11_i386.deb
sha1: 5d18d4e4fc0393723751709c47cbeb7f8cfa1990
size: '989312'
Checksums-Sha256:
- name: apt-dbgsym_1.4.11_i386.deb
sha256: bfe44d655fd5b09bc2ef851852518ae756270171e4dcbc6945627cdcc7214968
size: '4312758'
- name: apt-transport-https-dbgsym_1.4.11_i386.deb
sha256: 054920b8b78495e42306f0b0902b2073400dcd0d45257f339a97afe152bf7932
size: '281534'
- name: apt-transport-https_1.4.11_i386.deb
sha256: b13efddffb1c9c7555071b26eebc8b28c830d260ee650079e67f6a8fa867570c
size: '174802'
- name: apt-utils-dbgsym_1.4.11_i386.deb
sha256: 4fc762323ecdef26a2be56c7c6585f8b801c269b131bda69fee418b6f2b873be
size: '1239958'
- name: apt-utils_1.4.11_i386.deb
sha256: 03cb211a28da708d357a6b8d6eefb7e4dea8c7e58063b0f729a794500451660e
size: '421734'
- name: apt_1.4.11_i386.buildinfo
sha256: 208b22c8e74af3b53b5e3f3a903c05af0096c25728346a129d6f6f270a6d5d91
size: '9504'
- name: apt_1.4.11_i386.deb
sha256: bc0d5fcecde6dd3c35e2da6f1bcfa7cdc9b32dde7421e69a92d10c0263b13166
size: '1264634'
- name: libapt-inst2.0-dbgsym_1.4.11_i386.deb
sha256: 3d3157b03746ab946aecd809009e41da6ebfae5bca3660117d59079886d215ed
size: '214748'
- name: libapt-inst2.0_1.4.11_i386.deb
sha256: 379451701e29d83e9ecf7f9402188e72e162241e38e9f3c8820dcd54b5752ec7
size: '193708'
- name: libapt-pkg-dev_1.4.11_i386.deb
sha256: fc1302955702464eb9f4466fba706d166868ae34eeef46757fd848119e13b6a3
size: '235542'
- name: libapt-pkg5.0-dbgsym_1.4.11_i386.deb
sha256: 130b7bcd134730623e095388907827928046df20735e1e06c219b61196966610
size: '5832700'
- name: libapt-pkg5.0_1.4.11_i386.deb
sha256: 17dac5124ce1cf1b22590c697e5e4f0a528c9d9b945a08b1be6297765d6b67e5
size: '989312'
Date: Mon, 07 Dec 2020 13:45:23 +0100
Description: |2-
apt - commandline package manager
apt-doc - documentation for APT
apt-transport-https - https download transport for APT
apt-utils - package management related utility programs
libapt-inst2.0 - deb package format runtime library
libapt-pkg-dev - development files for APT's libapt-pkg and libapt-inst
libapt-pkg-doc - documentation for APT development
libapt-pkg5.0 - package management runtime library
Distribution: stretch
Files:
- md5sum: 56c923ac75761fc8f17a200803b2d0ad
name: apt-dbgsym_1.4.11_i386.deb
priority: extra
section: debug
size: '4312758'
- md5sum: e6494a892b9e6f60432bab4f0d054e57
name: apt-transport-https-dbgsym_1.4.11_i386.deb
priority: extra
section: debug
size: '281534'
- md5sum: 551324a2856768d06357e2155bf52421
name: apt-transport-https_1.4.11_i386.deb
priority: optional
section: admin
size: '174802'
- md5sum: 0a318e7d05b7d228e09097d42be3d435
name: apt-utils-dbgsym_1.4.11_i386.deb
priority: extra
section: debug
size: '1239958'
- md5sum: ea92a006db6f9f993dee3374f97638b7
name: apt-utils_1.4.11_i386.deb
priority: important
section: admin
size: '421734'
- md5sum: 4e3a6829b023d129b784cf6f2f5f7e9b
name: apt_1.4.11_i386.buildinfo
priority: important
section: admin
size: '9504'
- md5sum: 57319a2634805ddc761c2f5bf891053d
name: apt_1.4.11_i386.deb
priority: important
section: admin
size: '1264634'
- md5sum: 237826e583f247b6d9192d7199545ef3
name: libapt-inst2.0-dbgsym_1.4.11_i386.deb
priority: extra
section: debug
size: '214748'
- md5sum: 73f048d498a8b6c701c9df4c552eb59b
name: libapt-inst2.0_1.4.11_i386.deb
priority: important
section: libs
size: '193708'
- md5sum: 75a9edf79252fe324838c3df92953bf9
name: libapt-pkg-dev_1.4.11_i386.deb
priority: optional
section: libdevel
size: '235542'
- md5sum: a36df519e6f6140767327286e4da00cc
name: libapt-pkg5.0-dbgsym_1.4.11_i386.deb
priority: extra
section: debug
size: '5832700'
- md5sum: cc531596ac8e8ce43e3a79a6452c7ccc
name: libapt-pkg5.0_1.4.11_i386.deb
priority: important
section: libs
size: '989312'
Format: '1.8'
Maintainer: APT Development Team <deity@lists.debian.org>
Source: apt
Urgency: high
Version: 1.4.11
type: dpkg