-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 19 Mar 2012 22:20:08 -0700 Source: krb5-appl Binary: krb5-clients krb5-rsh-server krb5-ftpd krb5-telnetd Architecture: source i386 Version: 1:1.0.1-2 Distribution: unstable Urgency: low Maintainer: Sam Hartman <hartmans@debian.org> Changed-By: Russ Allbery <rra@debian.org> Description: krb5-clients - Secure replacements for ftp, telnet and rsh using MIT Kerberos krb5-ftpd - Secure FTP server supporting MIT Kerberos krb5-rsh-server - Secure replacements for rshd and rlogind using MIT Kerberos krb5-telnetd - Secure telnet server supporting MIT Kerberos Closes: 654231 657842 Changes: krb5-appl (1:1.0.1-2) unstable; urgency=low . * Hopefully temporary interim release until I learn the proper procedure for package updates to new upstream releases. * Acknowledge security NMUs, thanks Florian Weimer. - Apply patch from FreeBSD to fix CVE-2011-4862 (Closes: #654231) - CVE-2011-1526, MIT-SA-2011-005: Kerberos ftpd fails to set correct group permissions. The ftp daemon always runs with the group permissions of the user it is started as, probably the root group. * Apply upstream commits r3299 and r3326 to not use variable data as format strings, which allows the source to compile safely with -Wformat -Werror=format-security. * Fix spelling errors in man pages (thanks, Lintian). * Update debhelper compatibility level to V9. - Use hardening build flags. (Closes: #657842) * Use dh-autoreconf to regenerate the build system during build and use its support for --as-needed. Use the new dpkg-buildflags method of passing -Wl,--as-needed. * Remove duplicate Priority fields from binary packages. * Update standards version to 3.9.3 (no changes required). Checksums-Sha1: ae474e4f1edc769eb36159f69ce3b62b752d1060 1755 krb5-appl_1.0.1-2.dsc 8a5c7395f56046bf969226f5a2bfc9d62276b887 11260 krb5-appl_1.0.1-2.debian.tar.gz dc2c6f25c96b91fe3361a29fcce4d9dc9b49256a 168420 krb5-clients_1.0.1-2_i386.deb 34781ca0594c5a48cc0fae948284015a16c6e10e 61234 krb5-rsh-server_1.0.1-2_i386.deb a7f5f65ae820b0b0b68a97bb1eba439d46f36f39 45784 krb5-ftpd_1.0.1-2_i386.deb 0eb76017b16c41f514dfc4ad1800a1d9bffd3893 52468 krb5-telnetd_1.0.1-2_i386.deb Checksums-Sha256: a5decafd9818ae5c079c205e8fb84968ecd9337a884f66aec75560b5c7c3d03c 1755 krb5-appl_1.0.1-2.dsc d3a3cc715a5cf8210704e525e33ea2af537e488b8cf2d839b29cb661c702c38d 11260 krb5-appl_1.0.1-2.debian.tar.gz 3da11c440c9dd64791fa4cc4c3c8fca4a1f834e7c945b87ab68d1497367ae88c 168420 krb5-clients_1.0.1-2_i386.deb 77556e68dd5c88115a74b4b589bd12ba12de1f434b64df1cc6db76b2ffb406a6 61234 krb5-rsh-server_1.0.1-2_i386.deb 99b4cdd503d2af11c7588fd2f8770eeb6a3a9d666085bb6f6fde17afaad7edc8 45784 krb5-ftpd_1.0.1-2_i386.deb 3065f377e185a0ec64cefcf4aa76e919eb1fba20217b686c4e0a1d9487153abd 52468 krb5-telnetd_1.0.1-2_i386.deb Files: b1815d97f9abe9571700776509090483 1755 net extra krb5-appl_1.0.1-2.dsc 91c56674563c8b44cfde58cf2a4f2c26 11260 net extra krb5-appl_1.0.1-2.debian.tar.gz 222e59809485a38c6ad171005ffcf140 168420 net optional krb5-clients_1.0.1-2_i386.deb 89ecc9e4972c8f5aa8e9e6189e39dd5b 61234 net extra krb5-rsh-server_1.0.1-2_i386.deb fe9bdaa5e073c8c196e0815cf15f1eb7 45784 net extra krb5-ftpd_1.0.1-2_i386.deb f4b74f932647a0c8adde8ea902ffaa8e 52468 net extra krb5-telnetd_1.0.1-2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQEcBAEBCAAGBQJPaBabAAoJEH2AMVxXNt51VmwIAI8+BudedysAwuVDV8Nyrwhz 9U3Uwu9P9BzVa42v2Si0CAD8y6JsEl07+9B2XSPJOKeWxO6RB30Unb2cnbshsXrk 8xtpquYDEnbYNrUDJV6D87MFyo4xVd3YQh3Ea6AVng/tooyOURvQ/Dq1JfzShKi7 2ivX3NbAlga8zZLeCR04z1iTSS2VMUFbHFKrR+dXpe3uUxDXkjlRBRdfJxq/dvI4 0RgbUnOL7xmjWJd+u5fv5/y/3crr/d39a6SCRRyHAeIkjGuYXKSf000Y1HGhOflU WcJVQdTZwJivEyEN9XfEosdjmjuFeLCKd6fzSfYweMlLUXyguRm0LKp0lUMoebY= =bW8C -----END PGP SIGNATURE----- Accepted: krb5-appl_1.0.1-2.debian.tar.gz to main/k/krb5-appl/krb5-appl_1.0.1-2.debian.tar.gz krb5-appl_1.0.1-2.dsc to main/k/krb5-appl/krb5-appl_1.0.1-2.dsc krb5-clients_1.0.1-2_i386.deb to main/k/krb5-appl/krb5-clients_1.0.1-2_i386.deb krb5-ftpd_1.0.1-2_i386.deb to main/k/krb5-appl/krb5-ftpd_1.0.1-2_i386.deb krb5-rsh-server_1.0.1-2_i386.deb to main/k/krb5-appl/krb5-rsh-server_1.0.1-2_i386.deb krb5-telnetd_1.0.1-2_i386.deb to main/k/krb5-appl/krb5-telnetd_1.0.1-2_i386.deb