Skip to content

1.86.0

Compare
Choose a tag to compare
@cf-buildpacks-eng cf-buildpacks-eng released this 28 Mar 03:25
· 88 commits to main since this release

Notably, this release addresses:

USN-6715-1 unixODBC vulnerability:

  • CVE-2024-1013:
    An out-of-bounds stack write flaw was found in unixODBC on 64-bit
    architectures where the caller has 4 bytes and callee writes 8 bytes. This
    issue may go unnoticed on little-endian architectures, while big-endian
    architectures can be broken.
-ii  libodbc2:amd64         2.3.9-5          amd64 ODBC Driver Manager library for Unix
-ii  libodbccr2:amd64       2.3.9-5          amd64 ODBC Cursor library for Unix
-ii  libodbcinst2:amd64     2.3.9-5          amd64 Support library for accessing ODBC configuration files
+ii  libodbc2:amd64         2.3.9-5ubuntu0.1 amd64 ODBC Driver Manager library for Unix
+ii  libodbccr2:amd64       2.3.9-5ubuntu0.1 amd64 ODBC Cursor library for Unix
+ii  libodbcinst2:amd64     2.3.9-5ubuntu0.1 amd64 Support library for accessing ODBC configuration files
-ii  odbcinst               2.3.9-5          amd64 Helper program for accessing ODBC configuration files
-ii  odbcinst1debian2:amd64 2.3.9-5          amd64 Support library for accessing ODBC configuration files (transitional package)
+ii  odbcinst               2.3.9-5ubuntu0.1 amd64 Helper program for accessing ODBC configuration files
+ii  odbcinst1debian2:amd64 2.3.9-5ubuntu0.1 amd64 Support library for accessing ODBC configuration files (transitional package)
-ii  unixodbc-common        2.3.9-5          all   Common ODBC configuration files
-ii  unixodbc-dev:amd64     2.3.9-5          amd64 ODBC libraries for Unix (development files)
+ii  unixodbc-common        2.3.9-5ubuntu0.1 all   Common ODBC configuration files
+ii  unixodbc-dev:amd64     2.3.9-5ubuntu0.1 amd64 ODBC libraries for Unix (development files)```