UbuntuUpdates.org

Package "ppp"

Name: ppp

Description:

Point-to-Point Protocol (PPP) - daemon

Latest version: 2.4.5-5ubuntu1.4
Release: precise (12.04)
Level: security
Repository: main

Links


Download "ppp"


Other versions of "ppp" in Precise

Repository Area Version
base main 2.4.5-5ubuntu1
updates main 2.4.5-5ubuntu1.4

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2.4.5-5ubuntu1.4 2021-05-03 14:07:17 UTC

  ppp (2.4.5-5ubuntu1.4) precise-security; urgency=medium

  * SECURITY UPDATE: arbitrary file disclosure vulnerability
    - debian/patches/load_ppp_generic_if_needed: removed, ppp has been
      built into Ubuntu kernels since at least 2012.
    - CVE-2020-15704
  * debian/patches/0016-pppoe-include-netinet-in.h-before-linux-in.h.patch:
    fix build on newer kernels.

 -- <email address hidden> (Leonidas S. Barbosa) Tue, 04 Aug 2020 15:16:00 -0300

Source diff to previous version
CVE-2020-15704 RESERVED

Version: 2.4.5-5ubuntu1.2 2015-05-05 18:06:36 UTC

  ppp (2.4.5-5ubuntu1.2) precise-security; urgency=medium

  * SECURITY UPDATE: denial of service via big process id
    - debian/patches/CVE-2015-3310.patch: limit size of process id in
      pppd/plugins/radius/util.c.
    - CVE-2015-3310
 -- Marc Deslauriers <email address hidden> Tue, 21 Apr 2015 13:04:10 -0400

Source diff to previous version
CVE-2015-3310 Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for pppd is greater tha

Version: 2.4.5-5ubuntu1.1 2014-12-01 16:06:19 UTC

  ppp (2.4.5-5ubuntu1.1) precise-security; urgency=medium

  * SECURITY UPDATE: possible privilege escalation via option parsing
    - debian/patches/CVE-2014-3158.patch: fix integer overflow in
      pppd/options.c.
    - CVE-2014-3158
 -- Marc Deslauriers <email address hidden> Tue, 25 Nov 2014 16:17:49 -0500

CVE-2014-3158 Integer overflow in the getword function in options.c in pppd in Paul's PPP Package (ppp) before 2.4.7 allows attackers to "access privileged options



About   -   Send Feedback to @ubuntu_updates