-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 08 Oct 2013 12:49:19 +1100 Source: zabbix Binary: zabbix-agent zabbix-server-mysql zabbix-server-pgsql zabbix-frontend-php zabbix-proxy-pgsql zabbix-proxy-mysql Architecture: source i386 all Version: 1:1.8.2-1squeeze5 Distribution: oldstable-proposed-updates Urgency: high Maintainer: Christoph Haas <haas@debian.org> Changed-By: Dmitry Smirnov <onlyjob@debian.org> Description: zabbix-agent - network monitoring solution - agent zabbix-frontend-php - network monitoring solution - PHP front-end zabbix-proxy-mysql - network monitoring solution - proxy (using MySQL) zabbix-proxy-pgsql - network monitoring solution - proxy (using PostgreSQL) zabbix-server-mysql - network monitoring solution - server (using MySQL) zabbix-server-pgsql - network monitoring solution - server (using PostgreSQL) Closes: 698541 Changes: zabbix (1:1.8.2-1squeeze5) oldstable-proposed-updates; urgency=high . * CVE-2013-5743: fixed SQL injection vulnerability. * CVE-2011-3263: prevent zabbix_agentd DoS attack with vfs.file.cksum. * CVE-2011-3265/CVE-2011-3264: fixed possible path disclosure. * CVE-2011-3265: added pop up field name parameter validation. * CVE-2013-1364: fixed the ability to override LDAP configuration when calling user.login via API (Closes: #698541). * Refreshed "no-swf-clock" patch. Checksums-Sha1: 51ff3d9b953773e8588151065f0bb78f8316a071 2173 zabbix_1.8.2-1squeeze5.dsc 8c9edceacd9f3fcde04e05b9742fa755d0540bc1 256450 zabbix_1.8.2-1squeeze5.debian.tar.gz 14428aab8b96921749359659aa4159f39d1115b0 236304 zabbix-agent_1.8.2-1squeeze5_i386.deb c9e12863509a76f3edcbcb037a9218bdc1f0ff22 609230 zabbix-server-mysql_1.8.2-1squeeze5_i386.deb 7d44932635376f10d51ad6985d00906b9af51c3a 624640 zabbix-server-pgsql_1.8.2-1squeeze5_i386.deb d0c7808b053235756684117d3acd8f71955f7949 543184 zabbix-proxy-pgsql_1.8.2-1squeeze5_i386.deb 464ffe48aa38d7933b363085c62dceb2fd1ec919 535046 zabbix-proxy-mysql_1.8.2-1squeeze5_i386.deb b7168f04de4c0cccacbaf3d732cf42527922c1dd 1519784 zabbix-frontend-php_1.8.2-1squeeze5_all.deb Checksums-Sha256: e12efbe34b6c2a4b5496250617b1821079471ae5b00d9202d0c29e49d8ebd581 2173 zabbix_1.8.2-1squeeze5.dsc 0195b87e5e315a8d19e66faea5658d02a8e709b4eeb4023679f6f8e44359bd59 256450 zabbix_1.8.2-1squeeze5.debian.tar.gz 5c81f6b850f8d790eca2610ffb5df7d80fb2581b2f392abed196810b6450f46b 236304 zabbix-agent_1.8.2-1squeeze5_i386.deb 55d9f1b821ff2d9568cf1e05d85ddd786738787698a4df9a6141860bd030a980 609230 zabbix-server-mysql_1.8.2-1squeeze5_i386.deb 7c703204401bd9ba5d3c177cb33974008e7c744836ae21680d52ef05c968d9bd 624640 zabbix-server-pgsql_1.8.2-1squeeze5_i386.deb e192802f6e9ac840304428d3e683c5ef9a282ac9bed16ceda3a81a03d57f1d4d 543184 zabbix-proxy-pgsql_1.8.2-1squeeze5_i386.deb 4fffc1d98f856008e6082705e2982a1d4819e9558873521b22eeae90e049727c 535046 zabbix-proxy-mysql_1.8.2-1squeeze5_i386.deb 42b79dc71593276300814a89dbccc522947048aa71144edfdc03c72704f05082 1519784 zabbix-frontend-php_1.8.2-1squeeze5_all.deb Files: f71a0e9e90c7231c920a3d7fb98a7e84 2173 net optional zabbix_1.8.2-1squeeze5.dsc c39bc748c9fdb86b907e421402153b38 256450 net optional zabbix_1.8.2-1squeeze5.debian.tar.gz 4268daaf7bfccdd2af470d54bc3279da 236304 net optional zabbix-agent_1.8.2-1squeeze5_i386.deb 5e0dfd03d9ade52f50a4fa961470945c 609230 net optional zabbix-server-mysql_1.8.2-1squeeze5_i386.deb 41af29e27e0633c3eee0b646e8446cf3 624640 net optional zabbix-server-pgsql_1.8.2-1squeeze5_i386.deb cbc092e7f32d26109c79ef0578f9aa2b 543184 net optional zabbix-proxy-pgsql_1.8.2-1squeeze5_i386.deb 75cc8aeef9b22d4355210de08bd1925f 535046 net optional zabbix-proxy-mysql_1.8.2-1squeeze5_i386.deb 204021b366db846a6330e3d268a12a3b 1519784 net optional zabbix-frontend-php_1.8.2-1squeeze5_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBCAAGBQJSU2iXAAoJEFK2u9lTlo0b+LEQALysxVE3Py1qUueehKV8Hmmv 77YyihVqYqLuFwP5Y+GXUAvqKcnWbH7Hkbky4x6QbCCQTF4Gwst5cWAYIWHDyico zP8uT6O6NLYohftXvT+/dj95veC90acqXGbB4c1j0HoK+WXBsg8D3jb22yAOtgY/ Sr3vkkGwa/6vxUVOwG8z16Q4g2Bna3nRKUpHW0hDq0SiDBQNRcf8jgY5HjZYnacc 4x9twxuIwl/obov65t2JNpezj7SG7G3nFx0X52HvwRtq4s4XP8NV5MlHvQulc8Uu mg/cKXqY8h8X/WegQAgNPzUMacjtcWGs0vjasgIN1cMSWzfooLpmmr8XXcPFGIZT jiNws1Xm+zCAx0W/ueCcsHi9RKoRVQu++4QYq1gWaBj/uZ93PhNbljSQirSoAmag zNGsZ9zq5VKTHaGg12AX6J+KFSS3+QDInIg3+dQEU7lJ4fvD1TO9z/yNse5loBGv RTqxt7+plpcN3JcKYitTufUDa1ggHgguOHUheL8M3Iu6jhCw3LoRfagXGM0MV/1f wEDaGEWheG7ft1sgxiZCg8zVFM5GKInkpnC7/Ywajral+BOptBJ8gLA9iEyUwmqq Itodui3qu1QiJguVL6BuFYxB//uu4nKQGo49yNojRd/t/ZG1UbNXZdI1rAPA7GMW lE+C3cjNDpsBWP79tTZh =2Z+u -----END PGP SIGNATURE-----