[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 2558-2] xterm regression update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

- -----------------------------------------------------------------------
Debian LTS Advisory DLA-2558-2              debian-lts@lists.debian.org
https://www.debian.org/lts/security/                      Utkarsh Gupta
March 21, 2021                              https://wiki.debian.org/LTS
- -----------------------------------------------------------------------

Package        : xterm
Version        : 327-2+deb9u2
Debian Bug     : 984615

DLA 2558-2 backported a part of the upstream patch which fails
to deal with the realloc failures in Debian stretch. This update
reverts that part of the patch since it's not really needed and
just focuses on fixing CVE-2021-27135.

For Debian 9 stretch, this problem has been fixed in version
327-2+deb9u2.

We recommend that you upgrade your xterm packages.

For the detailed security status of xterm please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/xterm

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----
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=HrPR
-----END PGP SIGNATURE-----


Reply to: