-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 25 Dec 2005 19:20:11 +0100 Source: pound Binary: pound Architecture: source i386 Version: 1.8.2-1sarge1 Distribution: stable-security Urgency: high Maintainer: Sam Johnston <samj@aos.net.au> Changed-By: Moritz Muehlenhoff <jmm@debian.org> Description: pound - reverse proxy, load balancer and https front-end for web-servers Changes: pound (1.8.2-1sarge1) stable-security; urgency=high . * Non maintainer upload by the Security Team: * Fix buffer overflow, which could be triggered through overly long Host: headers. (CVE-2005-1391) * Fix HTTP request smuggling vulnerability. (CVE-2005-3751) Files: 334d91f8800581281ab9c8bad5bbdbf4 643 net extra pound_1.8.2-1sarge1.dsc c9b0793bb4d57be2270093d79b13c019 140455 net extra pound_1.8.2.orig.tar.gz 9e404c899bfd5409610ed5f14345d341 13242 net extra pound_1.8.2-1sarge1.diff.gz da43b8adaf115680c72d8f5dce9bc99f 68684 net extra pound_1.8.2-1sarge1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) iD8DBQFDtBXjXm3vHE4uyloRAvHTAJ9sepffS+u2rFM8Cw3gmefvWHjuKgCgu7jv 6lY+fMtU+C16OlUvDX1Cp0E= =6muV -----END PGP SIGNATURE----- Accepted: pound_1.8.2-1sarge1.diff.gz to pool/main/p/pound/pound_1.8.2-1sarge1.diff.gz pound_1.8.2-1sarge1.dsc to pool/main/p/pound/pound_1.8.2-1sarge1.dsc pound_1.8.2-1sarge1_i386.deb to pool/main/p/pound/pound_1.8.2-1sarge1_i386.deb