-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sat, 14 Mar 2009 15:07:03 +0100 Source: libsndfile Binary: libsndfile1-dev libsndfile1 sndfile-programs Architecture: source amd64 Version: 1.0.17-4+lenny1 Distribution: stable-security Urgency: high Maintainer: Samuel Mimram <smimram@debian.org> Changed-By: Nico Golde <nion@debian.org> Description: libsndfile1 - Library for reading/writing audio files libsndfile1-dev - Library for reading/writing audio files sndfile-programs - Sample programs that use libsndfile Changes: libsndfile (1.0.17-4+lenny1) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix integer overflow leading to a heap-based buffer overflow via a crafted CAF file by limiting the number of channels per frame (CVE-2009-0186.dpatch). Checksums-Sha1: 260f0c05f488f42d0546f40dafbc94100675ffb7 1131 libsndfile_1.0.17-4+lenny1.dsc 2f66798d596a15491fbd1191ded8125ed71ef411 819456 libsndfile_1.0.17.orig.tar.gz c005fbe0efba880572477d022ddff4daabc0408a 9969 libsndfile_1.0.17-4+lenny1.diff.gz 15a40e67dfe2b020b1ae49c85ec838f78a12fa02 332902 libsndfile1-dev_1.0.17-4+lenny1_amd64.deb 4be9494dafcf475dbddaa2fb203d68d0e9c8c9a9 191504 libsndfile1_1.0.17-4+lenny1_amd64.deb 2705f8c9e17da34bba0b76718c7850b6f6480009 73016 sndfile-programs_1.0.17-4+lenny1_amd64.deb Checksums-Sha256: efdd106cd1457bfd967dc7322ce6223c46f5af502c5cedd9e762c534cd215b3d 1131 libsndfile_1.0.17-4+lenny1.dsc 1792e4e60386b450ef8ec07c756e8f3ecfe96ebda7d0b09148da5f436d065ef2 819456 libsndfile_1.0.17.orig.tar.gz d7fe984fc4347fef0a4218d6e27f3186d1c9edde77e5f620c222aedb49b6c069 9969 libsndfile_1.0.17-4+lenny1.diff.gz 23f299896496f61524f8b51cff899c3454a9faff7fc52f1f7c5486b3fa1b4e0f 332902 libsndfile1-dev_1.0.17-4+lenny1_amd64.deb 1a6787e61ade67ad1f13104c8b5e63a2db3414fb9788bfe4a2132e18da3eb81d 191504 libsndfile1_1.0.17-4+lenny1_amd64.deb 10ef035c19d502f1f88ecca0e958e8b691413511b7a83b9f58a576d24b51461a 73016 sndfile-programs_1.0.17-4+lenny1_amd64.deb Files: b44551174131c95a8cfae919907d3efa 1131 devel optional libsndfile_1.0.17-4+lenny1.dsc 2d126c35448503f6dbe33934d9581f6b 819456 devel optional libsndfile_1.0.17.orig.tar.gz a06409102bd304eedb0bd6634bceefa1 9969 devel optional libsndfile_1.0.17-4+lenny1.diff.gz bb2e2e44a1a399bf089481a9facc4e19 332902 libdevel optional libsndfile1-dev_1.0.17-4+lenny1_amd64.deb 6b54a2e1a53d09464c4b65d258a5deb3 191504 libs optional libsndfile1_1.0.17-4+lenny1_amd64.deb 93aef598d40745fc4531955441223ab5 73016 utils optional sndfile-programs_1.0.17-4+lenny1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkm8G8QACgkQHYflSXNkfP95BgCguOf2rSpXo1NeuxaJmy/D9PSV dvUAn1GkiDgih30aJqdu5rt9VeChQRv8 =LTxg -----END PGP SIGNATURE----- Accepted: libsndfile1-dev_1.0.17-4+lenny1_amd64.deb to pool/main/libs/libsndfile/libsndfile1-dev_1.0.17-4+lenny1_amd64.deb libsndfile1_1.0.17-4+lenny1_amd64.deb to pool/main/libs/libsndfile/libsndfile1_1.0.17-4+lenny1_amd64.deb libsndfile_1.0.17-4+lenny1.diff.gz to pool/main/libs/libsndfile/libsndfile_1.0.17-4+lenny1.diff.gz libsndfile_1.0.17-4+lenny1.dsc to pool/main/libs/libsndfile/libsndfile_1.0.17-4+lenny1.dsc sndfile-programs_1.0.17-4+lenny1_amd64.deb to pool/main/libs/libsndfile/sndfile-programs_1.0.17-4+lenny1_amd64.deb