~ubuntu-branches/debian/squeeze/ia32-libs/squeeze

« back to all changes in this revision

Viewing changes to srcs/libxml2_2.7.8.dfsg-2+squeeze8.dsc

  • Committer: Package Import Robot
  • Author(s): Thijs Kinkhorst, curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high, curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low, curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high, libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high, nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high, nss (3.12.8-1+squeeze7) squeeze-security; urgency=high
  • Date: 2014-01-31 09:19:46 UTC
  • Revision ID: package-import@ubuntu.com-20140131091946-z2j1eo8mxt7r703f
Tags: 20140131
* Packages updated

[ curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high ]

* Fix re-use of wrong HTTP NTLM connection as per CVE-2014-0015
  http://curl.haxx.se/docs/adv_20140129.html
* Set urgency=high accordingly

[ curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low ]

* Disable host verification too when using the --insecure option
  (#729965)

[ curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high ]

* Fix OpenSSL checking of a certificate CN or SAN name field when the
  digital signature verification is turned off as per CVE-2013-4545
  http://curl.haxx.se/docs/adv_20131115.html
* Set urgency=high accordingly

[ libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix cve-2013-2877: out-of-bounds read when handling documents that end
  abruptly.

[ nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix CVE-2013-5607: integer overflow on 64 bit systems

[ nss (3.12.8-1+squeeze7) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Add CVE-2013-5605.patch.
  CVE-2013-5605: Null_Cipher() does not respect maxOutputLen; allowing
  remote attackers to cause a denial of service or possibly have
  unspecified other impact via invalid handshake packets.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
-----BEGIN PGP SIGNED MESSAGE-----
 
2
Hash: SHA512
 
3
 
 
4
Format: 1.0
 
5
Source: libxml2
 
6
Binary: libxml2, libxml2-utils, libxml2-dev, libxml2-dbg, libxml2-doc, python-libxml2, python-libxml2-dbg
 
7
Architecture: any
 
8
Version: 2.7.8.dfsg-2+squeeze8
 
9
Maintainer: Debian XML/SGML Group <debian-xml-sgml-pkgs@lists.alioth.debian.org>
 
10
Uploaders: Mike Hommey <glandium@debian.org>
 
11
Homepage: http://xmlsoft.org/
 
12
Standards-Version: 3.9.0.0
 
13
Vcs-Browser: http://git.debian.org/?p=debian-xml-sgml/libxml2.git
 
14
Vcs-Git: git://git.debian.org/debian-xml-sgml/libxml2.git
 
15
Build-Depends: debhelper (>= 7.0.50~), zlib1g-dev | libz-dev, python-all-dev (>= 2.3.5-11), python-all-dbg, python-support (>= 0.3), autotools-dev, libreadline-dev | libreadline5-dev, binutils (>= 2.14.90.0.7), dpkg-dev (>= 1.14.9), perl
 
16
Checksums-Sha1: 
 
17
 bf481743478da6899a65507a34b67731466960dd 3509930 libxml2_2.7.8.dfsg.orig.tar.gz
 
18
 7601ae92005830628c9e4c44a3249d91b256f94f 123244 libxml2_2.7.8.dfsg-2+squeeze8.diff.gz
 
19
Checksums-Sha256: 
 
20
 9f5262963fda356708903b42ff862a816c714582d0cf41477a8b3839945f0e43 3509930 libxml2_2.7.8.dfsg.orig.tar.gz
 
21
 b987e06252e7f8eb9d9d6f8906a120801d7a39f2eac8383b975b5bc80c97f16d 123244 libxml2_2.7.8.dfsg-2+squeeze8.diff.gz
 
22
Files: 
 
23
 116fd86aa1b392dfe38d6b17613deebb 3509930 libxml2_2.7.8.dfsg.orig.tar.gz
 
24
 a5c55a73e8fa67a4155617cae6a29dc3 123244 libxml2_2.7.8.dfsg-2+squeeze8.diff.gz
 
