-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 3 Feb 2010 13:07:51 +0000 Source: squid Binary: squid squid-cgi squidclient squid-common Architecture: source i386 all Version: 2.6.5-6etch5 Distribution: oldstable-security Urgency: high Maintainer: Luigi Gangitano <luigi@debian.org> Changed-By: Steffen Joeris <white@debian.org> Description: squid - Internet Object Cache (WWW proxy cache) squid-cgi - Squid cache manager CGI program squid-common - Internet Object Cache (WWW proxy cache) - common file squidclient - Command line URL extractor that talks to (a) squid Closes: 534982 Changes: squid (2.6.5-6etch5) oldstable-security; urgency=high . * Non-maintainer upload by the security team * Fix denial of service via invalid DNS header-only packets Fixes: CVE-2010-0308 * Fix denial of service via a crafted auth header with certain comma delimiters (Closes: #534982) Fixes: CVE-2009-2855 Files: 2e53013dd1d22bc98d694c4b0775a715 678 web optional squid_2.6.5-6etch5.dsc f35fba0ebbd63b22786d04c8775aacf6 274283 web optional squid_2.6.5-6etch5.diff.gz 69401a11436668a2e47c1886ed671d97 439698 web optional squid-common_2.6.5-6etch5_all.deb d63eacb8a0dec6db6f789e40bbcbc404 654880 web optional squid_2.6.5-6etch5_i386.deb 6688fcc15664c2eb7c8326bac53188bb 86030 web optional squidclient_2.6.5-6etch5_i386.deb 1a907bd4666d4de8298b99a6b97d8b9c 117372 web optional squid-cgi_2.6.5-6etch5_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAktpd1kACgkQ62zWxYk/rQfpwACfezXjR/f51W3MEwaNO3Sao7r3 Q9IAoJsdaxSIH3+yPtTJdCsXSOQn41OH =AYM8 -----END PGP SIGNATURE----- Accepted: squid-cgi_2.6.5-6etch5_i386.deb to main/s/squid/squid-cgi_2.6.5-6etch5_i386.deb squid-common_2.6.5-6etch5_all.deb to main/s/squid/squid-common_2.6.5-6etch5_all.deb squid_2.6.5-6etch5.diff.gz to main/s/squid/squid_2.6.5-6etch5.diff.gz squid_2.6.5-6etch5.dsc to main/s/squid/squid_2.6.5-6etch5.dsc squid_2.6.5-6etch5_i386.deb to main/s/squid/squid_2.6.5-6etch5_i386.deb squidclient_2.6.5-6etch5_i386.deb to main/s/squid/squidclient_2.6.5-6etch5_i386.deb