amanda 1:3.5.1-9ubuntu0.1 source package in Ubuntu

Changelog

amanda (1:3.5.1-9ubuntu0.1) kinetic-security; urgency=medium

  * SECURITY UPDATE: information leak calcsize SUID binary
    - d/p/56-fix-CVE-2022-37703: remove perror call disclosing potentially
      privileged information
    - CVE-2022-37703
  * SECURITY UPDATE: privilege escalation via rundump SUID binary
    - d/p/50-fix-CVE-2022-37704: add option validation
    - d/p/52-fix-CVE-2022-37704_part_2: filter RSH environment variable
    - CVE-2022-37704
  * SECURITY UPDATE: privilege escalation via runtar SUID binary
    - d/p/48-fix-CVE-2022-37705: fix option parsing
    - CVE-2022-37705

 -- David Lane <email address hidden>  Thu, 09 Mar 2023 15:50:26 +1100

Upload details

Uploaded by:
David Lane
Uploaded to:
Kinetic
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
utils
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
amanda_3.5.1.orig.tar.gz 5.0 MiB 6cb9a13fb7a09970d288ddb2c380e7165c5fe38b85bc761ca7ffe334bc5c534b
amanda_3.5.1-9ubuntu0.1.debian.tar.xz 57.4 KiB dfd2a23ee9390178402418bcaf85191363d784967e4d730b000c976c55d46c69
amanda_3.5.1-9ubuntu0.1.dsc 2.1 KiB 8c84ef0eecc4eb79b8be2442c9ff9a0946f850c3ff056b48278d875c3593b438

View changes file

Binary packages built by this source

amanda-client: No summary available for amanda-client in ubuntu kinetic.

No description available for amanda-client in ubuntu kinetic.

amanda-client-dbgsym: No summary available for amanda-client-dbgsym in ubuntu kinetic.

No description available for amanda-client-dbgsym in ubuntu kinetic.

amanda-common: No summary available for amanda-common in ubuntu kinetic.

No description available for amanda-common in ubuntu kinetic.

amanda-common-dbgsym: No summary available for amanda-common-dbgsym in ubuntu kinetic.

No description available for amanda-common-dbgsym in ubuntu kinetic.

amanda-server: No summary available for amanda-server in ubuntu kinetic.

No description available for amanda-server in ubuntu kinetic.

amanda-server-dbgsym: No summary available for amanda-server-dbgsym in ubuntu kinetic.

No description available for amanda-server-dbgsym in ubuntu kinetic.