changes_fields:
Architecture: armhf
Binary: apt libapt-pkg5.0 libapt-inst2.0 apt-doc libapt-pkg-dev libapt-pkg-doc apt-utils
apt-transport-https
Changed-By: Julian Andres Klode <jak@debian.org>
Changes: |2-
apt (1.4.11) stretch-security; urgency=high
.
* SECURITY UPDATE: Integer overflow in parsing (LP: #1899193)
- apt-pkg/contrib/arfile.cc: add extra checks.
- apt-pkg/contrib/tarfile.cc: limit tar item sizes to 128 GiB
- apt-pkg/deb/debfile.cc: limit control file sizes to 64 MiB
- test/*: add tests.
- CVE-2020-27350
* Additional hardening:
- apt-pkg/contrib/tarfile.cc: Limit size of long names and links to 1 MiB
+ * Fix autopkgtest regression in 1.8.2.1 security update
Checksums-Sha1:
- name: apt-dbgsym_1.4.11_armhf.deb
sha1: 7a07263d93c294eda06056c335180c20164d8cb0
size: '4346750'
- name: apt-transport-https-dbgsym_1.4.11_armhf.deb
sha1: f8eb485fe0ccc241444ad506043dce65f133a419
size: '281476'
- name: apt-transport-https_1.4.11_armhf.deb
sha1: a0251988c0171497dc8365dd506c4a92121e1aa0
size: '167242'
- name: apt-utils-dbgsym_1.4.11_armhf.deb
sha1: d25bf31f7720e433bd116edead5a903a889d334b
size: '1250318'
- name: apt-utils_1.4.11_armhf.deb
sha1: e0006e93f6c622e4b5b7953e7fbadeb214b75a87
size: '398318'
- name: apt_1.4.11_armhf.buildinfo
sha1: 430aaba51048a8a180c2cd5bc37986e608aa09d0
size: '9410'
- name: apt_1.4.11_armhf.deb
sha1: eaaff75ffd68099712114b94346278b2913d2e19
size: '1199130'
- name: libapt-inst2.0-dbgsym_1.4.11_armhf.deb
sha1: 81299f637829882d2dc15031d3447f513a71234f
size: '220502'
- name: libapt-inst2.0_1.4.11_armhf.deb
sha1: bdf2a321f97406e30e8f577652d0474241d8bcbd
size: '189202'
- name: libapt-pkg-dev_1.4.11_armhf.deb
sha1: 827eaa4d354eb0bdd04653ff00e59d43f577ea8f
size: '235546'
- name: libapt-pkg5.0-dbgsym_1.4.11_armhf.deb
sha1: 201e0e891d2eeffdf6963310115f856338ec110a
size: '5898662'
- name: libapt-pkg5.0_1.4.11_armhf.deb
sha1: 6092a82473c7c88295d5d3c29fb2c785b6da873f
size: '851392'
Checksums-Sha256:
- name: apt-dbgsym_1.4.11_armhf.deb
sha256: f6bb1063d7c8015d70319e580140aacceef1d7cc593f5186c579a2ec7e2b6b96
size: '4346750'
- name: apt-transport-https-dbgsym_1.4.11_armhf.deb
sha256: 34678ce9a7c3bdb92b41976f8c13595d0862852bedf4c1684aeb08cf6e420dee
size: '281476'
- name: apt-transport-https_1.4.11_armhf.deb
sha256: 85848aeaf80e18842e4f4707c4568f1607eb8646809148998e573752e37829cc
size: '167242'
- name: apt-utils-dbgsym_1.4.11_armhf.deb
sha256: aebb489dcf21d2f8f167a6897dd677ce4eeb70d3e96a45d8bf3536895ac004b3
size: '1250318'
- name: apt-utils_1.4.11_armhf.deb
sha256: f1f6b4cb49d0a1a7c15fd8f519f559e2cc440bd15f43bb6d102cc87550bc6bd3
size: '398318'
- name: apt_1.4.11_armhf.buildinfo
sha256: cdaa7fd1e60695cf943e0655f7b82ed52647bbb924d1b4bbc95ad683d6ec6579
size: '9410'
- name: apt_1.4.11_armhf.deb
sha256: ecbe874caaf8be1a018540d0d8e3410fa472b0043425175f7d6f9fe8db83ea67
size: '1199130'
