Format: 1.8 Date: Tue, 16 May 2023 15:47:48 -0300 Source: ncurses Binary: libncurses-dev libncurses5 libncurses5-dev libncurses6 libncursesw5 libncursesw5-dev libncursesw6 libtinfo-dev libtinfo5 libtinfo6 libtinfo6-udeb ncurses-bin ncurses-examples Architecture: armhf Version: 6.2-0ubuntu2.1 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Camila Camargo de Matos Description: libncurses-dev - developer's libraries for ncurses libncurses5 - shared libraries for terminal handling (legacy version) libncurses5-dev - transitional package for libncurses-dev libncurses6 - shared libraries for terminal handling libncursesw5 - shared libraries for terminal handling (wide character legacy ver libncursesw5-dev - transitional package for libncurses-dev libncursesw6 - shared libraries for terminal handling (wide character support) libtinfo-dev - transitional package for libncurses-dev libtinfo5 - shared low-level terminfo library (legacy version) libtinfo6 - shared low-level terminfo library for terminal handling libtinfo6-udeb - shared low-level terminfo library for terminal handling - udeb (udeb) ncurses-bin - terminal-related programs and man pages ncurses-examples - test programs and examples for ncurses Changes: ncurses (6.2-0ubuntu2.1) focal-security; urgency=medium . * SECURITY UPDATE: heap buffer overflow in the _nc_captoinfo function - debian/patches/CVE-2021-39537.patch: add a check for end-of-string in cvtchar to handle a malformed string in infotocap. - CVE-2021-39537 * SECURITY UPDATE: out-of-bounds read in the convert_strings function - debian/patches/CVE-2022-29458.patch:add a limit-check to guard against corrupt terminfo data. - CVE-2022-29458 * SECURITY UPDATE: memory corruption when processing malformed terminfo data entries loaded by setuid/setgid programs - debian/patches/CVE-2023-29491-mitigation.patch: change the --disable-root-environ configure option behavior. - debian/rules: set --disable-root-environ in configuration options. - debian/libtinfo5.symbols, debian/libtinfo6.symbols: add _nc_env_access to symbols files. - CVE-2023-29491 * debian/patches/fix-off-by-one-loop-convert-strings.patch: correct an off-by-one loop-limit in convert_strings function. Checksums-Sha1: df3fd7c8c7002e081f5555a5e8c7a6c50b10416c 301076 libncurses-dev_6.2-0ubuntu2.1_armhf.deb a66a69118fe12681e46e8ae07ad73d1a16d830eb 265468 libncurses5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 0020310f77d15b531d289c0fc7eb300bca411445 984 libncurses5-dev_6.2-0ubuntu2.1_armhf.deb 1a6283b798fa00096dc80c49ba24db48dd0e12c1 76148 libncurses5_6.2-0ubuntu2.1_armhf.deb 07c21a0d6486b0d569b80241d09dd764897534e4 289280 libncurses6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 0c7ce79dc4f71d1ba50e3f84d2ec646219f32767 79700 libncurses6_6.2-0ubuntu2.1_armhf.deb efbfa1d4dd1dd40dfe5c7f11b38a10ab805e561a 324164 libncursesw5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 882a2091722f37ddee79cfd597cce8244c877462 988 libncursesw5-dev_6.2-0ubuntu2.1_armhf.deb 0ea915105b2ca7df307df5ff1b37a186d358e324 96164 libncursesw5_6.2-0ubuntu2.1_armhf.deb 