Format: 1.8 Date: Tue, 16 May 2023 15:47:48 -0300 Source: ncurses Binary: libncurses-dev libncurses5 libncurses5-dev libncurses6 libncursesw5 libncursesw5-dev libncursesw6 libtinfo-dev libtinfo5 libtinfo6 libtinfo6-udeb ncurses-bin ncurses-examples Architecture: riscv64 Version: 6.2-0ubuntu2.1 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Camila Camargo de Matos Description: libncurses-dev - developer's libraries for ncurses libncurses5 - shared libraries for terminal handling (legacy version) libncurses5-dev - transitional package for libncurses-dev libncurses6 - shared libraries for terminal handling libncursesw5 - shared libraries for terminal handling (wide character legacy ver libncursesw5-dev - transitional package for libncurses-dev libncursesw6 - shared libraries for terminal handling (wide character support) libtinfo-dev - transitional package for libncurses-dev libtinfo5 - shared low-level terminfo library (legacy version) libtinfo6 - shared low-level terminfo library for terminal handling libtinfo6-udeb - shared low-level terminfo library for terminal handling - udeb (udeb) ncurses-bin - terminal-related programs and man pages ncurses-examples - test programs and examples for ncurses Changes: ncurses (6.2-0ubuntu2.1) focal-security; urgency=medium . * SECURITY UPDATE: heap buffer overflow in the _nc_captoinfo function - debian/patches/CVE-2021-39537.patch: add a check for end-of-string in cvtchar to handle a malformed string in infotocap. - CVE-2021-39537 * SECURITY UPDATE: out-of-bounds read in the convert_strings function - debian/patches/CVE-2022-29458.patch:add a limit-check to guard against corrupt terminfo data. - CVE-2022-29458 * SECURITY UPDATE: memory corruption when processing malformed terminfo data entries loaded by setuid/setgid programs - debian/patches/CVE-2023-29491-mitigation.patch: change the --disable-root-environ configure option behavior. - debian/rules: set --disable-root-environ in configuration options. - debian/libtinfo5.symbols, debian/libtinfo6.symbols: add _nc_env_access to symbols files. - CVE-2023-29491 * debian/patches/fix-off-by-one-loop-convert-strings.patch: correct an off-by-one loop-limit in convert_strings function. Checksums-Sha1: 564c5737025ddd65c6740408ae0ef72cc328e7ab 693340 libncurses-dev_6.2-0ubuntu2.1_riscv64.deb 54b1f713d71a348b075e3595deab7adf378388e8 262756 libncurses5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb de0b177fcb6bd4c15b23645f95790d309c0d0aee 988 libncurses5-dev_6.2-0ubuntu2.1_riscv64.deb 049568516cc0ad27592ad80f9e07b430ed049f9e 81784 libncurses5_6.2-0ubuntu2.1_riscv64.deb 2dfaf9c01ca3d8daaf2435c71f6b21e085450a6e 285764 libncurses6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 1a6a7fe6da4f6c83703f217405d65a890bed65ff 86212 libncurses6_6.2-0ubuntu2.1_riscv64.deb 2d0284f75b4489838198226c88d34c5909983785 322032 libncursesw5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 60c8980ac16d1e1d1e34771423f5e4cdec19ae09 988 libncursesw5-dev_6.2-0ubuntu2.1_riscv64.deb 2164e95112a377fec38923253f7cca666aa3f688 102276 libncursesw5_6.2-0ubuntu2.1_riscv64.deb 728c4f51a6631b1a6ecf521eb4f90a16ecf61d1d 