~ubuntu-branches/debian/squeeze/ia32-libs/squeeze

« back to all changes in this revision

Viewing changes to srcs/nss_3.12.8-1+squeeze7.dsc

  • Committer: Package Import Robot
  • Author(s): Thijs Kinkhorst, curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high, curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low, curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high, libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high, nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high, nss (3.12.8-1+squeeze7) squeeze-security; urgency=high
  • Date: 2014-01-31 09:19:46 UTC
  • Revision ID: package-import@ubuntu.com-20140131091946-z2j1eo8mxt7r703f
Tags: 20140131
* Packages updated

[ curl (7.21.0-2.1+squeeze7) squeeze-security; urgency=high ]

* Fix re-use of wrong HTTP NTLM connection as per CVE-2014-0015
  http://curl.haxx.se/docs/adv_20140129.html
* Set urgency=high accordingly

[ curl (7.21.0-2.1+squeeze6) oldstable-security; urgency=low ]

* Disable host verification too when using the --insecure option
  (#729965)

[ curl (7.21.0-2.1+squeeze5) oldstable-security; urgency=high ]

* Fix OpenSSL checking of a certificate CN or SAN name field when the
  digital signature verification is turned off as per CVE-2013-4545
  http://curl.haxx.se/docs/adv_20131115.html
* Set urgency=high accordingly

[ libxml2 (2.7.8.dfsg-2+squeeze8) oldstable-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix cve-2013-2877: out-of-bounds read when handling documents that end
  abruptly.

[ nspr (4.8.6-1+squeeze1) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Fix CVE-2013-5607: integer overflow on 64 bit systems

[ nss (3.12.8-1+squeeze7) squeeze-security; urgency=high ]

* Non-maintainer upload by the Security Team.
* Add CVE-2013-5605.patch.
  CVE-2013-5605: Null_Cipher() does not respect maxOutputLen; allowing
  remote attackers to cause a denial of service or possibly have
  unspecified other impact via invalid handshake packets.

Show diffs side-by-side

added added

removed removed

Lines of Context:
 
1
-----BEGIN PGP SIGNED MESSAGE-----
 
2
Hash: SHA512
 
3
 
 
4
Format: 3.0 (quilt)
 
5
Source: nss
 
6
Binary: libnss3-1d, libnss3-tools, libnss3-dev, libnss3-1d-dbg
 
7
Architecture: any
 
8
Version: 3.12.8-1+squeeze7
 
9
Maintainer: Maintainers of Mozilla-related packages <pkg-mozilla-maintainers@lists.alioth.debian.org>
 
10
Uploaders: Mike Hommey <glandium@debian.org>
 
11
Homepage: http://www.mozilla.org/projects/security/pki/nss/
 
12
Standards-Version: 3.9.1.0
 
13
Vcs-Browser: http://git.debian.org/?p=pkg-mozilla/nss.git
 
14
Vcs-Git: git://git.debian.org/git/pkg-mozilla/nss.git
 
15
Build-Depends: debhelper (>= 7.0.50~), dpkg-dev (>= 1.13.19), libnspr4-dev (>= 4.8.6), zlib1g-dev, libsqlite3-dev (>= 3.3.9)
 
16
Checksums-Sha1: 
 
17
 4469e79a806494c12a297213392699ca41c2c899 5951955 nss_3.12.8.orig.tar.gz
 
18
 e8c6380d4cbeef4650db7e935bccce8744c2ee60 113770 nss_3.12.8-1+squeeze7.debian.tar.gz
 
19
Checksums-Sha256: 
 
20
 9178ce29749e8d09cb93ce70c38f1c2c10630926b2bb7259c7dfff42cb090c14 5951955 nss_3.12.8.orig.tar.gz
 
21
 1a7ded48dca4ae7a9d60e134e9549f3ee30990ecabc4ccae4521b95771242e49 113770 nss_3.12.8-1+squeeze7.debian.tar.gz
 
22
Files: 
 
23
 40bf1bb0c7567827d3768d1fc6081100 5951955 nss_3.12.8.orig.tar.gz
 
24
 f755fdd970862a4646958c046584de56 113770 nss_3.12.8-1+squeeze7.debian.tar.gz
 
25
 
 
26
-----BEGIN PGP SIGNATURE-----
 
27
Version: GnuPG v1.4.15 (GNU/Linux)
 
28
 
 
29
iQIcBAEBCgAGBQJSknZnAAoJEAVMuPMTQ89EQSQP/R4pSWVPCZw6GOwpV5VuHSx2
 
30
JyfxiBbALG7SPflfkVyF99gWkW+CAvIX0tydCdMpHPwU+0zueNMop+ioa1CU+3sJ
 
31
FXsKs7T+mHsEZt6Zz9XWm9aVM4QABBBady7Od+heqxac6GLRE6608hIYvOeo05+W
 
32
pYPTuSpueBfis+F6RCUb4td/90+eMU3wWplVdWyhAcMaduyZWKTwfBnwzXHnWvg0
 
33
+X/aF7rCFCwQkDgYmdCW2xrPdQmBkunVorL0drLGzNN5Tpxyi8biIBhHIMqANrsp
 
34
jg/irtCRLXccP8bWb0YcjaXhJndNwW+c0gTs+b3zTELeCzIcKNEtEhpkw8JYDN2n
 
35
J0fPZEoR6GUhVEGZXDATz1hg0fRBjGtKfgy2Lek3Q3Kq+MPDbzRtSdNY2sdyGB61
 
36
ebg2MI4kNqVlxOtKJ7e/XXTdnw2SnOSVO1MDPVkkEv8NfHAb5achxt94/yRgKXq4
 
37
sVKLtBBH17kBC0QpsRYtcoFhVga3yQww2JyD1fjR4kZbFgWJ8vleAwV0cQTaCXUs
 
38
tvPgI9623uDRKsnHXU12weI1I7CsdC5ReibqFyIpWz5WAdmlDB0/lFfgx+3dqNC7
 
39
oSMLEBvm17/UvrLnKQV4fgz67Tioxh7ndCGXPNEfNDArVTaqyWBdGznbIwT9vRpO
 
40
M6OmiW1KaCpMR6llzw5C
 
41
=Cn9L
 
42
-----END PGP SIGNATURE-----