libslirp 4.4.0-1ubuntu0.1 source package in Ubuntu

Changelog

libslirp (4.4.0-1ubuntu0.1) hirsute-security; urgency=medium

  * SECURITY UPDATE: data leak in bootp_input()
    - debian/patches/CVE-2021-3592-1.patch: add mtod_check() to src/mbuf.*.
    - debian/patches/CVE-2021-3592-2.patch: limit vendor-specific area to
      input packet memory buffer in src/bootp.*, src/mbuf.*.
    - debian/patches/CVE-2021-3592-3.patch: check bootp_input buffer size
      in src/bootp.c.
    - debian/patches/CVE-2021-3592-4.patch: fix regression in dhcp in
      src/bootp.c.
    - CVE-2021-3592
  * SECURITY UPDATE: data leak in udp6_input()
    - debian/patches/CVE-2021-3593.patch: check udp6_input buffer size in
      src/udp6.c.
    - CVE-2021-3593
  * SECURITY UPDATE: data leak in udp_input()
    - debian/patches/CVE-2021-3594.patch: check upd_input buffer size in
      src/udp.c.
    - CVE-2021-3594
  * SECURITY UPDATE: data leak in tftp_input()
    - debian/patches/CVE-2021-3595-1.patch: check tftp_input buffer size in
      src/tftp.c.
    - debian/patches/CVE-2021-3595-2.patch: introduce a header structure in
      src/tftp.*.
    - CVE-2021-3595

 -- Marc Deslauriers <email address hidden>  Mon, 21 Jun 2021 08:25:24 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Hirsute
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Hirsute updates main misc
Hirsute security main misc

Downloads

File Size SHA-256 Checksum
libslirp_4.4.0.orig.tar.bz2 96.3 KiB 2e89e97aadd88f7e416e0795197bb35657220ba897d31b45b6a8ec5c23fe8679
libslirp_4.4.0-1ubuntu0.1.debian.tar.xz 8.4 KiB eef60aee5e43a1d763ee5f4f7e1bec22068f273917b1f76c0374ee0f0a118e88
libslirp_4.4.0-1ubuntu0.1.dsc 2.1 KiB 42ac58bcc34f8c3f56c680baa02a0d79cde0342d9bc23b8013e2448c50965821

View changes file

Binary packages built by this source

libslirp-dev: General purpose TCP-IP emulator library (development files)

 libslirp is a user-mode networking library used by virtual machines,
 containers or various tools.
 .
 This package contains the header files and other files
 needed to compile applications which uses libslirp.

libslirp0: General purpose TCP-IP emulator library

 libslirp is a user-mode networking library used by virtual machines,
 containers or various tools.
 .
 This package contains the library itself.

libslirp0-dbgsym: debug symbols for libslirp0