Debian Linux Security Advisory 4809-2 - The update for python-apt released as DSA 4809-1 introduced a regression when passing a file descriptor to apt_inst.ArFile or apt_inst.DebFile causing a segmentation fault. Updated python-apt packages are now available to correct this issue.
5707a06f3825acb81d8ebbee8680d250b2274d281c25fa856c5a681bea7cd152
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- -------------------------------------------------------------------------
Debian Security Advisory DSA-4809-2 security@debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
December 27, 2020 https://www.debian.org/security/faq
- -------------------------------------------------------------------------
Package : python-apt
Debian Bug : 977000
The update for python-apt released as DSA 4809-1 introduced a regression
when passing a file descriptor to apt_inst.ArFile or apt_inst.DebFile
causing a segmentation fault. Updated python-apt packages are now
available to correct this issue.
For the stable distribution (buster), this problem has been fixed in
version 1.8.4.3.
We recommend that you upgrade your python-apt packages.
For the detailed security status of python-apt please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/python-apt
Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/
Mailing list: debian-security-announce@lists.debian.org
-----BEGIN PGP SIGNATURE-----
iQKTBAEBCgB9FiEERkRAmAjBceBVMd3uBUy48xNDz0QFAl/opZxfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2
NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQACgkQBUy48xND
z0RMpRAAnbDQCAOs+ni3VyzHj0d/5jiuTCOpiLsVIlCKsxarkYBGOSUTtPL7soeV
r0dMyueIb6u2WFd5P1gxsHc54d49dGh/8cpHPtXFrkRXp9NjrS+KkGKSjBu4xY3/
JXy4XfR1XyjIUNAJf+r6ebMJ08GraedQTthXQKURLYPuDdikO5QjBp7RX5oaE8aP
P8rCoegHK1LKNIG3Wedb3PvYcmyPVna7Ze/SATBOIOhorrVE6S8PgVJZyC5gTlRH
m3Ne36HXBeLERpZT/yWUMTPwOyxhOAdwrBbjSYTpYAI+6Jt/SRuaA+pr+txQjzGX
TXdwuIQOlpMqXP4ZZ25lr5qkTtGQ8OD1H9yNMVSo+Foxv/oSN+RPm3DD+2Rl0Opx
Tmfs+W8AgLUTp1iZFd4argYI4i2sBCRjURglaNT+V8T33Kr6YIb414DplRn14Mo1
RaKFE0Vdwp3O3zKqxHKwtw3BjKS5+haFmVxjB0dGUVHHnVggcv1x12vxomb4Idg7
1jQLWsyYJYhI86ZsSi6EgzBYp1yWksfi0qzF3UydQxEw6Vq6lOcapZayqEBiN6lb
JG0U2sTSeIPWvSj4Joe5kxRZP42YkBfkYq41ljjBYdtlaT8tjw6AUxelGilRgI3a
3B+xuPsQ7iIFyL+fX1GDikf1VcVnclF9S6yl7BF50a3jL92N4fI=
=5UVc
-----END PGP SIGNATURE-----