[ubuntu/xenial-updates] bind9 1:9.10.3.dfsg.P4-8ubuntu1.17 (Accepted)

2020-08-21 Thread Ubuntu Archive Robot
bind9 (1:9.10.3.dfsg.P4-8ubuntu1.17) xenial-security; urgency=medium

  * SECURITY UPDATE: A truncated TSIG response can lead to an assertion
failure
- debian/patches/CVE-2020-8622.patch: move code in lib/dns/message.c.
- CVE-2020-8622
  * SECURITY UPDATE: A flaw in native PKCS#11 code can lead to a remotely
triggerable assertion failure
- debian/patches/CVE-2020-8623.patch: add extra checks in
  lib/dns/pkcs11dh_link.c, lib/dns/pkcs11dsa_link.c,
  lib/dns/pkcs11rsa_link.c, lib/isc/include/pk11/internal.h,
  lib/isc/pk11.c.
- CVE-2020-8623

Date: 2020-08-18 14:04:17.625135+00:00
Changed-By: Marc Deslauriers 
Signed-By: Ubuntu Archive Robot 

https://launchpad.net/ubuntu/+source/bind9/1:9.10.3.dfsg.P4-8ubuntu1.17
Sorry, changesfile not available.-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes


[ubuntu/xenial-security] bind9 1:9.10.3.dfsg.P4-8ubuntu1.17 (Accepted)

2020-08-21 Thread Marc Deslauriers
bind9 (1:9.10.3.dfsg.P4-8ubuntu1.17) xenial-security; urgency=medium

  * SECURITY UPDATE: A truncated TSIG response can lead to an assertion
failure
- debian/patches/CVE-2020-8622.patch: move code in lib/dns/message.c.
- CVE-2020-8622
  * SECURITY UPDATE: A flaw in native PKCS#11 code can lead to a remotely
triggerable assertion failure
- debian/patches/CVE-2020-8623.patch: add extra checks in
  lib/dns/pkcs11dh_link.c, lib/dns/pkcs11dsa_link.c,
  lib/dns/pkcs11rsa_link.c, lib/isc/include/pk11/internal.h,
  lib/isc/pk11.c.
- CVE-2020-8623

Date: 2020-08-18 14:04:17.625135+00:00
Changed-By: Marc Deslauriers 
https://launchpad.net/ubuntu/+source/bind9/1:9.10.3.dfsg.P4-8ubuntu1.17
Sorry, changesfile not available.-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes


[ubuntu/xenial-proposed] base-files 9.4ubuntu4.13 (Accepted)

2020-08-21 Thread Andreas Hasenack
base-files (9.4ubuntu4.13) xenial; urgency=medium

  [ Andreas Hasenack ]
  * motd/50-motd-news: don't include uptime in the user-agent string
(LP: #1886572)
  * Move the /etc/default/motd-news conffile to the motd-news-config
package (LP: #1888575):
- d/postinst.in, d/postrm, d/preinst: remove /etc/default/motd-news
  config file on base-files upgrade using dpkg-maintscript-helper
- d/rules: install d/preinst
- d/control: break on ubuntu-server << 1.361.5 to force an upgrade if
  it is installed, which will pull motd-news-config and the conffile
  back in
- d/control: new motd-news-config package, carrying the
  configuration file for the /etc/update-motd.d/50-motd-news script.
- d/motd-news-config.postinst:
  + handle the upgrade case where the motd-news config file was
changed while it belonged to base-files
  + disable motd-news if the config file was removed by hand before
the upgrade
- d/postinst.in: signal the motd-news-config package if the
  motd-news config file was removed manually before the upgrade
- d/conffiles: remove motd-news
- d/rules, d/motd-news-config.conffiles: packaging motd-news-config
  without debhelper

  [ Steve Langasek ]
  * motd/50-motd-news: use wget instead of curl, since wget is standard but
curl is optional (LP: #1888572):
- This changes the timeout behavior slightly because wget does not have
  an exact equivalent to curl's --max-time argument, we are using
  --timeout instead.

Date: Mon, 17 Aug 2020 11:19:19 -0300
Changed-By: Andreas Hasenack 
Maintainer: Ubuntu Developers 
https://launchpad.net/ubuntu/+source/base-files/9.4ubuntu4.13
Format: 1.8
Date: Mon, 17 Aug 2020 11:19:19 -0300
Source: base-files
Architecture: source
Version: 9.4ubuntu4.13
Distribution: xenial
Urgency: medium
Maintainer: Ubuntu Developers 
Changed-By: Andreas Hasenack 
Launchpad-Bugs-Fixed: 1886572 1888572 1888575
Changes:
 base-files (9.4ubuntu4.13) xenial; urgency=medium
 .
   [ Andreas Hasenack ]
   * motd/50-motd-news: don't include uptime in the user-agent string
 (LP: #1886572)
   * Move the /etc/default/motd-news conffile to the motd-news-config
 package (LP: #1888575):
 - d/postinst.in, d/postrm, d/preinst: remove /etc/default/motd-news
   config file on base-files upgrade using dpkg-maintscript-helper
 - d/rules: install d/preinst
 - d/control: break on ubuntu-server << 1.361.5 to force an upgrade if
   it is installed, which will pull motd-news-config and the conffile
   back in
 - d/control: new motd-news-config package, carrying the
   configuration file for the /etc/update-motd.d/50-motd-news script.
 - d/motd-news-config.postinst:
   + handle the upgrade case where the motd-news config file was
 changed while it belonged to base-files
   + disable motd-news if the config file was removed by hand before
 the upgrade
 - d/postinst.in: signal the motd-news-config package if the
   motd-news config file was removed manually before the upgrade
 - d/conffiles: remove motd-news
 - d/rules, d/motd-news-config.conffiles: packaging motd-news-config
   without debhelper
 .
   [ Steve Langasek ]
   * motd/50-motd-news: use wget instead of curl, since wget is standard but
 curl is optional (LP: #1888572):
 - This changes the timeout behavior slightly because wget does not have
   an exact equivalent to curl's --max-time argument, we are using
   --timeout instead.
Checksums-Sha1:
 9d00a2f47f7a9e4711f0a105c8ed65eebae97ac7 1639 base-files_9.4ubuntu4.13.dsc
 c8a2bf606d09aa14e4617e0cc8b8a82a4b9da82f 67184 base-files_9.4ubuntu4.13.tar.xz
 ab941c1b9f78430d7cef847e8ef6733802414995 5091 
base-files_9.4ubuntu4.13_source.buildinfo
Checksums-Sha256:
 920d924dcd8b818b0bbebf3a0393ebdf885f04ac8bfa927c566718caba42040a 1639 
base-files_9.4ubuntu4.13.dsc
 a0a0a84ed702415d8259eb8433fafcf386c62dcc662b125f7abe3136a011460c 67184 
base-files_9.4ubuntu4.13.tar.xz
 6ad853bfbbac860f1f3a05e3d7d8929c187d011d69cadcd9950ae7cf46c563f0 5091 
base-files_9.4ubuntu4.13_source.buildinfo
Files:
 5e78ed446b90375639052db2ced5bff2 1639 admin required 
base-files_9.4ubuntu4.13.dsc
 e05349b70fa715177c926268169bec27 67184 admin required 
base-files_9.4ubuntu4.13.tar.xz
 81ab3f6a9f938fc02649de00f312d8fa 5091 admin required 
base-files_9.4ubuntu4.13_source.buildinfo
Original-Maintainer: Santiago Vila 
-- 
Xenial-changes mailing list
Xenial-changes@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/xenial-changes