Format: 1.8 Date: Fri, 14 Oct 2022 17:22:43 -0300 Source: zlib Binary: zlib1g zlib1g-dev zlib1g-udeb Architecture: ppc64el Version: 1:1.2.11.dfsg-2ubuntu1.5 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Rodrigo Figueiredo Zaiden Description: zlib1g - compression library - runtime zlib1g-dev - compression library - development zlib1g-udeb - compression library - runtime for Debian installer (udeb) Launchpad-Bugs-Fixed: 1988548 Changes: zlib (1:1.2.11.dfsg-2ubuntu1.5) focal-security; urgency=medium . * SECURITY UPDATE: heap-based buffer over-read (LP: #1988548) - debian/patches/CVE-2022-37434-1.patch: in inflate.c, add an extra condition to check if state->head->extra_max is greater than len before copying, and move the len assignment to be placed before the check. - debian/patches/CVE-2022-37434-2.patch: in the previous patch, in inflate.c, the place of the len assignment was causing issues so it was moved to be placed within the check. - CVE-2022-37434 Checksums-Sha1: f4eb3ac28c8590aff2143597a24a74e8a9926b17 110792 zlib1g-dbgsym_1.2.11.dfsg-2ubuntu1.5_ppc64el.ddeb 5492a8469049579a355dfc47695ae717fadb87f0 164688 zlib1g-dev_1.2.11.dfsg-2ubuntu1.5_ppc64el.deb 8a6da595468ccaab987cd10146e506ca3283307c 57804 zlib1g-udeb_1.2.11.dfsg-2ubuntu1.5_ppc64el.udeb 369172e09a7d154f8f5f72f6883d9a1c5c3c9adc 62132 zlib1g_1.2.11.dfsg-2ubuntu1.5_ppc64el.deb d461bcbbf9be92535d854b247f265665e43bfd09 6257 zlib_1.2.11.dfsg-2ubuntu1.5_ppc64el.buildinfo Checksums-Sha256: 4a7a8e6b854569db3156d7384193e148c48b28d528cf5960e5c6fb868cf1509f 110792 zlib1g-dbgsym_1.2.11.dfsg-2ubuntu1.5_ppc64el.ddeb d5c3e3a1444e735746529ec82a45bcb0b12fac679f53f585df593d45ee9dadce 164688 zlib1g-dev_1.2.11.dfsg-2ubuntu1.5_ppc64el.deb dfe2023442c8f49d9a46eb3a8ac237ddd5d075e02eb1ebad546f05994425e742 57804 zlib1g-udeb_1.2.11.dfsg-2ubuntu1.5_ppc64el.udeb 66bb72cc3ed45006a431f06e0469a994e2b24dc1b529b2d4e0caf2268550900d 62132 zlib1g_1.2.11.dfsg-2ubuntu1.5_ppc64el.deb 2d2ff1dcbb109fc15d3e2943a856e49f9dc325044415e20225f7a2aa7bcf5e02 6257 zlib_1.2.11.dfsg-2ubuntu1.5_ppc64el.buildinfo Files: ba8ca311884799da596bb80ac9b8ba33 110792 debug optional zlib1g-dbgsym_1.2.11.dfsg-2ubuntu1.5_ppc64el.ddeb 74178226451efc0a8d8189be34923114 164688 libdevel optional zlib1g-dev_1.2.11.dfsg-2ubuntu1.5_ppc64el.deb 8a1a29c7e046f53d1406961aa76715da 57804 debian-installer optional zlib1g-udeb_1.2.11.dfsg-2ubuntu1.5_ppc64el.udeb 282366f25b7a1dc98a5f6807485290f5 62132 libs required zlib1g_1.2.11.dfsg-2ubuntu1.5_ppc64el.deb dbbb482120ca1d27d15f2354b984630c 6257 libs optional zlib_1.2.11.dfsg-2ubuntu1.5_ppc64el.buildinfo Original-Maintainer: Mark Brown Package-Type: udeb