-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 31 May 2014 16:27:40 +0200 Source: gnutls26 Binary: libgnutls-dev libgnutls26 libgnutls26-dbg gnutls-bin gnutls26-doc guile-gnutls libgnutlsxx27 libgnutls-openssl27 Architecture: source all i386 Version: 2.12.20-8+deb7u2 Distribution: wheezy-security Urgency: high Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Andreas Metzler <ametzler@debian.org> Description: gnutls-bin - GNU TLS library - commandline utilities gnutls26-doc - GNU TLS library 2.x - documentation and examples guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dev - GNU TLS library - development files libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls26 - GNU TLS library - runtime library libgnutls26-dbg - GNU TLS library - debugger symbols libgnutlsxx27 - GNU TLS library - C++ runtime library Changes: gnutls26 (2.12.20-8+deb7u2) wheezy-security; urgency=high . * 39_Prevent-memory-corruption.diff from upstream GIT. Fix memory corruption on client side caused by specially crafted ServerHello. GNUTLS-SA-2014-3 / CVE-2014-3466 Checksums-Sha1: 1107acec67477e9f824a2b6b97b68da148e097fb 2684 gnutls26_2.12.20-8+deb7u2.dsc e84129b4d62577ed96aca6f95ef3050b29c4e179 32094 gnutls26_2.12.20-8+deb7u2.debian.tar.gz 74247f7e7eeeb997811effba29882b6b21d011c0 2623590 gnutls26-doc_2.12.20-8+deb7u2_all.deb 268fc5a3e6d8183aab1f627fd54d86e5674cdcd7 728184 libgnutls-dev_2.12.20-8+deb7u2_i386.deb 3acff1203d5d73383d4225f089c74892aeed4c14 605920 libgnutls26_2.12.20-8+deb7u2_i386.deb bfde2c01e4f5816583991a014b6616f48f4e81fa 1818112 libgnutls26-dbg_2.12.20-8+deb7u2_i386.deb 704a6e28fdc40099210f29015f951309a568b181 387644 gnutls-bin_3.0.22-3+really2.12.20-8+deb7u2_i386.deb 64aa19c579b07ee5f45203decc58eda40b6e1bd5 268312 guile-gnutls_3.0.22-3+really2.12.20-8+deb7u2_i386.deb 233b14568a05fd0a9fbe5f5511d39decbe9cee11 223800 libgnutlsxx27_2.12.20-8+deb7u2_i386.deb 83154ed52e9700ce0e495fe822357b18b236a6ce 221278 libgnutls-openssl27_2.12.20-8+deb7u2_i386.deb Checksums-Sha256: cb4b37e39f7dd1ada4beb7a70aa1f933eb672e65addc00bba4963557bd218657 2684 gnutls26_2.12.20-8+deb7u2.dsc c0959ad818ec8fff46f6fdaa14279996e7c7de3ddcfc06466643af69d1dfe07f 32094 gnutls26_2.12.20-8+deb7u2.debian.tar.gz 9a2247a2efc61ba84cc69edff4f89e41ec82c191de2a1d04f5a9bfcc8330d0b6 2623590 gnutls26-doc_2.12.20-8+deb7u2_all.deb 18771b32995578fdb3dc2f3630da5f563a4afbdaa50cc2319238738cdc061f05 728184 libgnutls-dev_2.12.20-8+deb7u2_i386.deb 