~ubuntu-branches/debian/squeeze/ia32-libs/squeeze

« back to all changes in this revision

Viewing changes to srcs/curl_7.21.0-2.1+squeeze4.dsc

  • Committer: Package Import Robot
  • Author(s): Thijs Kinkhorst, curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high, curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low, curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high, libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high, nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high, nss (3.12.8-1+squeeze7) squeeze-security; urgency=high
  • Date: 2014-01-31 09:19:46 UTC
  • Revision ID: package-import@ubuntu.com-20140131091946-z2j1eo8mxt7r703f
Tags: 20140131
* Packages updated

[ curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high ]

* Fix re-use of wrong HTTP NTLM connection as per CVE-2014-0015
  http://curl.haxx.se/docs/adv_20140129.html
* Set urgency=high accordingly

[ curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low ]

* Disable host verification too when using the --insecure option
  (#729965)

[ curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high ]

* Fix OpenSSL checking of a certificate CN or SAN name field when the
  digital signature verification is turned off as per CVE-2013-4545
  http://curl.haxx.se/docs/adv_20131115.html
* Set urgency=high accordingly

[ libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix cve-2013-2877: out-of-bounds read when handling documents that end
  abruptly.

[ nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix CVE-2013-5607: integer overflow on 64 bit systems

[ nss (3.12.8-1+squeeze7) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Add CVE-2013-5605.patch.
  CVE-2013-5605: Null_Cipher() does not respect maxOutputLen; allowing
  remote attackers to cause a denial of service or possibly have
  unspecified other impact via invalid handshake packets.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
-----BEGIN PGP SIGNED MESSAGE-----
2
 
Hash: SHA1
3
 
 
4
 
Format: 3.0 (quilt)
5
 
Source: curl
6
 
Binary: curl, libcurl3, libcurl3-gnutls, libcurl4-openssl-dev, libcurl4-gnutls-dev, libcurl3-dbg
7
 
Architecture: any
8
 
Version: 7.21.0-2.1+squeeze4
9
 
Maintainer: Ramakrishnan Muthukrishnan <rkrishnan@debian.org>
10
 
Homepage: http://curl.haxx.se
11
 
Standards-Version: 3.8.4
12
 
Vcs-Browser: http://git.debian.org/?p=collab-maint/curl.git
13
 
Vcs-Git: git://git.debian.org/collab-maint/curl.git
14
 
Build-Depends: debhelper (>> 5), autoconf, libtool, automake1.9, binutils (>= 2.14.90.0.7), libssl-dev, libgnutls-dev, zlib1g-dev, stunnel, libkrb5-dev [!hurd-i386], libidn11-dev, groff-base, libdb-dev (>= 4.7), libldap2-dev, quilt, libssh2-1-dev (>= 1.2), libgcrypt11-dev
15
 
Build-Conflicts: autoconf2.13, automake1.4
16
 
Checksums-Sha1: 
17
 
 d0e5a1184315b9abb9cc54d77d4a0200526f046d 2714501 curl_7.21.0.orig.tar.gz
18
 
 752978265bf5b84fa1b14046d219c01d45cf8867 101978 curl_7.21.0-2.1+squeeze4.debian.tar.gz
19
 
Checksums-Sha256: 
20
 
 b3e2047c6f70eb321557af980a9554f0a98fb122d9636f1c98833262eed8de1d 2714501 curl_7.21.0.orig.tar.gz
21
 
 9c6c96e26fde07d5c92dc2338a2d2ee3169f944570d4ebf8c519d81e57b89398 101978 curl_7.21.0-2.1+squeeze4.debian.tar.gz
22
 
Files: 
23
 
 6dfb911a254a1b5ca8b534b98f2196aa 2714501 curl_7.21.0.orig.tar.gz
24
 
 2ca9a94f786b442615fc64f5fdb3d626 101978 curl_7.21.0-2.1+squeeze4.debian.tar.gz
25
 
 
26
 
-----BEGIN PGP SIGNATURE-----
27
 
Version: GnuPG v1.4.12 (GNU/Linux)
28
 
 
29
 
iQIcBAEBAgAGBQJRxuk1AAoJEK+lG9bN5XPLU9kP/3hbXUDeyukqZZz4KVq7fTrF
30
 
+WvsYTXDRo8X2+S+4cBiJvMfLqHuOFm9ybHy3jCIobZgFhe/d0BVJmr/WPo0YFwa
31
 
aImLTXPKV1qUvAd6vUKNUyhAjLmHOVmI+8A+BGf9ATS6GDF8eURbetCySLoaHmkM
32
 
f4mAxPh6v0B6sGuzXOY3ak00FYWLI+FT/aDdnG1IEBIKr7Uk9dFCh/ub0GPQf5F3
33
 
vFlnSMMUuKnleWeNiSk0RmSO5gywx8uQkNh9gqgIuP4dAr2JvFrGEZj9nFV30ClR
34
 
MkSTIsuvCwOAkLj6s/59fitYAWFzXj2sMW7Msp6B8RgFIMD0vRXqo8OXPrka7dcY
35
 
nXKa+B7ApwIETO/IBFWai7RT/hVzx8b8BuTio34xJ2w2qZhMQUw+eHdXdM2RzZjr
36
 
lhOuY2JE7WX7jLh1y6j90PMSRPHe1Iu7hxOpjFEQ4+DuxfVR0Bkb6dyTJC0kDrhO
37
 
MY4kuP1cadTOT6VCD9o3MWFXvFsL8JYhmSwvhMKepMj8e3CthDfywJFHpt4GEI/P
38
 
/qjBRav4GVvIfI/zmqThyveKZwDarybaaLYd5k3L5dp2ThVUHSZ6FUgBVHjuOV/f
39
 
33mMebnfTVYAfXom6gqZGv7Gsi5RSoCzvM7zxqdCvnV2w6LI6anrBUALDjpO4Gpm
40
 
fVEZh/dw+Abq3l/e8TKB
41
 
=U/gM
42
 
-----END PGP SIGNATURE-----