11c49ff9ea9fb6c0c131d6e38bfbefdffed31877 364636 libncursesw6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 473cc24e7410e3221dde06357731d6c2cb72a725 106044 libncursesw6_6.2-0ubuntu2.1_armhf.deb 33390ed2b846592d0ed3b2a83d607ac42f240d10 972 libtinfo-dev_6.2-0ubuntu2.1_armhf.deb c33c5ade54ffbec29c98b78b1e4a86088397a284 165476 libtinfo5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 82cb5d4f6c001a49687f7ed6449db440827bb41c 70488 libtinfo5_6.2-0ubuntu2.1_armhf.deb e1c85bf8f1c6782a7a1fa6b0921b2ffba47b731c 175856 libtinfo6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb b63d56e783406d60aa55550c95aa5666d50a3a83 43688 libtinfo6-udeb_6.2-0ubuntu2.1_armhf.udeb 84252da902a4f190e9b3bdeef6b9877591d9ab68 74228 libtinfo6_6.2-0ubuntu2.1_armhf.deb 5df034919ad92e5e950d6063e899dd656d9af15e 174240 ncurses-bin-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 43a2bc2fc43cbd319d27322d527e260e43281f26 164184 ncurses-bin_6.2-0ubuntu2.1_armhf.deb ead9d59350f02a0fd89d6c7552196c097d9bb084 622776 ncurses-examples-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 80d952ee63137f149528f0b9c52ce329ad2dfd24 242344 ncurses-examples_6.2-0ubuntu2.1_armhf.deb 4b60769bcacf288fc97a7d55415615abc75f32d2 11208 ncurses_6.2-0ubuntu2.1_armhf.buildinfo Checksums-Sha256: ec399a35b6180766cb48b5f5168b07a8e5469934325cd53ebb384f1f9371e80c 301076 libncurses-dev_6.2-0ubuntu2.1_armhf.deb 6d74b033374e5eeae902c8942c9a95f37cf1bb65cc3c25827002092b5681b803 265468 libncurses5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 70f37ec056fef568f8bd08be7aad0a8bbc8706f402ec02d48f1bb14b6851680b 984 libncurses5-dev_6.2-0ubuntu2.1_armhf.deb 4ab05a9b057c74fa0b9fc28d96bf6484c0386988188030e531a5cf75c7bf6030 76148 libncurses5_6.2-0ubuntu2.1_armhf.deb ba3df953d5ca52e0ff506be50966da07005444e3fc79c3219e25dddfe59ab16f 289280 libncurses6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 96c72bb1d3b664d47a462cb64b22dbd8a9f971b0d67edf51eb6ebb8e75a43371 79700 libncurses6_6.2-0ubuntu2.1_armhf.deb c783c4078763dc1a31e53e2314ca854c9f678a7892add5b7b70e58dd736327b5 324164 libncursesw5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 10a7d41f268c7314ec6af637e1a69781422b753c17c2f6c4bd7f5eb923161aa9 988 libncursesw5-dev_6.2-0ubuntu2.1_armhf.deb 02603c55793341e980ad81a5b528f806e1b6e13870a0af799dadeaafca6552b7 96164 libncursesw5_6.2-0ubuntu2.1_armhf.deb 16082caa57dc3463a35dc33cdb0512d62473d8b2988502ce378c6c4e98bbbfeb 364636 libncursesw6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb db425f30c95352360591f4844169ebd65236cf80c085af8bc12e0f8fb7f07b5e 106044 libncursesw6_6.2-0ubuntu2.1_armhf.deb ba835ac0cde37931453824bb3d33533a8a829b0c9a63d4d95e1fb53bf8931a41 972 libtinfo-dev_6.2-0ubuntu2.1_armhf.deb 11048a121e7a983e3c73f0f052dba965a04344d537e9b81e6b7fcb13c5b9962f 165476 libtinfo5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 4cbc472a2f5152013545674f761b714ff9bf54ff64dc661109c3fd7143497b58 70488 libtinfo5_6.2-0ubuntu2.1_armhf.deb 2b90d8feb06a783878384a634a69281a00db40995e76135692e3573e4cbe49cf 175856 libtinfo6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb