-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 07 Nov 2019 11:54:30 +0530 Source: libssh2 Binary: libssh2-1 libssh2-1-dev libssh2-1-dbg Architecture: source amd64 Version: 1.4.3-4.1+deb8u6 Distribution: jessie-security Urgency: medium Maintainer: Mikhail Gusarov <dottedmag@debian.org> Changed-By: Abhijith PA <abhijith@debian.org> Description: libssh2-1 - SSH2 client-side library libssh2-1-dbg - SSH2 client-side library (debug package) libssh2-1-dev - SSH2 client-side library (development headers) Closes: 943562 Changes: libssh2 (1.4.3-4.1+deb8u6) jessie-security; urgency=medium . * Non-maintainer upload by the Debian LTS Team. * Fix CVE-2019-17498: SSH_MSG_DISCONNECT logic in packet.c has an integer overflow in a bounds check (Closes: #943562) Checksums-Sha1: 9a8548e6afec27e522d0f922cec4b0603c7628ab 1928 libssh2_1.4.3-4.1+deb8u6.dsc c27ca83e1ffeeac03be98b6eef54448701e044b0 685712 libssh2_1.4.3.orig.tar.gz c8c8127cec1334a6c0e6874f015eeecdf6eea87a 22832 libssh2_1.4.3-4.1+deb8u6.debian.tar.xz 89862bf8b7b5e4afa25375315a0fb85f01c5d294 128440 libssh2-1_1.4.3-4.1+deb8u6_amd64.deb e7d93310c4fe866bd1e8e1da2db2eb1ede48b5ed 293654 libssh2-1-dev_1.4.3-4.1+deb8u6_amd64.deb 5b731b3904553597947555f2e90376b7eb8cee7c 235072 libssh2-1-dbg_1.4.3-4.1+deb8u6_amd64.deb Checksums-Sha256: 472132e47027254028064c6e7ff9e08f3788bdf3a7d9126a31a60fc4d4318601 1928 libssh2_1.4.3-4.1+deb8u6.dsc eac6f85f9df9db2e6386906a6227eb2cd7b3245739561cad7d6dc1d5d021b96d 685712 libssh2_1.4.3.orig.tar.gz a4784e7a346017251f032e67efc8b5a293189e2a2e25f7c2c0df87f1539d7d99 22832 libssh2_1.4.3-4.1+deb8u6.debian.tar.xz 1f0a01c4ba1434ec2e9c41fc0dc2d79685d8cdce0105be59a3f0aec96e48c333 128440 libssh2-1_1.4.3-4.1+deb8u6_amd64.deb 7e1421e616246574517ff20615dbf1df7d0e19a21fab44e12b3c7c46481c05d4 293654 libssh2-1-dev_1.4.3-4.1+deb8u6_amd64.deb 20e8ec190bc2acbc7d1d1b2c4ec503bf4a85b255db147c2af370516ae8947dbe 235072 libssh2-1-dbg_1.4.3-4.1+deb8u6_amd64.deb Files: 2c3896a575ce8f98542b58d7192e99f8 1928 libs optional libssh2_1.4.3-4.1+deb8u6.dsc 071004c60c5d6f90354ad1b701013a0b 685712 libs optional libssh2_1.4.3.orig.tar.gz d4153d47639d1c375c1cc106fd8bd508 22832 libs optional libssh2_1.4.3-4.1+deb8u6.debian.tar.xz f5bfcf019e9e112f6c3a9365de0579cd 128440 libs optional libssh2-1_1.4.3-4.1+deb8u6_amd64.deb c37dd51cc41f60aaf2e5c692531d1daf 293654 libdevel optional libssh2-1-dev_1.4.3-4.1+deb8u6_amd64.deb 686a096d20ccf41327f6012a0920c3f1 235072 debug extra libssh2-1-dbg_1.4.3-4.1+deb8u6_amd64.deb -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEE7xPqJqaY/zX9fJAuhj1N8u2cKO8FAl3IFk8UHGFiaGlqaXRo QGRlYmlhbi5vcmcACgkQhj1N8u2cKO9xVQ/+Mmc2eIJy1doNbgw7iF6qZ/8kmNL6 ktEUnagXojT9S1jw874bQVZSi2FnTMiJn7al1Wd2kKDAf5J+CvxBX4HzptrkBQBR LWZe3jwjLS2hMj/iUd07cQmvpVPrrrqANrPLWfcwyPqg/up+o16HCa6lyALVcDmz QNLusOHvcZcV42b/GXcgbmtVt1fBuaYfKNn3O96rzBeeGF3pCrR47zLrpLQj2+D0 VXf3BACrQJhbwkiTxYfZuBW3Lrdgj4I2m8Bu3REuRKZl7dyv3q2nMBSXHyIFwuKR 7fomggKI7eip5w9Ksmr3AD4XQ/nHcJF9a1o1bE8opTTyaY49Xfw/y3+51n17qZk9 fJ7XSHOo8FNmrSbUXetxjhLT0kmFejFfCtsDcKOonVLBG+x7ZVg1LondFPrtAwAz iGObCr6/QG3W1m2WagEZQ0/AFHnmmyvFfSzu2iCGLPUpX3L3yQ55G4F8QmLHURUa 1EXrD6O9JusDdbEouhgMZ36dKmrIS5x2UMWSgUCUH+Gr1oFO29Y4kLlCWOeFGzeN Qy96ht6dlVgeF0E8YNNIQGfqbxtSAj0cuCCEoH2SN+yIjOzyX0iTy88hCB3nn7Lc rUtiS6UlPjKwEx+B0CHej71RRodsmGK+Dgky+QFBf5SZimyl1kGcWQbtnFRNYj9I 5/H6DDTLH8W/Y70= =r6Ny -----END PGP SIGNATURE-----