-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sat, 24 May 2008 08:25:36 +0200 Source: gnutls26 Binary: libgnutls-dev libgnutls26 libgnutls26-dbg gnutls-bin gnutls-doc guile-gnutls Architecture: source all i386 Version: 2.3.11-1 Distribution: experimental Urgency: low Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Andreas Metzler <ametzler@debian.org> Description: gnutls-bin - the GNU TLS library - commandline utilities gnutls-doc - the GNU TLS library - documentation and examples guile-gnutls - the GNU TLS library - GNU Guile bindings libgnutls-dev - the GNU TLS library - development files libgnutls26 - the GNU TLS library - runtime library libgnutls26-dbg - GNU TLS library - debugger symbols Closes: 373169 479174 Changes: gnutls26 (2.3.11-1) experimental; urgency=low . * New upstream version. + Fixes three security vulnerabilities. [GNUTLS-SA-2008-1-1] [GNUTLS-SA-2008-1-2] [GNUTLS-SA-2008-1-3]. See <http://www.gnu.org/software/gnutls/security.html>. CVE-2008-1948, CVE-2008-1949, CVE-2008-1950. DSA-1581-1 + Fixes subjectAltName wildcard matching. Closes: #479174 + certtool now writes keyfiles with 0600 permissions. Closes: #373169 Checksums-Sha1: 7ad195d3dfc10fd09c54679a82f044ae2d0bc9d1 1544 gnutls26_2.3.11-1.dsc 9837dca805bab577cbe2dcd8de0564beeb21c546 6018826 gnutls26_2.3.11.orig.tar.gz c7412b8c14876ca471c4994ee758109af4055d30 14033 gnutls26_2.3.11-1.diff.gz c1975ac3dd8c1b212bd6bf9104451ce9c86041ee 2733196 gnutls-doc_2.3.11-1_all.deb 7a03561b33c93550e5dd6c123a075eb548645ab0 521650 libgnutls-dev_2.3.11-1_i386.deb c667fd03ec4e8bffb59d83755e481dcd3fe1833c 441462 libgnutls26_2.3.11-1_i386.deb 79b732a0b559ecc2cb7e0b5eb92c595a8f2e1925 1077612 libgnutls26-dbg_2.3.11-1_i386.deb 0bdb5ed115fe54399e386c22cdd508f3a0d6aff2 256930 gnutls-bin_2.3.11-1_i386.deb 9f8b61da7bd8c8b20d14c8b40507dacce85b5372 202496 guile-gnutls_2.3.11-1_i386.deb Checksums-Sha256: 83d6c907e5379ff28b1f94eb51e5ef387b06ea665cdd088ad25c7911126c7b02 1544 gnutls26_2.3.11-1.dsc 781475d6f568f65f283aa5d409ba68bab8a27e46613a580bd567d9b3e724c80d 6018826 gnutls26_2.3.11.orig.tar.gz d1e9cd2b8ba52397d185858c5150e9ba9df2b42251c57f845f49b3832af2f9ad 14033 gnutls26_2.3.11-1.diff.gz 0ed7392f3dde46120484d8d598910550196d00cf9b9addd8dabbde7dcb15321c 2733196 gnutls-doc_2.3.11-1_all.deb a030aa8d9e4afbce3204bc46f4c4b74fd7eed220fc920bc864faa6cdb1f9816a 521650 libgnutls-dev_2.3.11-1_i386.deb c7c176f68d3537f8f17ce46653b17850ac70c856729fdb91e3c9478f22b1b2e2 441462 libgnutls26_2.3.11-1_i386.deb d5267a3999aa800d385ed6fe225686b0374b3f7f2b3fb901c55286d1f47adb83 1077612 libgnutls26-dbg_2.3.11-1_i386.deb d4be4755ff0753fe10072acfa6a7a5c3d03dc56377c17403e60b773764662883 256930 gnutls-bin_2.3.11-1_i386.deb 8e0abc015d083ac2b0751bef4718335709334bd667949724e778265cbd343292 202496 guile-gnutls_2.3.11-1_i386.deb Files: 51335afbf282d74fafc657f357c50d30 1544 devel optional gnutls26_2.3.11-1.dsc 2d9f9214b0ca435e7fafc361356bfafb 6018826 devel optional gnutls26_2.3.11.orig.tar.gz 0c0aa79b87faa0a7c7c296cb68dcc460 14033 devel optional gnutls26_2.3.11-1.diff.gz 9f19f2b527763192cb0ccda361dafc94 2733196 doc optional gnutls-doc_2.3.11-1_all.deb c7fe952f0965bce4327c5dfcef32f142 521650 libdevel optional libgnutls-dev_2.3.11-1_i386.deb 982f6ed4ff9ff85e3c77a5e7ce9e78b0 441462 libs important libgnutls26_2.3.11-1_i386.deb 492ac427ce73adc24563950a79b8f3f3 1077612 devel extra libgnutls26-dbg_2.3.11-1_i386.deb 125ffadedcb37b21f782e0ef2b903578 256930 net optional gnutls-bin_2.3.11-1_i386.deb c9fd3ae46995d1c1a189dec5e8f7f26c 202496 libs optional guile-gnutls_2.3.11-1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFIN8PFHTOcZYuNdmMRAlllAJ9YMFQi/0MARHj1Ncn0lz3ewmI7zACgrVZf RlYvKCoiM6trf1UUbF7PISA= =DoVp -----END PGP SIGNATURE----- Accepted: gnutls-bin_2.3.11-1_i386.deb to pool/main/g/gnutls26/gnutls-bin_2.3.11-1_i386.deb gnutls-doc_2.3.11-1_all.deb to pool/main/g/gnutls26/gnutls-doc_2.3.11-1_all.deb gnutls26_2.3.11-1.diff.gz to pool/main/g/gnutls26/gnutls26_2.3.11-1.diff.gz gnutls26_2.3.11-1.dsc to pool/main/g/gnutls26/gnutls26_2.3.11-1.dsc gnutls26_2.3.11.orig.tar.gz to pool/main/g/gnutls26/gnutls26_2.3.11.orig.tar.gz guile-gnutls_2.3.11-1_i386.deb to pool/main/g/gnutls26/guile-gnutls_2.3.11-1_i386.deb libgnutls-dev_2.3.11-1_i386.deb to pool/main/g/gnutls26/libgnutls-dev_2.3.11-1_i386.deb libgnutls26-dbg_2.3.11-1_i386.deb to pool/main/g/gnutls26/libgnutls26-dbg_2.3.11-1_i386.deb libgnutls26_2.3.11-1_i386.deb to pool/main/g/gnutls26/libgnutls26_2.3.11-1_i386.deb