357516 libncursesw6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 1d49a40beea4b87b4be0ee4924b518d64904c5a8 115908 libncursesw6_6.2-0ubuntu2.1_riscv64.deb 93b84845ece0e004c05d1ecee8b3302619b2f4c7 976 libtinfo-dev_6.2-0ubuntu2.1_riscv64.deb 89ca31fdf04d968f981a47408475a7a6b9cfaf5f 165784 libtinfo5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb f322d89c77261abf3236da78996abbf9cf66508d 75424 libtinfo5_6.2-0ubuntu2.1_riscv64.deb 576d95f05ec9fa2c3196ab0029d096486f8e1e54 175092 libtinfo6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 9b278356331b9223e8e2c1463083cbe7dd551398 47280 libtinfo6-udeb_6.2-0ubuntu2.1_riscv64.udeb 1f7e8dafe4b764814da6116732088a6b0427d632 79432 libtinfo6_6.2-0ubuntu2.1_riscv64.deb 4dc628bb11ad998b9e63bad0a07ba06ac5250da5 173616 ncurses-bin-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 395ca3018164975c3952ce981a2e201754e7aede 165888 ncurses-bin_6.2-0ubuntu2.1_riscv64.deb 410c4ea49d460e2fe80c6e5d113918c4e7dbd655 609360 ncurses-examples-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb cacda79b66548fe7252930a1ccccdc7a862b48db 243896 ncurses-examples_6.2-0ubuntu2.1_riscv64.deb 701660f357bde130c3d6eb301c3bde43336c089f 11222 ncurses_6.2-0ubuntu2.1_riscv64.buildinfo Checksums-Sha256: 6092cda8d83c1be7cd937603864e758395a36a869b3bcb239cfec2081cebc9e5 693340 libncurses-dev_6.2-0ubuntu2.1_riscv64.deb 33d57d289b5dc1083b9a6b3835618fbdff657bf9d63c0caf5e3104d90bb14816 262756 libncurses5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb a87a64a3a4703f61fcb9d89913c786e4396588da09d1a8bfbf82a66fc2c783ba 988 libncurses5-dev_6.2-0ubuntu2.1_riscv64.deb 05a375f1a9c91c3878c1d9f436551d88fd5e16bc309c2c91f753d21e42c48b2d 81784 libncurses5_6.2-0ubuntu2.1_riscv64.deb 2a48cd675b879ae3434051421622c52277ef488f245d12acc49919ab523ab27c 285764 libncurses6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb cd7e377d9c5cc9cb45eccc55b490a64b8b6aef52a5e5e905d313a48d8f47a9f0 86212 libncurses6_6.2-0ubuntu2.1_riscv64.deb 2c9aaff4d4ff421983b44e520f6ac8489510896baf35869286e7300df8d2de39 322032 libncursesw5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb b50b5e657d9e0bef8aaab3606b633c4cff437af99a41e4d74d267549a36e3397 988 libncursesw5-dev_6.2-0ubuntu2.1_riscv64.deb 67cce6231ae7b2fb7c16f242785157f08953bd1eb2dc6c141a966cb15c9fd920 102276 libncursesw5_6.2-0ubuntu2.1_riscv64.deb 6029007b3d35a8897b94f950d0f79acd6807912f5a3b1b7b620bfc43659d696c 357516 libncursesw6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 17796de7cf6be67f0869f8913c8c3fc70fcb5762da70b6ce970ed5abffc9da38 115908 libncursesw6_6.2-0ubuntu2.1_riscv64.deb 37ea4bdd5e838419a86a31b60da71d2bf56e5be28407ab29afcecb5b054166ce 976 libtinfo-dev_6.2-0ubuntu2.1_riscv64.deb 60251a5a0c265118dc9f0c187ceccbafa348c2e452ef80c992279919047d3c77 165784 libtinfo5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 2460265760fd90362cfd162d891d7e59425ddf322819aeb54f6da02647a275b0 75424 libtinfo5_6.2-0ubuntu2.1_riscv64.deb a57e4f1835ae7718fbdc471c6312c38770f6b40b98fe94f3402b993c15a65fe0 175092 libtinfo6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 6084b0979fefbfbbe0a67bc56555eb1dc2a635a39441ac804ff44e858375a127 