93d7050821b3abd374c3b4d8eb8cfa1aba4435439e1d4869d551131f27efdc8c 605920 libgnutls26_2.12.20-8+deb7u2_i386.deb 56dd1600426507ef4ee9638e60cf4cc1f8cfd03034f31f9e0fe092ce74af57fc 1818112 libgnutls26-dbg_2.12.20-8+deb7u2_i386.deb b7919190271b2b623d529c57b0060491fa48bbe0a1cf0caa2e8ec9b67c9b1eae 387644 gnutls-bin_3.0.22-3+really2.12.20-8+deb7u2_i386.deb f61afcef7e0dbfdffd855e74f47fb80abeb7b458eb1092cfc50858aa67e044f6 268312 guile-gnutls_3.0.22-3+really2.12.20-8+deb7u2_i386.deb 76e671e585145a639123335a5e03cf3639474b66c0e7d34af32fa4e2704440cf 223800 libgnutlsxx27_2.12.20-8+deb7u2_i386.deb d542868f82ffa200527685e99f6bc61759cf4c33a3fdc2f056ebe6e94f634255 221278 libgnutls-openssl27_2.12.20-8+deb7u2_i386.deb Files: ea3a216d513b9424d0dda3b49dc0c407 2684 libs optional gnutls26_2.12.20-8+deb7u2.dsc 1e100f0ae94c46e0b94a0da737a4c39c 32094 libs optional gnutls26_2.12.20-8+deb7u2.debian.tar.gz 52ed1ba60a215a5383bce67581c1e570 2623590 doc optional gnutls26-doc_2.12.20-8+deb7u2_all.deb 3117cb1b3dec697652c7eaaf2f149d21 728184 libdevel optional libgnutls-dev_2.12.20-8+deb7u2_i386.deb a50ba1a9c1184f73cf730ae1b2c2ecd6 605920 libs standard libgnutls26_2.12.20-8+deb7u2_i386.deb 6e6602639206b655f4331ce86094a361 1818112 debug extra libgnutls26-dbg_2.12.20-8+deb7u2_i386.deb 7af983aca07c45cf5012e8aa3174fee2 387644 net optional gnutls-bin_3.0.22-3+really2.12.20-8+deb7u2_i386.deb d6753af8bd5c00c90597f3fbd9fe21b8 268312 lisp optional guile-gnutls_3.0.22-3+really2.12.20-8+deb7u2_i386.deb fd58039c81c163e9346567f8f0a69578 223800 libs extra libgnutlsxx27_2.12.20-8+deb7u2_i386.deb 9cb2754cc549459d721783e4b9dd033a 221278 libs standard libgnutls-openssl27_2.12.20-8+deb7u2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJTigLYAAoJEKVPAYVDghSEqA8P+QEFB00J7ToTr2HQ4bKQgEbd R6RTgM+9L+qvlaQYAMhmjPiUKAgvWa0YbsH1aAb256zVKa5WvnNGRUmSa+PGONJp l6tP4P20VmcH9kg+7xsh1XVDuuDtxF9dZXBo4uo8JYqxXPCe/saEgECB4kao+qYF A1YlW6NLRF9bPTzRfcU2LJXztLIEAASfALr7YetEnPMO0UyJ2Q3TgU/4+B4EYlyu KaOeYKgxpzpP/IkGsIZluKup1MJ7TOJ2P4+I0Boc/vgLmNTv21ffUzVHgRsmU2/J m6P3cX6PJJ6jgRC9f3M5JBEFbJuDqqsPjRZEnpwawpNWK4k0HBHYFe/TsWQ9SowM VP8xxJsh1+DwK8heRGL4tbsPx/U17HjOvkOmwIN3sZ2Xm7zBX1jg6U/ChrNXhVyD YrFNwpBQsgOfHvT+YHcZfOlShDgrqrxtLcNbe67/Fp1+Qz/G7MwqhQZ1W20bM3wP 7/jioUlLRM+hLSPpTAbtxqpc5UzG0Sgtd/4ysVxyL/CGH4SGCIkVIpD0DsrKGbX3 x+GfAhJGY5evqAofDAoEGlJb2bIuToVoE3TYxQqIp1+Jgqhw4zjNwiwWuh7VmHgG 0QG5zgj0IeepvWDElYUMnla7crE0fc2gizS6QcVct93TVQUcVAbjr3Pl6IEquXWN 9ZPqxBxvS+YdyIs+Tdul =r8Hh -----END PGP SIGNATURE-----