- name: libapt-inst2.0-dbgsym_1.4.11_armhf.deb
sha256: 3fbdacc802cbb82d122206b4ce7977d944fdf906085226386f16d8f2b6bcbc39
size: '220502'
- name: libapt-inst2.0_1.4.11_armhf.deb
sha256: d688ea5804f0d17d6931479247ef1dce9dbd2cf030c503f8a5275098d3ca1bdb
size: '189202'
- name: libapt-pkg-dev_1.4.11_armhf.deb
sha256: e5468d3b028d079626356e020dadfc55fc61c3d30f7c1faa139dc0030e3c916d
size: '235546'
- name: libapt-pkg5.0-dbgsym_1.4.11_armhf.deb
sha256: 1592f7e458f4449c5f35699138017177e2cec98b609fcbe91bdad6fb7a1f18b4
size: '5898662'
- name: libapt-pkg5.0_1.4.11_armhf.deb
sha256: e3c8bae8709f835ce1bdf620518faf6194594ca3cf144f3d28d8b708ac41b908
size: '851392'
Date: Mon, 07 Dec 2020 13:45:23 +0100
Description: |2-
apt - commandline package manager
apt-doc - documentation for APT
apt-transport-https - https download transport for APT
apt-utils - package management related utility programs
libapt-inst2.0 - deb package format runtime library
libapt-pkg-dev - development files for APT's libapt-pkg and libapt-inst
libapt-pkg-doc - documentation for APT development
libapt-pkg5.0 - package management runtime library
Distribution: stretch
Files:
- md5sum: 23bf03bf3c906f11578aa632d2193167
name: apt-dbgsym_1.4.11_armhf.deb
priority: extra
section: debug
size: '4346750'
- md5sum: 307062110041d12bb84b66f6b0410074
name: apt-transport-https-dbgsym_1.4.11_armhf.deb
priority: extra
section: debug
size: '281476'
- md5sum: 4adc1182e42bb3bc7ca4ef31137568ee
name: apt-transport-https_1.4.11_armhf.deb
priority: optional
section: admin
size: '167242'
- md5sum: 8dee61568135cfaf5052feb253abde8f
name: apt-utils-dbgsym_1.4.11_armhf.deb
priority: extra
section: debug
size: '1250318'
- md5sum: dcbcbab56880fbd76498dc3a60461cd9
name: apt-utils_1.4.11_armhf.deb
priority: important
section: admin
size: '398318'
- md5sum: ebdaadbbacee0a19c38175ff8d0d3b07
name: apt_1.4.11_armhf.buildinfo
priority: important
section: admin
size: '9410'
- md5sum: a0d7006b4cff3e4935c1412f4f1625ed
name: apt_1.4.11_armhf.deb
priority: important
section: admin
size: '1199130'
- md5sum: a86f790d7b3b59308946befdfe52ba4d
name: libapt-inst2.0-dbgsym_1.4.11_armhf.deb
priority: extra
section: debug
size: '220502'
- md5sum: 3358c72c577ca40b56d4626249d1f414
name: libapt-inst2.0_1.4.11_armhf.deb
priority: important
section: libs
size: '189202'
- md5sum: bfa4a3c3fc110bfe29764c97dd8bd9d0
name: libapt-pkg-dev_1.4.11_armhf.deb
priority: optional
section: libdevel
size: '235546'
- md5sum: 4ea81ba1ce54318a8c807f284c121577
name: libapt-pkg5.0-dbgsym_1.4.11_armhf.deb
priority: extra
section: debug
size: '5898662'
- md5sum: 12a81e44c7d2f8d57d30f126d8cb3830
name: libapt-pkg5.0_1.4.11_armhf.deb
priority: important
section: libs
size: '851392'
Format: '1.8'
Maintainer: APT Development Team <deity@lists.debian.org>
Source: apt
Urgency: high
Version: 1.4.11
type: dpkg