Publishing details
Changelog
sane-backends (1.0.25+git20150528-1ubuntu2.16.04.3) xenial-security; urgency=medium
* SECURITY UPDATE: memory disclosure via crafted SANE_NET_CONTROL_OPTION
packet
- debian/patches/CVE-2017-6318.patch: address memory corruption and
information leakage in frontend/saned.c.
- CVE-2017-6318
* SECURITY UPDATE: out-of-bounds read in epsonds
- debian/patches/CVE-2020-12862.patch: do not read beyond the end of
the token in backend/epsonds-cmd.c.
- CVE-2020-12862
* SECURITY UPDATE: out-of-bounds read in epsonds
- debian/patches/CVE-2020-12863.patch: read only up to seven hexdigits
to determine payload size in backend/epsonds-cmd.c.
- CVE-2020-12863
* SECURITY UPDATE: heap buffer overflow in epsonds
- debian/patches/CVE-2020-12865.patch: check for overflow when reading
image data in backend/epsonds-cmd.c, backend/epsonds.c,
backend/epsonds.h.
- CVE-2020-12865
* SECURITY UPDATE: NULL pointer dereference in epson2
- debian/patches/CVE-2020-12867.patch: rewrite network I/O in
backend/epson2_net.c, backend/epson2_net.h.
- CVE-2020-12867
-- Marc Deslauriers <email address hidden> Fri, 21 Aug 2020 11:15:11 -0400
Builds
Built packages
-
libsane
API library for scanners
-
libsane-common
API library for scanners -- documentation and support files
-
libsane-dbg
API development library for scanners [debug symbols]
-
libsane-dbgsym
debug symbols for package libsane
-
libsane-dev
API development library for scanners [development files]
-
libsane-dev-dbgsym
debug symbols for package libsane-dev
-
sane-utils
API library for scanners -- utilities
-
sane-utils-dbgsym
debug symbols for package sane-utils
Package files