-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 27 Oct 2019 10:03:02 +0200 Source: proftpd-dfsg Binary: proftpd-basic proftpd-dev proftpd-doc proftpd-mod-mysql proftpd-mod-pgsql proftpd-mod-ldap proftpd-mod-odbc proftpd-mod-sqlite proftpd-mod-geoip Architecture: source amd64 all Version: 1.3.5e+r1.3.5-2+deb8u4 Distribution: jessie-security Urgency: high Maintainer: ProFTPD Maintainance Team <pkg-proftpd-maintainers@lists.alioth.debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: proftpd-basic - Versatile, virtual-hosting FTP daemon - binaries proftpd-dev - Versatile, virtual-hosting FTP daemon - development files proftpd-doc - Versatile, virtual-hosting FTP daemon - documentation proftpd-mod-geoip - Versatile, virtual-hosting FTP daemon - GeoIP module proftpd-mod-ldap - Versatile, virtual-hosting FTP daemon - LDAP module proftpd-mod-mysql - Versatile, virtual-hosting FTP daemon - MySQL module proftpd-mod-odbc - Versatile, virtual-hosting FTP daemon - ODBC module proftpd-mod-pgsql - Versatile, virtual-hosting FTP daemon - PostgreSQL module proftpd-mod-sqlite - Versatile, virtual-hosting FTP daemon - SQLite3 module Changes: proftpd-dfsg (1.3.5e+r1.3.5-2+deb8u4) jessie-security; urgency=high . * Non-maintainer upload by the LTS team. * CVE-2019-18217 remote unauthenticated denial-of-service due to incorrect handling of overly long commands Checksums-Sha1: aaaea9792516886418fb6634829deff4de04bcbe 2993 proftpd-dfsg_1.3.5e+r1.3.5-2+deb8u4.dsc 7eef9570efe6c82c47b76163162432b9ba37f81d 7432816 proftpd-dfsg_1.3.5e+r1.3.5.orig.tar.gz 2d5728a4713beae62b4b408235b9bce0475ef4e7 97212 proftpd-dfsg_1.3.5e+r1.3.5-2+deb8u4.debian.tar.xz ace36fe9cf6b8708ed07b390de887166032fec66 2459156 proftpd-basic_1.3.5e+r1.3.5-2+deb8u4_amd64.deb d9c3acf5d70500923367bfb06a09e28e620093f3 958000 proftpd-dev_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 5948fb5f98c6742bfe4090162f975bd9c662efa5 476784 proftpd-mod-mysql_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 5c86a7b41c99380d05944899ecb84e4eb8ec8f1c 476384 proftpd-mod-pgsql_1.3.5e+r1.3.5-2+deb8u4_amd64.deb ecc78572e3d590c19dcba22b17fbd28970271a2c 484600 proftpd-mod-ldap_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 473318cd5f132fae18932dc93868ee6e2d053c74 477716 proftpd-mod-odbc_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 6f42028a36ef934b902fb61393f7a4c479b973dc 475838 proftpd-mod-sqlite_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 3842f00efdfc72fc7ed94f3ad3ddb2c52f35cf0a 477434 proftpd-mod-geoip_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 121426261a0521ade6b90c063a19b79008bd687f 949906 proftpd-doc_1.3.5e+r1.3.5-2+deb8u4_all.deb Checksums-Sha256: a894301114aeb49abc662100ed4a3f89eb634bfb2227963badbe376306122da9 2993 proftpd-dfsg_1.3.5e+r1.3.5-2+deb8u4.dsc 8ac3104658b9ce7cf308d9abc3d4b38168f0a7fdc25c1d88c565dedf319ba287 7432816 proftpd-dfsg_1.3.5e+r1.3.5.orig.tar.gz 7d216fba8d6ae17b1a3ab59457714b89df7ac6b376c31bb2820187528e130020 97212 proftpd-dfsg_1.3.5e+r1.3.5-2+deb8u4.debian.tar.xz f4a7e57028202e5e4887ee37750bb8010157c5f80887a05b33f52570848a47fc 2459156 proftpd-basic_1.3.5e+r1.3.5-2+deb8u4_amd64.deb