[ubuntu/xenial-updates] vino 3.8.1-0ubuntu9.4 (Accepted)

2020-11-17 Thread Ubuntu Archive Robot
vino (3.8.1-0ubuntu9.4) xenial-security; urgency=medium * SECURITY UPDATE: Denial of service - debian/patches/CVE-2020-25708.patch: fix possible divide-by-zero in server/libvncserver/rfbserver.c. - CVE-2020-25708 Date: 2020-11-16 16:16:16.324537+00:00 Changed-By:

[ubuntu/xenial-updates] libvncserver 0.9.10+dfsg-3ubuntu0.16.04.6 (Accepted)

2020-11-17 Thread Ubuntu Archive Robot
libvncserver (0.9.10+dfsg-3ubuntu0.16.04.6) xenial-security; urgency=medium * SECURITY UPDATE: Denial of service - debian/patches/CVE-2020-25708.patch: fix possible divide-by-zero in libvncserver/rfbserver.c. - CVE-2020-25708 Date: 2020-11-16 13:23:43.572582+00:00 Changed-By:

[ubuntu/xenial-updates] chromium-browser 86.0.4240.198-0ubuntu0.16.04.1 (Accepted)

2020-11-17 Thread Ubuntu Archive Robot
chromium-browser (86.0.4240.198-0ubuntu0.16.04.1) xenial; urgency=medium * Stable channel update: 86.0.4240.198 - CVE-2020-16013: Inappropriate implementation in V8. - CVE-2020-16017: Use after free in site isolation. chromium-browser (86.0.4240.193-0ubuntu0.16.04.1) xenial;

[ubuntu/xenial-security] vino 3.8.1-0ubuntu9.4 (Accepted)

2020-11-17 Thread Leonidas S. Barbosa
vino (3.8.1-0ubuntu9.4) xenial-security; urgency=medium * SECURITY UPDATE: Denial of service - debian/patches/CVE-2020-25708.patch: fix possible divide-by-zero in server/libvncserver/rfbserver.c. - CVE-2020-25708 Date: 2020-11-16 16:16:16.324537+00:00 Changed-By:

[ubuntu/xenial-security] libvncserver 0.9.10+dfsg-3ubuntu0.16.04.6 (Accepted)

2020-11-17 Thread Leonidas S. Barbosa
libvncserver (0.9.10+dfsg-3ubuntu0.16.04.6) xenial-security; urgency=medium * SECURITY UPDATE: Denial of service - debian/patches/CVE-2020-25708.patch: fix possible divide-by-zero in libvncserver/rfbserver.c. - CVE-2020-25708 Date: 2020-11-16 13:23:43.572582+00:00 Changed-By:

[ubuntu/xenial-security] chromium-browser 86.0.4240.198-0ubuntu0.16.04.1 (Accepted)

2020-11-17 Thread Chris Coulson
chromium-browser (86.0.4240.198-0ubuntu0.16.04.1) xenial; urgency=medium * Stable channel update: 86.0.4240.198 - CVE-2020-16013: Inappropriate implementation in V8. - CVE-2020-16017: Use after free in site isolation. chromium-browser (86.0.4240.193-0ubuntu0.16.04.1) xenial;

[ubuntu/xenial-updates] google-compute-engine-oslogin 20200925.00-0ubuntu3~16.04.0 (Accepted)

2020-11-17 Thread Brian Murray
google-compute-engine-oslogin (20200925.00-0ubuntu3~16.04.0) xenial; urgency=medium * Backport to Xenial with the following remaining changes: - Revert to using dh-systemd because Xenial does not have the debhelper version making dh-systemd obsolete - Revert to compat mode 9

[ubuntu/xenial-updates] gce-compute-image-packages 20190801-0ubuntu1~16.04.2 (Accepted)

2020-11-17 Thread Brian Murray
gce-compute-image-packages (20190801-0ubuntu1~16.04.2) xenial; urgency=medium * Drop google-compute-engine-oslogin packaging (LP: #1899629) Date: 2020-10-20 14:15:12.681858+00:00 Changed-By: Balint Reczey Signed-By: Brian Murray

[ubuntu/xenial-updates] krb5 1.13.2+dfsg-5ubuntu2.2 (Accepted)

2020-11-17 Thread Ubuntu Archive Robot
krb5 (1.13.2+dfsg-5ubuntu2.2) xenial-security; urgency=medium * SECURITY UPDATE: Unbounded recursion - debian/patches/CVE-2020-28196.patch: adds recursion limit for ASN.1 indefinite lenghts in src/lib/krb5/asn.1/asn1_encode.c. - CVE-2020-28196 Date: 2020-11-12

[ubuntu/xenial-security] krb5 1.13.2+dfsg-5ubuntu2.2 (Accepted)

2020-11-17 Thread Leonidas S. Barbosa
krb5 (1.13.2+dfsg-5ubuntu2.2) xenial-security; urgency=medium * SECURITY UPDATE: Unbounded recursion - debian/patches/CVE-2020-28196.patch: adds recursion limit for ASN.1 indefinite lenghts in src/lib/krb5/asn.1/asn1_encode.c. - CVE-2020-28196 Date: 2020-11-12

[ubuntu/xenial-updates] postgresql-9.5 9.5.24-0ubuntu0.16.04.1 (Accepted)

2020-11-17 Thread Ubuntu Archive Robot
postgresql-9.5 (9.5.24-0ubuntu0.16.04.1) xenial-security; urgency=medium * New upstream version. + Block DECLARE CURSOR ... WITH HOLD and firing of deferred triggers within index expressions and materialized view queries (Noah Misch) This is essentially a leak in the security