b121ec693cdea8200afc2c03717c4db1f90c5aaf06df33d940fb073c5cec5514 43688 libtinfo6-udeb_6.2-0ubuntu2.1_armhf.udeb cfeb900eea6f2bd164a4fb7c08b85ca0c9ca4961e2218ed0d32b10f8b495295e 74228 libtinfo6_6.2-0ubuntu2.1_armhf.deb 4fbcea2e7bcbd05e25f735725313ed8f270789dc11b39763bf28ce42d5b1029b 174240 ncurses-bin-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 333e5d0b76cbf3e2790016251b589e20eedd205cd2e812d2665b6b5958b4065e 164184 ncurses-bin_6.2-0ubuntu2.1_armhf.deb 1803efb5742d101416bdb7351c28ad5b1b34466e5a5c46844e5bb401a61f2414 622776 ncurses-examples-dbgsym_6.2-0ubuntu2.1_armhf.ddeb e315c51354f6a58c3336fabb04c5b7d9c06fbee96b2a9722aadd90832abe5dea 242344 ncurses-examples_6.2-0ubuntu2.1_armhf.deb fd9315306f18515a9c17dae74ba4b0d6399efdbe95f4d0dbb807da46f22a1479 11208 ncurses_6.2-0ubuntu2.1_armhf.buildinfo Files: 014e656d81a00e6f26db53cab154a977 301076 libdevel optional libncurses-dev_6.2-0ubuntu2.1_armhf.deb 578a096886ed55d3539d71171848a430 265468 debug optional libncurses5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 3ae7131b8f9f3ee2379945b231a27a3c 984 oldlibs optional libncurses5-dev_6.2-0ubuntu2.1_armhf.deb a97cab76c20d65805ad6090bdc791a60 76148 oldlibs optional libncurses5_6.2-0ubuntu2.1_armhf.deb 3e0f0e654768cf3203f5a6ee741b4398 289280 debug optional libncurses6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 5ddcc318ee704717d519e747bac8e490 79700 libs optional libncurses6_6.2-0ubuntu2.1_armhf.deb c2121602dd95171c1e17a5d9231de194 324164 debug optional libncursesw5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb ffec504dc39cd55f67184abbc6034131 988 oldlibs optional libncursesw5-dev_6.2-0ubuntu2.1_armhf.deb bdeef7fe52098e8914169d8add55fbfd 96164 oldlibs optional libncursesw5_6.2-0ubuntu2.1_armhf.deb 6d9b581a487fa9b3fc3abf4894addd7e 364636 debug optional libncursesw6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 3398982a2f98e63f720ad03bf43f6020 106044 libs optional libncursesw6_6.2-0ubuntu2.1_armhf.deb ff508f50ba9e2f824af557a75efd41be 972 oldlibs optional libtinfo-dev_6.2-0ubuntu2.1_armhf.deb 2e49f5498c487724e28a6697d39ec416 165476 debug optional libtinfo5-dbgsym_6.2-0ubuntu2.1_armhf.ddeb cea5c04f06daf91f273d4e17ddbcefdb 70488 oldlibs optional libtinfo5_6.2-0ubuntu2.1_armhf.deb 6ef02c46d67472b9e823d457ce8584fc 175856 debug optional libtinfo6-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 3fd0aba93739530f01fc52b4a7c1f2a5 43688 debian-installer optional libtinfo6-udeb_6.2-0ubuntu2.1_armhf.udeb 4e5256ee0b3ee66c10a2f8ffc20975bb 74228 libs optional libtinfo6_6.2-0ubuntu2.1_armhf.deb 91e7785aa82ee284bd7ea943994f6b29 174240 debug optional ncurses-bin-dbgsym_6.2-0ubuntu2.1_armhf.ddeb be27ec5920e1f19d08a6f1fc4e549362 164184 utils required ncurses-bin_6.2-0ubuntu2.1_armhf.deb 58ae03b3fa203fc7ed2681abc501f041 622776 debug optional ncurses-examples-dbgsym_6.2-0ubuntu2.1_armhf.ddeb 38a3abf5759c8029e08423b606d5cc62 242344 misc optional ncurses-examples_6.2-0ubuntu2.1_armhf.deb 0c03e44b58f9afb58362e04cd1cbcd2e 11208 libs required ncurses_6.2-0ubuntu2.1_armhf.buildinfo Original-Maintainer: Craig Small