~ubuntu-branches/debian/squeeze/ia32-libs/squeeze

« back to all changes in this revision

Viewing changes to srcs/curl_7.21.0-2.1+squeeze7.dsc

  • Committer: Package Import Robot
  • Author(s): Thijs Kinkhorst, curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high, curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low, curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high, libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high, nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high, nss (3.12.8-1+squeeze7) squeeze-security; urgency=high
  • Date: 2014-01-31 09:19:46 UTC
  • Revision ID: package-import@ubuntu.com-20140131091946-z2j1eo8mxt7r703f
Tags: 20140131
* Packages updated

[ curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high ]

* Fix re-use of wrong HTTP NTLM connection as per CVE-2014-0015
  http://curl.haxx.se/docs/adv_20140129.html
* Set urgency=high accordingly

[ curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low ]

* Disable host verification too when using the --insecure option
  (#729965)

[ curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high ]

* Fix OpenSSL checking of a certificate CN or SAN name field when the
  digital signature verification is turned off as per CVE-2013-4545
  http://curl.haxx.se/docs/adv_20131115.html
* Set urgency=high accordingly

[ libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix cve-2013-2877: out-of-bounds read when handling documents that end
  abruptly.

[ nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix CVE-2013-5607: integer overflow on 64 bit systems

[ nss (3.12.8-1+squeeze7) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Add CVE-2013-5605.patch.
  CVE-2013-5605: Null_Cipher() does not respect maxOutputLen; allowing
  remote attackers to cause a denial of service or possibly have
  unspecified other impact via invalid handshake packets.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
-----BEGIN PGP SIGNED MESSAGE-----
 
2
Hash: SHA1
 
3
 
 
4
Format: 3.0 (quilt)
 
5
Source: curl
 
6
Binary: curl, libcurl3, libcurl3-gnutls, libcurl4-openssl-dev, libcurl4-gnutls-dev, libcurl3-dbg
 
7
Architecture: any
 
8
Version: 7.21.0-2.1+squeeze7
 
9
Maintainer: Ramakrishnan Muthukrishnan <rkrishnan@debian.org>
 
10
Homepage: http://curl.haxx.se
 
11
Standards-Version: 3.8.4
 
12
Vcs-Browser: http://git.debian.org/?p=collab-maint/curl.git
 
13
Vcs-Git: git://git.debian.org/collab-maint/curl.git
 
14
Build-Depends: debhelper (>> 5), autoconf, libtool, automake1.9, binutils (>= 2.14.90.0.7), libssl-dev, libgnutls-dev, zlib1g-dev, stunnel, libkrb5-dev [!hurd-i386], libidn11-dev, groff-base, libdb-dev (>= 4.7), libldap2-dev, quilt, libssh2-1-dev (>= 1.2), libgcrypt11-dev
 
15
Build-Conflicts: autoconf2.13, automake1.4
 
16
Checksums-Sha1: 
 
17
 d0e5a1184315b9abb9cc54d77d4a0200526f046d 2714501 curl_7.21.0.orig.tar.gz
 
18
 c419c52172f95c8a741d5011983cf18f31caefcc 101305 curl_7.21.0-2.1+squeeze7.debian.tar.gz
 
19
Checksums-Sha256: 
 
20
 b3e2047c6f70eb321557af980a9554f0a98fb122d9636f1c98833262eed8de1d 2714501 curl_7.21.0.orig.tar.gz
 
21
 8360e82af087e252501074666954d2ec9e2ac9212d9279fd90150d97922fdfd7 101305 curl_7.21.0-2.1+squeeze7.debian.tar.gz
 
22
Files: 
 
23
 6dfb911a254a1b5ca8b534b98f2196aa 2714501 curl_7.21.0.orig.tar.gz
 
24
 1e74773afdc5f153c74511a37b811ecc 101305 curl_7.21.0-2.1+squeeze7.debian.tar.gz
 
25
 
 
26
-----BEGIN PGP SIGNATURE-----
 
27
Version: GnuPG v1
 
28
 
 
29
iQIcBAEBAgAGBQJS6UiXAAoJEK+lG9bN5XPLEDgP/i8ZAqYlP41IczHRPQcgFq0b
 
30
KXTzqyTlOR05j/0O9cLUaO+51ROAPuqcouoD1LV3NpLQg2zW9Zgc4kR+ayjA+byt
 
31
eFD1WTMrmLv1WNyr0iai12GzwqF6lQIkJ6+sPhse/hZMpXT87nagTLAf+Zo2zUxi
 
32
5VawzL5/tItcTaSOlewbbOK7XJqLKAt4Y2+zfKBt/TE7TrCFNEAUrJ7/LNDJmYNb
 
33
X38QiGd9019thmYbUYI/bU+egBORUQQzUFpsZYKaWnudj4BxM0PJQmx0O2E0tB/D
 
34
ooKVnWs/vZzgLCmq7NXdYinFTHSpPlWeaP9PAKw6UxYJEdNKqkBBQ19u+H5KQX2i
 
35
LZBMnY/seUPnt4694qg5voR5MSY/3r0zduLU1Bq3EocDPBGxpbMEYkzIdNzxN20Q
 
36
y6URH/lUlhekPt8mNjY943rUWtT9mq0E9EUEWHyGsp0CC57rMXWtJ/5CC1RJUxcw
 
37
8WsvBbmR8jMW89F/aU8m6G8uGsa5gc130F78/QY62wmk+63PXANi62p7KnDAsAsY
 
38
3H3d2CXvAnQaHUAvZMx/GPxj0rDZckRSrWAQvz3UnczNShx3cNijD9quuv1JNF73
 
39
SxVy4PPBRznpeoyZ4ZKP2u1TivRqhCyy5Nm8YOt53SliXhAhb9JDqak/L+LS0txS
 
40
vgP9kPjF5hSK4iwqibnx
 
41
=BR31
 
42
-----END PGP SIGNATURE-----