fastdds 2.9.1+ds-1ubuntu0.1 source package in Ubuntu

Changelog

fastdds (2.9.1+ds-1ubuntu0.1) lunar-security; urgency=medium

  * SECURITY UPDATE: assertion failures and unhandled exceptions
    - debian/patches/CVE-2023-39534.patch: improves handling of sequence
      numbers on data sharing readers, and avoids the possibility of an
      assertion when processing an automatically generated Gap message
      with a wrong bitmap base.
    - CVE-2023-39534

  * SECURITY UPDATE: unhandled exceptions
    - debian/patches/CVE-2023-39945_48.patch: captures all possible
      exceptions from Fast CDR in the places where Fast DDS is using it
      for (de)serialization.
    - CVE-2023-39945

  * SECURITY UPDATE: heap overflows
    - debian/patches/CVE-2023-39946_47.patch: fixes out-of-bounds
      access during deserialization of PID_PROPERTY_LIST.
    - CVE-2023-39946

  * SECURITY UPDATE: heap overflows
    - debian/patches/CVE-2023-39946_47.patch: fixes out-of-bounds
      access during deserialization of PID_PROPERTY_LIST.
    - CVE-2023-39947

  * SECURITY UPDATE: unhandled exceptions
    - debian/patches/CVE-2023-39945_48.patch: captures all possible
      exceptions from Fast CDR in the places where Fast DDS is using it
      for (de)serialization.
    - CVE-2023-39948

  * SECURITY UPDATE: unchecked properties
    - debian/patches/CVE-2023-39949.patch: adds a check for `firstSN`.
    - CVE-2023-39949

 -- Allen Huang <email address hidden>  Tue, 22 Aug 2023 13:06:27 +0100

Upload details

Uploaded by:
Allen Huang
Uploaded to:
Lunar
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Lunar updates universe misc
Lunar security universe misc

Downloads

File Size SHA-256 Checksum
fastdds_2.9.1+ds.orig.tar.xz 2.8 MiB ff2d3827d573468456cb8ae79e9b9b657137b40f33624381b2d4c7a9f1ad2512
fastdds_2.9.1+ds-1ubuntu0.1.debian.tar.xz 26.4 KiB 58ab8e58b437371a427bd493b8d09210b8a43a246e6cb47cc4baaf9628cc3124
fastdds_2.9.1+ds-1ubuntu0.1.dsc 3.2 KiB 658fe0018873f419112291370d5dce78efbcd22379bdd98a0394dc56f9b6c70d

View changes file

Binary packages built by this source

fastdds-tools: eProsima FastDDS Discovery Server and Tools

 This package is part of eProsima FastDDS. It is a tier one implementation
 for ROS 2.
 .
 This package provides the Fast Discovery Server to facilitate reliable
 discovery of participants in the FastDDS network, and the FastDDS
 introspection tool.

fastdds-tools-dbgsym: debug symbols for fastdds-tools
libfastrtps-dev: C++ library for the Real Time Publish Subscribe Protocol - development headers

 This package is part of eProsima FastDDS. RTPS is the wire interoperability
 protocol defined for the Data Distribution Service (DDS) standard by the
 Object Management Group (OMG).
 .
 The library is a standalone C++ implementation compliant with the OMG DDS 1.4
 and OMG RTPS 2.2 standards. It is a tier one implementation for ROS 2.
 Compared to other free DDS implementations, it is very feature-complete and
 provides two API layers: one for high-level Publish-Subscriber access that
 focuses on usability, and a lower-level Writer-Reader API that allows more
 sophisticated fine tuning of the RTPS protocol.
 .
 This package installs the development headers.

libfastrtps-doc: C++ library for the Real Time Publish Subscribe Protocol - documentation

 This package is part of eProsima FastDDS. RTPS is the wire interoperability
 protocol defined for the Data Distribution Service (DDS) standard by the
 Object Management Group (OMG).
 .
 The library is a standalone C++ implementation compliant with the OMG DDS 1.4
 and OMG RTPS 2.2 standards. It is a tier one implementation for ROS 2.
 Compared to other free DDS implementations, it is very feature-complete and
 provides two API layers: one for high-level Publish-Subscriber access that
 focuses on usability, and a lower-level Writer-Reader API that allows more
 sophisticated fine tuning of the RTPS protocol.
 .
 This package installs the documentation.

libfastrtps2.9: C++ library for the Real Time Publish Subscribe Protocol

 This package is part of eProsima FastDDS. RTPS is the wire interoperability
 protocol defined for the Data Distribution Service (DDS) standard by the
 Object Management Group (OMG).
 .
 The library is a standalone C++ implementation compliant with the OMG DDS 1.4
 and OMG RTPS 2.2 standards. It is a tier one implementation for ROS 2.
 Compared to other free DDS implementations, it is very feature-complete and
 provides two API layers: one for high-level Publish-Subscriber access that
 focuses on usability, and a lower-level Writer-Reader API that allows more
 sophisticated fine tuning of the RTPS protocol.
 .
 This package installs the shared library.

libfastrtps2.9-dbgsym: debug symbols for libfastrtps2.9