Change logs for nas source package in Trusty

  • nas (1.9.4-1) unstable; urgency=low
    
    
      * Switch source format and split up our patches, stick in git.
      * Add Vcs-Git and Vcs-Browser fields.
      * New upstream stable version:
        + Multiple security fixes merged that we had already included
        + Warning fixes
      * Remove old patches that we don't need now:
        + DontPreprocessManPages.patch
        + string-functions-overflow.patch
        + TCP_DEVICE.patch
        + port-offset.patch
        + log-format-string.patch
    
     -- Steve McIntyre <email address hidden>  Thu, 10 Oct 2013 14:38:08 +0100
  • nas (1.9.3-6) unstable; urgency=high
    
    
      * Fixes for various long-standing security issues found by Hamid
        Zamani <email address hidden>. Closes: #720287
        + Validate the port offset of nasd to fix a potential buffer overflow
          (CVE-2013-4256)
        + Use better string functions to guard against heap overflows
          (CVE-2013-4257)
        + Sanity-check the TCP_DEVICE environment variable to remove a format
          string bug (CVE-2013-4258)
    
     -- Steve McIntyre <email address hidden>  Fri, 23 Aug 2013 00:35:04 +0100