-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 19 Jan 2020 00:15:10 +0100 Source: openconnect Architecture: source Version: 7.08-1+deb9u1 Distribution: stretch-security Urgency: high Maintainer: Mike Miller <mtmiller@debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 940871 Changes: openconnect (7.08-1+deb9u1) stretch-security; urgency=high . * Non-maintainer upload by the Security Team. * Close HTTPS connection on failure returns from process_http_response() * Fix buffer overflow with chunked HTTP handling (CVE-2019-16239) (Closes: #940871) Checksums-Sha1: 35cd51bebd2a0e7ec790b04bac48cfc742da3483 2739 openconnect_7.08-1+deb9u1.dsc ac106457c6a94808096552b6dc2037ad4cce7858 1686133 openconnect_7.08.orig.tar.gz de32be3c609c46b7cd6faa9a272ca8ba18ac306f 177252 openconnect_7.08-1+deb9u1.debian.tar.xz Checksums-Sha256: a410295c8d3dd6770424a462430cab272171a2e52d1102be374a332dfcfaf039 2739 openconnect_7.08-1+deb9u1.dsc 1c44ec1f37a6a025d1ca726b9555649417f1d31a46f747922b84099ace628a03 1686133 openconnect_7.08.orig.tar.gz 286dc3aef7029997000a44c945e77b3892a43b051b2bc3ce855a4ee91d373d9f 177252 openconnect_7.08-1+deb9u1.debian.tar.xz Files: 5a6168e55b40131d340233655d432242 2739 net optional openconnect_7.08-1+deb9u1.dsc ca2ca1f61b8515879b481dcf6ed4366b 1686133 net optional openconnect_7.08.orig.tar.gz 3b57e04d4bf25e105855d450a901c7ba 177252 net optional openconnect_7.08-1+deb9u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAl4jkphfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89EtFoP/0lDXTgaQ7beyllhStJzNi+UwNON2bX2 ePkXXOHnpm/h5kzgmUfm3kG18lEVOWjvjQlJU32eMvg4val6BdIeDpk0NwQB7gkl F7s1j6oZ3u6q+2S9mTWSDvpnfaiCJLHVnvuSxV7K4mzpskPoYMl2Qg4mpLfhlAhz /YFtJQu4R6cTaAtFisbmjFNMSZKTLCpYiUr1kRmBcEJRXPIAoVzB66cltfdii5Vo /Q0EriJ+s/50Oz+yBXOwz5791TxlbVvb0v7wLNxuzuLMqYoN3lDk5saKgkyN4Q8c fNtlmECJOvMeKA6Ncnyq/nP9/LijC6JCUqzyljTzm0Ksf9K2P792dUHembDEIYo0 1m2pZ4RkEsmnJbMKs4l+BJIRxYfkyLFhhEAM9cpxSLUBZAulTF64FMOzgrRgWxHT Yh9UQ9GUmMZ9DniWVJeiAYSBTYBxpIG9MwVoReBJaZSAuLFjcPf7BI4Orr4PWL1z pDMVVNDQsidw43O0jUg1O7q1wNFvEBndO6vDEx4AmNHH1M01chaK+quWcVHNX/Yi Si/JFb/ZLgeRcwtdvWqLip2NC7WXmstccjbZ5iAcq3BDc93GLWvThwumYT7bzA57 PP0GafSK+SDo1mlJFqRIBgoTlyO1qlfurtL6df1KZmYZeL2sBvpqiJByEs+cqRs1 v82mU3k8s4P5 =4uzr -----END PGP SIGNATURE-----