-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 26 Apr 2015 18:07:38 +0200 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl4-openssl-dev libcurl4-gnutls-dev libcurl3-dbg Architecture: source i386 Version: 7.21.0-2.1+squeeze12 Distribution: squeeze-lts Urgency: high Maintainer: Ramakrishnan Muthukrishnan <rkrishnan@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: curl - Get a file from an HTTP, HTTPS or FTP server libcurl3 - Multi-protocol file transfer library (OpenSSL) libcurl3-dbg - libcurl compiled with debug symbols libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS) libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS) libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL) Changes: curl (7.21.0-2.1+squeeze12) squeeze-lts; urgency=high . * Non-maintainer upload by the Squeeze LTS Team. * Fix re-using authenticated connection when unauthenticated as per CVE-2015-3143 http://curl.haxx.se/docs/adv_20150422A.html * Fix Negotiate not treated as connection-oriented as per CVE-2015-3148 http://curl.haxx.se/docs/adv_20150422B.html Checksums-Sha1: 59c12e9f6585b72d54bc6e6346cd0f5a011a044c 2287 curl_7.21.0-2.1+squeeze12.dsc d0e5a1184315b9abb9cc54d77d4a0200526f046d 2714501 curl_7.21.0.orig.tar.gz 266124058ed78c43e6eb869255b5d2e64f6f6460 111174 curl_7.21.0-2.1+squeeze12.debian.tar.gz 214a585e30590348d817523c00ff5c2de1a88f61 228516 curl_7.21.0-2.1+squeeze12_i386.deb db2d8af832c53a8c644e4d1cef3f8b10e6fd0266 282208 libcurl3_7.21.0-2.1+squeeze12_i386.deb 68f74cfda4f116e122c6b2b0b41a7c9773316d6e 261846 libcurl3-gnutls_7.21.0-2.1+squeeze12_i386.deb 0e2365d9d47e405981f74371e54f8e70c7970313 1061194 libcurl4-openssl-dev_7.21.0-2.1+squeeze12_i386.deb 29beacaf6facc6958c3d5dd00cc230dbe0dfe7ce 1040990 libcurl4-gnutls-dev_7.21.0-2.1+squeeze12_i386.deb cb465b756ee9ee3ecc62c1cd021210baa049abab 112056 libcurl3-dbg_7.21.0-2.1+squeeze12_i386.deb Checksums-Sha256: b2e6dadfab0ba019e7ced8ab4a220f46eb66ec02258dd614d9a3fc370a316807 2287 curl_7.21.0-2.1+squeeze12.dsc b3e2047c6f70eb321557af980a9554f0a98fb122d9636f1c98833262eed8de1d 2714501 curl_7.21.0.orig.tar.gz 4e692f6d0feead3608cce26f2ca54069d042c14df8c83eb76aa77482e10ccbb3 111174 curl_7.21.0-2.1+squeeze12.debian.tar.gz f089d4a2dd39adaf6377f926b28edb942daed12690005630ebda60773308e013 228516 curl_7.21.0-2.1+squeeze12_i386.deb 4231118827e7d694e611b440a1bc52d9253b893eec016f4ca6a5244367c5a57a 282208 libcurl3_7.21.0-2.1+squeeze12_i386.deb f44b07d9e61b94d32bf23e4656db04acd1e0452d8ccc53bb40e6475190e1fb19 261846 libcurl3-gnutls_7.21.0-2.1+squeeze12_i386.deb 2395b55ce3c50e7077cf151cc249df7ab67753631006282dc38884c6f0938e9c 1061194 libcurl4-openssl-dev_7.21.0-2.1+squeeze12_i386.deb 3a2cbf580841954a386075f51be3ccaecdd52d480488c55d7a990abfdfc0c6c2 1040990 libcurl4-gnutls-dev_7.21.0-2.1+squeeze12_i386.deb ed31e11277b318555f3af79c477576bcb480c2abf87c7e80dd8e14b7288da9a3 112056 libcurl3-dbg_7.21.0-2.1+squeeze12_i386.deb Files: 0e10e49cd3982fc6c8a2c6583305f616 2287 web optional curl_7.21.0-2.1+squeeze12.dsc 6dfb911a254a1b5ca8b534b98f2196aa 2714501 web optional curl_7.21.0.orig.tar.gz 84ed53b7ba997f76ba224c5e3fc2b25a 111174 web optional curl_7.21.0-2.1+squeeze12.debian.tar.gz 93cef6b5e15ce1b91bb72f9d04808ed0 228516 web optional curl_7.21.0-2.1+squeeze12_i386.deb b9da8871d66a517ef3f4e83383640395 282208 libs optional libcurl3_7.21.0-2.1+squeeze12_i386.deb e1845a438a43df086ad65bcf18ed6861 261846 libs optional libcurl3-gnutls_7.21.0-2.1+squeeze12_i386.deb 8a43da7145ef029388773f40237c2ca1 1061194 libdevel optional libcurl4-openssl-dev_7.21.0-2.1+squeeze12_i386.deb ac8e7cb950562298a6417f801e69d43f 1040990 libdevel optional libcurl4-gnutls-dev_7.21.0-2.1+squeeze12_i386.deb 6d86286cd46056e72457277fdd2eb36f 112056 debug extra libcurl3-dbg_7.21.0-2.1+squeeze12_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQJ8BAEBCgBmBQJVQR2uXxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXQ2MjAxRkJGRkRCQkRFMDc4MjJFQUJCOTY5 NkZDQUMwRDM4N0I1ODQ3AAoJEJb8rA04e1hHdq8P/i91XxU6WaAg+hoK9zB68eIQ losneBjh5nd0IdUxAze9wBIeg2SD0GMoGbbV0Xn6HFNn8kTl3Z2kU2sDXjYXPiUM J1dPKrabz5jyRPupSduVH0ECjaDeqR1StZstukynYpBjBbVr505BP6+UYovR3NqT cw1VzGM5aovQXvWf+C4jP+ZGTBUxIg9RGVY9OfbYLeEib7EaKfD9zsdr6vz5F3hO NSb3P9IS5yBsEGoSXRF2DfPI8lmiQgplbX+vy8bfx+9eatO+E0AmrK6cwvKvu9qU QIbynfmK9NdGi9b1HB4vXs9934kj1+QzAbCwu17eEpN0b5ZNRNz9Z+jVXAGX90C+ ey/DaVMA1ESTh7eRkXAhnF02mneDMT1DDQ34gxOnX8aZfKEOewmcP5IQYv6wopHI TBwpNyZGyI+GvZm98TADPd1haUyIL+do5aL+sp+APVS39vUjmvUJhU7EV59uOopT /uaHYGMsakDf3fq4DRAjlxsmI9HX/QCkZ7nPBqK5vCSNK6en81MEhUqhCS55TS1O zrwDH7Wy75GvvgoYwgmp5ptNr+r3XzFeZrKR5yM2lYsAiJjrWQcKCmn1gi7FEMtJ WLaPr4EgMzsYS+vlqoi4aGYxxPIUCFF1CAYkr/YqKCLTTBSzQRs6B/dJA6nU0PnV UnDdTJhzaS0fZ7dKrppy =6LAU -----END PGP SIGNATURE-----