a02f181481caff38c0a3c3ce2c560ed05791a4dc99a242e420fb2bcf0099452f 958000 proftpd-dev_1.3.5e+r1.3.5-2+deb8u4_amd64.deb b87127c67ebd161c5faabd3893edcd95574d217f1c3233a93264742a5ea9b8bd 476784 proftpd-mod-mysql_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 86edc7dd6455ce0cf4589ee89c3fde70b71ced79d17859cdad968ce303cf5820 476384 proftpd-mod-pgsql_1.3.5e+r1.3.5-2+deb8u4_amd64.deb a58a5c15f4ad3d13542ed9f11d42a40efc66733587b46bb3f70d7fb471b77c97 484600 proftpd-mod-ldap_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 058399ca206e746c3e58dae7c69d7d57bd02dd8799261e0c7d5ecf09e338817d 477716 proftpd-mod-odbc_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 901acaf7a3509acdaa3fb320a1a33a8b08c76be6d4728a0c0def192e65e29988 475838 proftpd-mod-sqlite_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 70498db830c9dabedb098dfe61731f2d6bb6571b3365d605f3ff7561293a1817 477434 proftpd-mod-geoip_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 95305fe132c19e538e542b1600802a2d5af6be11a04c7fef2d120fe3f1b6f93a 949906 proftpd-doc_1.3.5e+r1.3.5-2+deb8u4_all.deb Files: c0dd6c1e1cc2138affb094ed2aa784c8 2993 net optional proftpd-dfsg_1.3.5e+r1.3.5-2+deb8u4.dsc dd7b56fbba49bd47dc1eb5344c6a7ef8 7432816 net optional proftpd-dfsg_1.3.5e+r1.3.5.orig.tar.gz 158d781510e3eb7c2ab2c7761fa69b57 97212 net optional proftpd-dfsg_1.3.5e+r1.3.5-2+deb8u4.debian.tar.xz 2977efd00b66165a5fe6c06466244f30 2459156 net optional proftpd-basic_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 668c6ae8feff273a01a01054b2a2bf05 958000 net optional proftpd-dev_1.3.5e+r1.3.5-2+deb8u4_amd64.deb ba413c7569786184f06849c418ea9be0 476784 net optional proftpd-mod-mysql_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 8e0092ede88622faaf2695a84fb1ed46 476384 net optional proftpd-mod-pgsql_1.3.5e+r1.3.5-2+deb8u4_amd64.deb b0938219330304a084a4890acdc87006 484600 net optional proftpd-mod-ldap_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 9d69d8833079a9ecabf4d7f6c6d6a0bc 477716 net optional proftpd-mod-odbc_1.3.5e+r1.3.5-2+deb8u4_amd64.deb cd8373c8c2016310a264024701f67023 475838 net optional proftpd-mod-sqlite_1.3.5e+r1.3.5-2+deb8u4_amd64.deb fde8efc16e67745fd88fa14d1c274757 477434 net optional proftpd-mod-geoip_1.3.5e+r1.3.5-2+deb8u4_amd64.deb 3004a5cf2548e1a9395f6f6deb09d6fc 949906 doc optional proftpd-doc_1.3.5e+r1.3.5-2+deb8u4_all.deb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAl21vyxfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR1g/D/wJ/EmNjF++sywPJtpzzrkc2D2Hwmo7 A61XHboasAQggJbEFUuvI5OVgoAwX9nSvwXhreZe8bcrWHp9gRXWOuHGIezisgg7 2Sb0vxYzUH2xIx1tOqmBgeR0PFlugpfnY1bnJBubXld0xK5vBfFIaUnYPZn9V2lj /r6fA8QoSRe+2ox0mrnKG62gIhyj6qSWiCrtX5CvEFX1yuwkoFbZhAKAxGi3xlGZ U39KUZK0n6TlozfSh27sHTiW/oYnI7pQgA2E1rQ7GtM1SviF3KjgeC8lsvT+2GSc RiNGjgq4WE7Bqvb5Bx7M+agaBzR1TpcoJGMnrctyqrx4bMR/RmwnSEfxj1CfA/Qt homo2c/aw9Nl80FSBCnuoGai8jUadSk9pmpkIvert1sdsGt/EXVmA/MdHbRAjzTQ tfryC5X0u7GLjc/NxU/hykEbWrpJG/ZYa/yBZ6NPv8RHGYtUaaO1yX5XwT7pljwr e+m14FvAks2lFxSBtrE9/bWvBi4VqjHvZZXstVw+Xpafq5QUioab9aZdDExXztjp TOhzA80BGyfDOn2WNP1/mGCafW8WiB9JihbD1hLWNQFVozZwIHay/IwU2R4CD2qv 29KOj+Z6uAdCqU130y+5UrbGSRM82MnOk7R2ROHHL60at8HqbDgRI+Xc+yezuAd+ 3zOB+TsTObfa4g== =BUZ2 -----END PGP SIGNATURE-----