UbuntuUpdates.org

Package "adsys"

Name: adsys

Description:

AD SYStem integration

Latest version: 0.16.3~24.04.2ubuntu0.24.04.1
Release: noble (24.04)
Level: security
Repository: main
Homepage: https://github.com/ubuntu/adsys

Links


Download "adsys"


Other versions of "adsys" in Noble

Repository Area Version
base universe 0.14.1build1
base main 0.14.1build1
security universe 0.16.3~24.04.2ubuntu0.24.04.1
updates main 0.16.3~24.04.2ubuntu0.24.04.1
updates universe 0.16.3~24.04.2ubuntu0.24.04.1

Changelog

Version: 0.16.3~24.04.2ubuntu0.24.04.1 2026-06-15 19:07:37 UTC

  adsys (0.16.3~24.04.2ubuntu0.24.04.1) noble-security; urgency=medium

  * SECURITY UPDATE: Hang in Transport.
    - 1e71bd86e4a302b4e731bc06da6eb51679c7bd49: Prevent hanging Transport from
      bad SETTINGS frame in vendor/golang.org/x/net/http2/transport.go
    - Author: Nicholas S. Husin <email address hidden>
    - CVE-2026-33814

 -- Kyle Kernick <email address hidden> Thu, 11 Jun 2026 16:54:32 -0600

Source diff to previous version
CVE-2026-33814 When processing HTTP/2 SETTINGS frames, transport will enter an infinite loop of writing CONTINUATION frames if it receives a SETTINGS_MAX_FRAME_SIZE

Version: 0.14.3~24.04ubuntu0.1 2025-01-09 17:07:25 UTC

  adsys (0.14.3~24.04ubuntu0.1) noble-security; urgency=medium

  * SECURITY UPDATE: Denial of service in parse function.
    - Use strings.EqualFold instead of direct comparison and
      strings.ToLower in .../html/doctype.go, .../html/foreign.go, and
      .../html/parse.go. Based on
      https://go.googlesource.com/net/+/8e66b04771e35c4e4125e8c60334b34e2423effb
      upstream patch.
    - CVE-2024-45338

 -- Hlib Korzhynskyy <email address hidden> Tue, 07 Jan 2025 13:50:46 -0330

Source diff to previous version
CVE-2024-45338 An attacker can craft an input to the Parse functions that would be processed non-linearly with respect to its length, resulting in extremely slow pa

Version: 0.14.2~24.04ubuntu0.1 2024-11-11 11:06:53 UTC

  adsys (0.14.2~24.04ubuntu0.1) noble-security; urgency=medium

  * No change rebuild due to golang-1.22 update

 -- Evan Caville <email address hidden> Mon, 11 Nov 2024 10:15:58 +1000

Source diff to previous version

Version: 0.14.1ubuntu0.24.04.1 2024-07-16 13:07:08 UTC

  adsys (0.14.1ubuntu0.24.04.1) noble-security; urgency=medium

  * No change rebuild due to golang-1.22 update

 -- Nishit Majithia <email address hidden> Tue, 16 Jul 2024 11:09:41 +0530




About   -   Send Feedback to @ubuntu_updates