[ubuntu/xenial-updates] openldap 2.4.42+dfsg-2ubuntu3.11 (Accepted)

2020-11-17 Thread Ubuntu Archive Robot
openldap (2.4.42+dfsg-2ubuntu3.11) xenial-security; urgency=medium * SECURITY UPDATE: assertion failure in Certificate List syntax validation - debian/patches/CVE-2020-25709.patch: properly handle error in servers/slapd/schema_init.c. - CVE-2020-25709 * SECURITY UPDATE:

[ubuntu/xenial-security] openldap 2.4.42+dfsg-2ubuntu3.11 (Accepted)

2020-11-17 Thread Marc Deslauriers
openldap (2.4.42+dfsg-2ubuntu3.11) xenial-security; urgency=medium * SECURITY UPDATE: assertion failure in Certificate List syntax validation - debian/patches/CVE-2020-25709.patch: properly handle error in servers/slapd/schema_init.c. - CVE-2020-25709 * SECURITY UPDATE:

[ubuntu/xenial-security] postgresql-9.5 9.5.24-0ubuntu0.16.04.1 (Accepted)

2020-11-17 Thread Marc Deslauriers
postgresql-9.5 (9.5.24-0ubuntu0.16.04.1) xenial-security; urgency=medium * New upstream version. + Block DECLARE CURSOR ... WITH HOLD and firing of deferred triggers within index expressions and materialized view queries (Noah Misch) This is essentially a leak in the security

[ubuntu/xenial-proposed] linux-hwe_4.15.0-125.128~16.04.1_ppc64el.tar.gz - (Accepted)

2020-11-17 Thread Kleber Sacilotto de Souza
linux-hwe (4.15.0-125.128~16.04.1) xenial; urgency=medium * xenial/linux-hwe: 4.15.0-125.128~16.04.1 -proposed tracker (LP: #1903136) * Packaging resync (LP: #1786013) - [Packaging] update update.conf [ Ubuntu: 4.15.0-125.128 ] * bionic/linux: 4.15.0-125.128 -proposed tracker (LP:

[ubuntu/xenial-proposed] linux-hwe_4.15.0-125.128~16.04.1_amd64.tar.gz - (Accepted)

2020-11-17 Thread Kleber Sacilotto de Souza
linux-hwe (4.15.0-125.128~16.04.1) xenial; urgency=medium * xenial/linux-hwe: 4.15.0-125.128~16.04.1 -proposed tracker (LP: #1903136) * Packaging resync (LP: #1786013) - [Packaging] update update.conf [ Ubuntu: 4.15.0-125.128 ] * bionic/linux: 4.15.0-125.128 -proposed tracker (LP:

[ubuntu/xenial-proposed] linux-signed-hwe 4.15.0-125.128~16.04.1 (Accepted)

2020-11-17 Thread Andy Whitcroft
linux-signed-hwe (4.15.0-125.128~16.04.1) xenial; urgency=medium * Master version: 4.15.0-125.128~16.04.1 Date: 2020-11-11 15:15:13.038382+00:00 Changed-By: Kleber Sacilotto de Souza Signed-By: Andy Whitcroft https://launchpad.net/ubuntu/+source/linux-signed-hwe/4.15.0-125.128~16.04.1 Sorry,

[ubuntu/xenial-proposed] linux-meta-hwe 4.15.0.125.124 (Accepted)

2020-11-17 Thread Andy Whitcroft
linux-meta-hwe (4.15.0.125.124) xenial; urgency=medium * Bump ABI 4.15.0-125 Date: 2020-11-11 15:15:10.753429+00:00 Changed-By: Kleber Sacilotto de Souza Signed-By: Andy Whitcroft https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.15.0.125.124 Sorry, changesfile not available.--

[ubuntu/xenial-proposed] linux-hwe 4.15.0-125.128~16.04.1 (Accepted)

2020-11-17 Thread Andy Whitcroft
linux-hwe (4.15.0-125.128~16.04.1) xenial; urgency=medium * xenial/linux-hwe: 4.15.0-125.128~16.04.1 -proposed tracker (LP: #1903136) * Packaging resync (LP: #1786013) - [Packaging] update update.conf [ Ubuntu: 4.15.0-125.128 ] * bionic/linux: 4.15.0-125.128 -proposed tracker (LP:

[ubuntu/xenial-proposed] grub2-signed 1.66.29 (Accepted)

2020-11-17 Thread dann frazier
grub2-signed (1.66.29) xenial; urgency=medium * Rebuild against grub2 2.02~beta2-36ubuntu3.29. Date: Sat, 14 Nov 2020 08:27:13 -0700 Changed-By: dann frazier Maintainer: Colin Watson https://launchpad.net/ubuntu/+source/grub2-signed/1.66.29 Format: 1.8 Date: Sat, 14 Nov 2020 08:27:13 -0700

[ubuntu/xenial-proposed] grub2 2.02~beta2-36ubuntu3.29 (Accepted)

2020-11-17 Thread dann frazier
grub2 (2.02~beta2-36ubuntu3.29) xenial; urgency=medium * Avoid "EFI stub: FIRMWARE BUG" message when booting >= 5.7 kernels on arm64 by setting the image base address before jumping to the PE/COFF entry point LP: #1900774 * Fix tftp timeouts when fetching large files. LP: #1900773