-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 8 Dec 2007 18:42:08 +0000 Source: libnss-ldap Binary: libnss-ldap Architecture: source i386 Version: 238-1sarge1 Distribution: oldstable-security Urgency: high Maintainer: Stephen Frost <sfrost@debian.org> Changed-By: Steffen Joeris <white@debian.org> Description: libnss-ldap - NSS module for using LDAP as a naming service Changes: libnss-ldap (238-1sarge1) oldstable-security; urgency=high . * Non-maintainer upload by the security team * Fix race condition, which could lead to a DoS, when applications use pthread and fork after a call to nss_ldap Fixes: CVE-2007-5794 Files: 3176fefa1d8d04afa9d3b458e40694a6 681 net extra libnss-ldap_238-1sarge1.dsc 97fd929b381329b972b3c3ddca5a4bbf 219945 net extra libnss-ldap_238.orig.tar.gz c7191ee3845dc23ccf2712e78daed8f1 26236 net extra libnss-ldap_238-1sarge1.diff.gz 7bb744d57899867a0b1c326372de76ce 78894 net extra libnss-ldap_238-1sarge1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHWud762zWxYk/rQcRAmObAJ9mgkriZy4XIfY8r7UlvMQW6lWaFQCfcn2g GNpg9GXk/9ybbrDyOVtS61Q= =rO0/ -----END PGP SIGNATURE----- Accepted: libnss-ldap_238-1sarge1.diff.gz to pool/main/libn/libnss-ldap/libnss-ldap_238-1sarge1.diff.gz libnss-ldap_238-1sarge1.dsc to pool/main/libn/libnss-ldap/libnss-ldap_238-1sarge1.dsc libnss-ldap_238-1sarge1_i386.deb to pool/main/libn/libnss-ldap/libnss-ldap_238-1sarge1_i386.deb