47280 libtinfo6-udeb_6.2-0ubuntu2.1_riscv64.udeb ceed7e640feac6b12321f5fc0c61c045561f0c1d6defbcc4da03d2f40e9b1910 79432 libtinfo6_6.2-0ubuntu2.1_riscv64.deb 16676e2c0d5748c442431d4af50ab31625d5d45f39386dff9f93b003a93247a3 173616 ncurses-bin-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 465f0f8d676c0cd40997ebb4a186bbaff63746e54f2bb3ed60ad4984cb4a7a39 165888 ncurses-bin_6.2-0ubuntu2.1_riscv64.deb b04623b358723935dcf6c8237bf0ed8265557069ff88a7d0c02e2c2674958b95 609360 ncurses-examples-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb c6985f663d315b6a99833296b35222e44891a5ef50ab23fae017b8f3edc584b8 243896 ncurses-examples_6.2-0ubuntu2.1_riscv64.deb 3e323e7457f00525c4de0992210a852421806c54aa148758f18677d064a837c1 11222 ncurses_6.2-0ubuntu2.1_riscv64.buildinfo Files: ff03475820cab07042fd1ce1d5bd6096 693340 libdevel optional libncurses-dev_6.2-0ubuntu2.1_riscv64.deb dd337d10854a0483337b27b25ef6981d 262756 debug optional libncurses5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb e1134958c0ae2a4bc9af08641b5be82f 988 oldlibs optional libncurses5-dev_6.2-0ubuntu2.1_riscv64.deb 654687270c3633bdadfeb2b62c752ade 81784 oldlibs optional libncurses5_6.2-0ubuntu2.1_riscv64.deb cde4315f9af159113cefec43b1e00a96 285764 debug optional libncurses6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb c0b57cf2267b5e0fcffbaf0ef6151ea3 86212 libs optional libncurses6_6.2-0ubuntu2.1_riscv64.deb 14711b2c59dd448255a40277b61a3494 322032 debug optional libncursesw5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 4d3640114964aa6763596a729dff98fa 988 oldlibs optional libncursesw5-dev_6.2-0ubuntu2.1_riscv64.deb d840065d5c0ade2c80dcc91be39ef7da 102276 oldlibs optional libncursesw5_6.2-0ubuntu2.1_riscv64.deb e63a3791c7dd5d36cd6d154c8ac7c06d 357516 debug optional libncursesw6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb ee895b33130aeb4c93f45d410c548f45 115908 libs optional libncursesw6_6.2-0ubuntu2.1_riscv64.deb e3b875b501f1c4d0960f30203c4c766a 976 oldlibs optional libtinfo-dev_6.2-0ubuntu2.1_riscv64.deb f76fd0d12514945d91deb1464c184849 165784 debug optional libtinfo5-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb e31d76c624fccebd8521602bbe6f84c2 75424 oldlibs optional libtinfo5_6.2-0ubuntu2.1_riscv64.deb 2a95a5476113266180092183e07c581c 175092 debug optional libtinfo6-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 38655361b0e73f4aa44cbcacd60cbe06 47280 debian-installer optional libtinfo6-udeb_6.2-0ubuntu2.1_riscv64.udeb 33d992e89e46f04ed4a81288373623f7 79432 libs optional libtinfo6_6.2-0ubuntu2.1_riscv64.deb c3bd54702d836faa6ff9a4a7945b151c 173616 debug optional ncurses-bin-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 30123d87373951c3eb2c34f44ef767ab 165888 utils required ncurses-bin_6.2-0ubuntu2.1_riscv64.deb aa62a6e58ef9086d1a658198abbf38a2 609360 debug optional ncurses-examples-dbgsym_6.2-0ubuntu2.1_riscv64.ddeb 19750f42494d4cf8c28a1f033ef24abc 243896 misc optional ncurses-examples_6.2-0ubuntu2.1_riscv64.deb a3ea73f68c85b7b0632abb5b34055cc2 11222 libs required ncurses_6.2-0ubuntu2.1_riscv64.buildinfo Original-Maintainer: Craig Small