-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 25 Feb 2008 12:56:16 +0100 Source: pcre3 Binary: libpcre3 libpcre3-udeb libpcrecpp0 libpcre3-dev libpcre3-dbg pcregrep Architecture: source i386 Version: 7.4-1+lenny1 Distribution: testing-security Urgency: high Maintainer: Mark Baker <mark@mnb.org.uk> Changed-By: Nico Golde <nion@debian.org> Description: libpcre3 - Perl 5 Compatible Regular Expression Library - runtime files libpcre3-dbg - Perl 5 Compatible Regular Expression Library - debug symbols libpcre3-dev - Perl 5 Compatible Regular Expression Library - development files libpcre3-udeb - Perl 5 Compatible Regular Expression Library - runtime files (ude (udeb) libpcrecpp0 - Perl 5 Compatible Regular Expression Library - C++ runtime files pcregrep - grep utility that uses perl 5 compatible regexes. Changes: pcre3 (7.4-1+lenny1) testing-security; urgency=high . * Non-maintainer upload by the security team. * This update addresses the following security issue: - CVE-2008-0674: A character class containing a very large number of characters with codepoints greater than 255 (in UTF-8 mode, of course) causing a buffer overflow. Files: 7bc64e5a0e3704bb69b39a7f71044e5f 628 libs optional pcre3_7.4-1+lenny1.dsc de886b22cddc8eaf620a421d3041ee0b 1106897 libs optional pcre3_7.4.orig.tar.gz dc32f26223985f3881c58342a8dcfddd 27865 libs optional pcre3_7.4-1+lenny1.diff.gz f46dfd0e7b7beaf9130d0d104fc7b235 204448 libs important libpcre3_7.4-1+lenny1_i386.deb 07786a3ac4d03d3cb2188d04228095a9 71608 debian-installer important libpcre3-udeb_7.4-1+lenny1_i386.udeb 5c9e1eda803866eb292e1a2909dca379 90392 libs optional libpcrecpp0_7.4-1+lenny1_i386.deb 9f5007a865afe9b702be53cc3471ef14 246876 libdevel optional libpcre3-dev_7.4-1+lenny1_i386.deb 502a3f744bb24cb4a321d218b6802c72 183056 libdevel optional libpcre3-dbg_7.4-1+lenny1_i386.deb 1778b80ca19122d78a82ef54e7c934d0 19304 utils optional pcregrep_7.4-1+lenny1_i386.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHwrNUHYflSXNkfP8RAs+6AKCcJkC6zrXPUxb+FCeKWb0fmqMlsACgh7sS FP1hACLYJ//E7Kg8gBq7Mh4= =iBg/ -----END PGP SIGNATURE----- Accepted: libpcre3-dbg_7.4-1+lenny1_i386.deb to pool/main/p/pcre3/libpcre3-dbg_7.4-1+lenny1_i386.deb libpcre3-dev_7.4-1+lenny1_i386.deb to pool/main/p/pcre3/libpcre3-dev_7.4-1+lenny1_i386.deb libpcre3-udeb_7.4-1+lenny1_i386.udeb to pool/main/p/pcre3/libpcre3-udeb_7.4-1+lenny1_i386.udeb libpcre3_7.4-1+lenny1_i386.deb to pool/main/p/pcre3/libpcre3_7.4-1+lenny1_i386.deb libpcrecpp0_7.4-1+lenny1_i386.deb to pool/main/p/pcre3/libpcrecpp0_7.4-1+lenny1_i386.deb pcre3_7.4-1+lenny1.diff.gz to pool/main/p/pcre3/pcre3_7.4-1+lenny1.diff.gz pcre3_7.4-1+lenny1.dsc to pool/main/p/pcre3/pcre3_7.4-1+lenny1.dsc pcregrep_7.4-1+lenny1_i386.deb to pool/main/p/pcre3/pcregrep_7.4-1+lenny1_i386.deb