-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 6 May 2008 12:25:10 +0000 Source: speex Binary: speex-doc libspeex-dev speex libspeex1 Architecture: source all i386 Version: 1.1.12-3etch1 Distribution: stable-security Urgency: high Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.org> Changed-By: Steffen Joeris <white@debian.org> Description: libspeex-dev - The Speex Speech Codec libspeex1 - The Speex Speech Codec speex - The Speex Speech Codec speex-doc - Documentation for speex Changes: speex (1.1.12-3etch1) stable-security; urgency=high . * Non-maintainer upload by the security team * Fix arbitrary code execution due to insufficient boundary check on a header structure of a speex stream (Fixes: CVE-2008-1686) Files: ab141143903f5ff0b32e42c413ba3bd5 878 sound optional speex_1.1.12-3etch1.dsc 589686ba95740aa4a3e5549f985b2a1e 16595 sound optional speex_1.1.12-3etch1.diff.gz 9bda06707fdacf89ce47e3b16184da7e 1765026 doc optional speex-doc_1.1.12-3etch1_all.deb 878ca5f27331a9fe214c070a058d432a 25424 sound optional speex_1.1.12-3etch1_i386.deb e36b4b453a1c9810c7422c0e9174780e 76400 libs optional libspeex1_1.1.12-3etch1_i386.deb 3ae87c42c88ea0299e34d34e40f59adf 93212 libdevel optional libspeex-dev_1.1.12-3etch1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFIJbRK62zWxYk/rQcRAlUBAKDGPo3dO5ic+9sFY+W1IMO4J4/UKQCcDoZB WTFldtG7xcvcUA/iz8EJJbQ= =P/tS -----END PGP SIGNATURE----- Accepted: libspeex-dev_1.1.12-3etch1_i386.deb to pool/main/s/speex/libspeex-dev_1.1.12-3etch1_i386.deb libspeex1_1.1.12-3etch1_i386.deb to pool/main/s/speex/libspeex1_1.1.12-3etch1_i386.deb speex-doc_1.1.12-3etch1_all.deb to pool/main/s/speex/speex-doc_1.1.12-3etch1_all.deb speex_1.1.12-3etch1.diff.gz to pool/main/s/speex/speex_1.1.12-3etch1.diff.gz speex_1.1.12-3etch1.dsc to pool/main/s/speex/speex_1.1.12-3etch1.dsc speex_1.1.12-3etch1_i386.deb to pool/main/s/speex/speex_1.1.12-3etch1_i386.deb