-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Feb 2014 18:27:37 +0100 Source: gnutls26 Binary: libgnutls-dev libgnutls26 libgnutls26-dbg gnutls-bin gnutls26-doc guile-gnutls libgnutlsxx27 libgnutls-openssl27 Architecture: source all i386 Version: 2.12.20-8 Distribution: wheezy-security Urgency: high Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Andreas Metzler <ametzler@debian.org> Description: gnutls-bin - GNU TLS library - commandline utilities gnutls26-doc - GNU TLS library 2.x - documentation and examples guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dev - GNU TLS library - development files libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls26 - GNU TLS library - runtime library libgnutls26-dbg - GNU TLS library - debugger symbols libgnutlsxx27 - GNU TLS library - C++ runtime library Changes: gnutls26 (2.12.20-8) wheezy-security; urgency=high . * 26_fix_rejection-of-v1-intermedi.diff pulled and unfuzzed from GIT 3.x: A version 1 intermediate certificate will be considered as a CA certificate by default (something that deviates from the documented behavior). CVE-2014-1959 / GNUTLS-SA-2014-1 Checksums-Sha1: 9ae9f7c2d2a491e15253c4d54fefbf6fa4b6cfdd 2673 gnutls26_2.12.20-8.dsc 95df4faa363db02154c4a22282813a660467518e 30956 gnutls26_2.12.20-8.debian.tar.gz d2e752e9448098025cffb679e928e2e9b42e1ef8 2623336 gnutls26-doc_2.12.20-8_all.deb a4122164e3f6738ab3f51e55cb3abb1bff6ef136 727898 libgnutls-dev_2.12.20-8_i386.deb 01ee8f88083ad2b647fbd3c3ba18db4471b140f1 605508 libgnutls26_2.12.20-8_i386.deb a42c7f021197bd5d7ce58df3607263a639f0973f 1817918 libgnutls26-dbg_2.12.20-8_i386.deb a6ac86deb4faa9cad920f7b7d9cfad40e334be29 387498 gnutls-bin_3.0.22-3+really2.12.20-8_i386.deb 345103a4737e745e607df921366d68f4f093219b 268136 guile-gnutls_3.0.22-3+really2.12.20-8_i386.deb 9f5f3bbdd1d4dfe4eb53b0c80b0fd80730f9f317 223622 libgnutlsxx27_2.12.20-8_i386.deb b52d8ee5a211ad6833a899bf7eb032d967f55202 221094 libgnutls-openssl27_2.12.20-8_i386.deb Checksums-Sha256: f9fec768e36e98ce2af65f80b86f232fc98c70cc9f2927ecfeeb66562ec7ee7b 2673 gnutls26_2.12.20-8.dsc 6a94bf64ee7ee7837f67e0aba5250a99e418f7f11594a6bdac20b740bdc6a25a 30956 gnutls26_2.12.20-8.debian.tar.gz 60d5bd1dfdc55d0e97714d088d47e5a1700a072172232c3476fc1c83092932ee 2623336 gnutls26-doc_2.12.20-8_all.deb 8598c4eaf4004b2acca141194049a8479b1e371b4861fc406232bff91482dbcf 727898 libgnutls-dev_2.12.20-8_i386.deb 2ccadbe5fdbc2e659927afb0d2cb8c0e8cd93e81ba2d86ae3e6833ad101d7d42 605508 libgnutls26_2.12.20-8_i386.deb 5a203d0a7f5f26f13466fe2cb2d852d8abbb6ff69092a98628335befd6d98763 1817918 libgnutls26-dbg_2.12.20-8_i386.deb e26f562ad4edc75c1391e93c2350397c17e483da8970bfa8f26579eaaf559dc2 387498 gnutls-bin_3.0.22-3+really2.12.20-8_i386.deb d0d5c184e15bd0760c10abdc00257a8e0673f6d1e6d309f1dbeeb0ab91f43af1 268136 guile-gnutls_3.0.22-3+really2.12.20-8_i386.deb 1c1b5915fb97cdd7100ca571a5e39d30e1c97c21be04aac1145973bc6566e8ee 223622 libgnutlsxx27_2.12.20-8_i386.deb be86d303a5940fc18436fa32f374be2e555b66c71e46cb56bb967ae5ed1df88b 221094 libgnutls-openssl27_2.12.20-8_i386.deb Files: 910bda75120d5c8728d1073de630e35b 2673 libs optional gnutls26_2.12.20-8.dsc dacb0aa71eff3c4c1d97c29ea0693a6b 30956 libs optional gnutls26_2.12.20-8.debian.tar.gz 4b3c8778ce27558bd53db19d6e8dcd55 2623336 doc optional gnutls26-doc_2.12.20-8_all.deb 50f3dee284eb8204aa1e3ccbb375c97b 727898 libdevel optional libgnutls-dev_2.12.20-8_i386.deb c223b5fe42622867557c35c08707799c 605508 libs standard libgnutls26_2.12.20-8_i386.deb 7bf3fac175ede46607f4ce34d9ef4eec 1817918 debug extra libgnutls26-dbg_2.12.20-8_i386.deb fcb423a48ad012ba3693e447c4f8cef7 387498 net optional gnutls-bin_3.0.22-3+really2.12.20-8_i386.deb 76a090b17ed166783a6a96bf8ef38caf 268136 lisp optional guile-gnutls_3.0.22-3+really2.12.20-8_i386.deb 0fdbe357ba83b936e5aa603ffda89035 223622 libs extra libgnutlsxx27_2.12.20-8_i386.deb 3d0599e6f5d51d0c7f410458dd6f365f 221094 libs standard libgnutls-openssl27_2.12.20-8_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBCgAGBQJTAGgPAAoJEKVPAYVDghSEcBoP/AxuYq7QMbpkORa38tRGSnj5 AE8vDwNVsyUXqiBSrYTgcnrxMwy0py/DKLiy1hOByjRh7lmHo5jE3KRcN00Qx3dk IHK7wywzWPn0rWrmEI+JsQ+39xRVC2HoRJU3n3BiimWvw6age9sfgEagGHPxfgTa 45L3QTTwrP1nKlOZC/CpVha1jeMfMix30AG1PIsgUgqNZE4rvzTB2XQbY2aX3qPs vc5RLjw76pklikWGi2sLrFy/PXOqhZthpGFrFS8CdW2gYBFSc8yoL9aJaPVlzU11 R+i8hit/VSRvba2jNk3D0pmxE853hHUuGUQFKzpNL0hM8o4Qk97tIyLeW+SbSVtc oyAXx9uYq1Y1mpbwaFiuV5lAcam49MvC+D18foVntTp4sOKiXzde8uduN0sAyXL9 WdMIrnIDESsemPrEC8YjhwS7kaFbMDvtQt+PGUe5VyasIh34apYuLXKuvyztC4IH bcUR2s6yHteqDivbV2RF+zLLenlkz5mrS/PBs0DtTKNXIKBvzpd1Sp4du+dhgzAZ i67NTaHFFcnVc3JNhY4nxIk88ZmXoxPZ8fhHS5UhHW7qQBBO5Nxe7S6zAwNHJRVa HwzQ57DQp7RGdxr/1dzxWYzRX5y9r9lISak9jrsa4sMERVgloS0gR+HnUuSTPpng qM+OTCEU80G64IEnTBbB =5Vsp -----END PGP SIGNATURE-----