-
ppp (2.4.7-1+4+deb9u1) stretch-security; urgency=high
* Non-maintainer upload by the Security Team.
* pppd: Fix bounds check in EAP code (CVE-2020-8597) (Closes: #950618)
-- Salvatore Bonaccorso <email address hidden> Thu, 20 Feb 2020 23:08:23 +0100
-
ppp (2.4.7-1+4) unstable; urgency=medium
[ Helmut Grohne ]
* Mark ppp-dev Multi-Arch: foreign (Closes: #842890)
[ Chris Boot ]
* Run wrap-and-sort.
* ppp: add lsb-base to Depends for pppd-dns init script.
* Fix FTBFS in rp-pppoe with linux 4.8 headers.
-- Chris Boot <email address hidden> Fri, 11 Nov 2016 15:03:42 +0000
-
ppp (2.4.7-1+3) unstable; urgency=medium
* PPPoE: permit setting an arbitrary Host-Uniq field value:
add patch pr-28-pppoe-custom-host-uniq-tag.patch (Closes: #828968)
* Update Standards-Version to 3.9.8 (no changes required).
* Update Vcs-Browser and Vcs-Git to use https:// URLs.
* Fix a typo in README.Debian.
-- Chris Boot <email address hidden> Mon, 29 Aug 2016 00:15:43 +0100
-
ppp (2.4.7-1+2) unstable; urgency=medium
* Replace my email address for my debian.org address.
* Upload to unstable.
-- Chris Boot <email address hidden> Wed, 27 Jan 2016 08:48:40 +0000
-
ppp (2.4.7-1+1) unstable; urgency=medium
* Upload to unstable.
-- Chris Boot <email address hidden> Fri, 04 Dec 2015 08:18:14 +0000
-
ppp (2.4.6-3.1) unstable; urgency=high
* Non-maintainer upload.
* Urgency high due to fix for DoS vulnerability.
* Fix buffer overflow in rc_mksid().
The function converts the PID of pppd to hex to generate a pseudo-unique
string. If the process id is bigger than 65535 (FFFF), its hex
representation will be longer than 4 characters, resulting in a buffer
overflow. This bug can be exploited to cause a remote DoS.
(Closes: #782450)
-- Emanuele Rocca <email address hidden> Tue, 14 Apr 2015 08:18:06 +0200