UbuntuUpdates.org

Package "apt"




Name: apt

Description:

commandline package manager

Latest version: *DELETED*
Release: noble (24.04)
Level: proposed
Repository: main

Links


Download "apt"


Other versions of "apt" in Noble

Repository Area Version
base universe 2.7.14build2
base main 2.7.14build2
updates main 2.8.3
updates universe 2.8.3

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: *DELETED* 2025-05-29 16:23:33 UTC
No changelog for deleted or moved packages.

Version: 2.8.3 2025-03-29 00:07:01 UTC

  apt (2.8.3) noble; urgency=medium

  * Revert increased key size requirements from 2.8.0-2.8.2 (LP: #2073126)
    - Revert "Only install 00-temporary-rsa1024 for >=2.7.6 and improve comment"
    - Revert "Only warn about <rsa2048 when upgrading from 2.7.x to 2.8.x"
    - Revert rsa1024 to warnings again
    This leaves the mechanisms in place and no longer warns about NIST curves.
  * Fix keeping back removals of obsolete packages; and return an error if
    ResolveByKeep() is unsuccessful (LP: #2078720)
  * Fix buffer overflow, stack overflow, exponential complexity in
    apt-ftparchive Contents generation (LP: #2083697)
    - ftparchive: Mystrdup: Add safety check and bump buffer size
    - ftparchive: contents: Avoid exponential complexity and overflows
    - test framework: Improve valgrind support
    - test: Check that apt-ftparchive handles deep paths
    - Workaround valgrind "invalid read" in ExtractTar::Go by moving large
      buffer from stack to heap. The large buffer triggered some bugs in
      valgrind stack clash protection handling.

2073126 More nuanced public key algorithm revocation
2083697 distribution-gpg-keys-copr crashes Launchpad/apt-ftparchive

Version: *DELETED* 2024-12-15 00:06:52 UTC
No changelog for deleted or moved packages.

Version: 2.8.2 2024-08-14 13:07:08 UTC

  apt (2.8.2) noble; urgency=medium

  * Only install 00-temporary-rsa1024 for >=2.7.6 and improve comment
    (follow-up for LP: #2073126)

Source diff to previous version
2073126 More nuanced public key algorithm revocation

Version: 2.8.1 2024-08-02 15:07:04 UTC

  apt (2.8.1) noble; urgency=medium

  * Only revoke weak RSA keys for now, add 'next' and 'future' levels
    (backported from 2.9.7)
    Note that the changes to warn about keys not matching the future level
    in the --audit level are not fully included, as the --audit feature
    has not yet been backported. (LP: #2073126)
  * Introduce further mitigation on upgrades from 2.7.x to allow these
    systems to continue using rsa1024 repositories with warnings
    until the 24.04.2 point release (LP: #2073126)

2073126 More nuanced public key algorithm revocation



About   -   Send Feedback to @ubuntu_updates