libsepol 3.1-1ubuntu2.1 source package in Ubuntu

Changelog

libsepol (3.1-1ubuntu2.1) impish-security; urgency=medium

  * SECURITY UPDATE: use-after-free in __cil_verify_classperms
    - debian/patches/CVE-2021-36084.patch: alter destruction of
      classperms list when resetting classpermission by avoiding
      deleting the inner data in cil/src/cil_reset_ast.c
    - CVE-2021-36084
  * SECURITY UPDATE: use-after-free in __cil_verify_classperms
    - debian/patches/CVE-2021-36085.patch: alter destruction of
      classperms when resetting a perm by avoiding
      deleting the inner data in cil/src/cil_reset_ast.c
    - CVE-2021-36085
  * SECURITY UPDATE: use-after-free in cil_reset_classpermission
    - debian/patches/CVE-2021-36086.patch: prevent
      cil_reset_classperms_set from resetting classpermission by
      setting it to NULL in cil/src/cil_reset_ast.c
    - CVE-2021-36086
  * SECURITY UPDATE: heap-based buffer over-read in ebitmap_match_any
    - debian/patches/CVE-2021-36087.patch: check if a tunable
      declaration, in-statement, block, blockabstract, or macro definition
      is found within an optional in cil/src/cil_build_ast.c and
      cil/src/cil_resolve_ast.c
    - CVE-2021-36087

 -- David Fernandez Gonzalez <email address hidden>  Tue, 26 Apr 2022 12:52:40 +0200

Upload details

Uploaded by:
David Fernandez Gonzalez
Uploaded to:
Impish
Original maintainer:
Ubuntu Developers
Architectures:
linux-any
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
libsepol_3.1.orig.tar.gz 462.7 KiB ae6778d01443fdd38cd30eeee846494e19f4d407b09872580372f4aa4bf8a3cc
libsepol_3.1-1ubuntu2.1.debian.tar.xz 17.1 KiB f83c7ff49d6d1f34e05a3b70267d9a2d9542a1a366572f0e3b20f89cf11e2607
libsepol_3.1-1ubuntu2.1.dsc 2.0 KiB e33fd17a35216179f4ccec34e27682d70237ac97742d53deacd60623eb109b6d

View changes file

Binary packages built by this source

libsepol1: No summary available for libsepol1 in ubuntu impish.

No description available for libsepol1 in ubuntu impish.

libsepol1-dbgsym: No summary available for libsepol1-dbgsym in ubuntu impish.

No description available for libsepol1-dbgsym in ubuntu impish.

libsepol1-dev: No summary available for libsepol1-dev in ubuntu impish.

No description available for libsepol1-dev in ubuntu impish.

sepol-utils: No summary available for sepol-utils in ubuntu impish.

No description available for sepol-utils in ubuntu impish.

sepol-utils-dbgsym: No summary available for sepol-utils-dbgsym in ubuntu impish.

No description available for sepol-utils-dbgsym in ubuntu impish.