25
 
 
26
-----BEGIN PGP SIGNATURE-----
 
27
Version: GnuPG v1.4.15 (GNU/Linux)
 
28
 
 
29
iQQcBAEBCgAGBQJSWjSGAAoJELjWss0C1vRz0Yof/0HIdWpred7CCn9EpBwmvzLt
 
30
zIyhDQkenDqtoYc14iENrBOe/F/UwaJcw40sSgPynf22E0axSqMQtPssRV0CizqP
 
31
jJY13xFU7J3UVUdk9sd2MJpkBDXb3Bocud94orRaWt1nU4aQIy+xBFAe8VeBNVW7
 
32
ciSvfrgTBjqcoLJ9rhzsWRBblfs4Ur2Pf+vo16q1+yhiRpwlT49TN5lyjmx4w0A8
 
33
iwY9jWuslsuj3IE1tXnJU4SgSjyYwvoipmBWanfueKnU6LHci7rwuQDy8CSrAvJY
 
34
UMFKTqvbxQTZ5CHT03H4iic09xjOxyF3NywjyzbL/vDL04VLd7dmifrS8gTBEo6f
 
35
P3GpN8ZcOYqxaBsD66Kdtq+I8AMC9mh0OfDnEBzWjFBl5Q5qkZOsTEAYHvSWFZ5K
 
36
WRhaUe+IXmcNM7SZYXJgrwNX8FyFGquYaLecYGA/IbDyYMhkwRbQmqfXivKzGirT
 
37
RoFGLDVD1pJldUcRmWiFXhscnfen3HYZ781mceImvnLcawg/gSepRRcsLVJYNDQa
 
38
X2MbyzmmhMIlA1sv3WHfnaQO4iTDjZ8xZvuZx9UZYDXJ/74wVQa8/XeKv4RzbH0m
 
39
paKtrR5d8rz1NPFPjyZ/4Wcmgb5Ka5ll7C7DElmVCjdihe4xvu0zvOE8e1OR6UwT
 
40
jzmYn39d7aKrpMBk3Jl7YvVvTGjlBw/0MRW7Alz0lSnA47avsTG/xZEnm6oEHCXx
 
41
UkdjM/TW68l4FfkTS+6X02lOWRdnwF79mck6uknoGam2Aez/NsyX7awpIvSeQoj9
 
42
w9UUSekG6h/ru0FZwkQIxj9TCZZ6bFcUNuICmZgvufpew16h2ChMLR6Ra6VExDjF
 
43
+Y7ATmIkt92htT1Nnn5pLKKLR9SOe+4JZnWRxI+q3WUtYvxFz6eywx54m2UaBqqN
 
44
ZU10484T+GSY3JKIG+WItwx/NNVl5f2ONQEO/dU5Dec8JCxkRvq+RclZqRaB9/Y6
 
45
iHovV9GtOdqbeR9yb23YLMUGm95R+dewAGNsGXDtm7uN+LqRV6YP5ccmdN8hcj0R
 
46
3IWAPXVS5/XlbdOx5ziIxRin+ljzgbSVJbr1gF8A2mkjluRkgXUdYtEBJW03xBVO
 
47
uuMT9vGw0n+KoCfld9aix1VZ14Ou2fl6rOVIRgoI2V7gOSzijCLp459+z2jmQx0M
 
48
92FAUyGNdn0ZGbqmL1RyGJ5zCgHHp4UYWM2AGCIUElN1a5S9s3p5Ysz2FnnOT4Wk
 
49
hjR/Qpdb9dYAXZP5Sc8TtAEbY1HjNfllVkbzdipKm6Ulipfxu2di8B5dFRyMp7q2
 
50
+PvDHl5DX8aYEnXE8L8ZAM5N+IYgZErY7G6mMkXhBtjVeHr16Z+6VyAA3hMsVdc=
 
51
=hyMs
 
52
-----END PGP SIGNATURE-----