9ab704699e
Fixes the following security issues: CVE-2024-38439: Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of setting ibuf[PASSWDLEN] to '\0' in FPLoginExt in login in etc/uams/uams_pam.c. https://github.com/advisories/GHSA-pcmr-ff73-xcj5 CVE-2024-38440: Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of incorrectly using FPLoginExt in BN_bin2bn in etc/uams/uams_dhx_pam.c. https://github.com/advisories/GHSA-52mm-rqxx-gfq6 CVE-2024-38441: Netatalk 3.2.0 has an off-by-one error and resultant heap-based buffer overflow because of setting ibuf[len] to '\0' in FPMapName in afp_mapname in etc/afp/directory.c. https://github.com/advisories/GHSA-j764-4v6h-pqp7 Release notes: https://github.com/Netatalk/netatalk/releases/tag/netatalk-3-1-19 Signed-off-by: Peter Korsgaard <peter@korsgaard.com> Signed-off-by: Julien Olivain <ju.o@free.fr>