-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 07 Dec 2007 18:10:36 +0100 Source: e2fsprogs Binary: e2fslibs-dev libblkid1-udeb libblkid1 comerr-dev libuuid1 ss-dev uuid-dev e2fslibs e2fsck-static e2fsprogs-udeb libuuid1-udeb e2fsprogs libblkid-dev libcomerr2 libss2 Architecture: source i386 Version: 1.40.2-1+lenny1 Distribution: testing-security Urgency: high Maintainer: Theodore Y. Ts'o <tytso@mit.edu> Changed-By: Nico Golde <nion@debian.org> Description: comerr-dev - common error description library - headers and static libraries e2fsck-static - statically-linked version of the ext2 filesystem checker e2fslibs - ext2 filesystem libraries e2fslibs-dev - ext2 filesystem libraries - headers and static libraries e2fsprogs - ext2 file system utilities and libraries e2fsprogs-udeb - stripped-down versions of e2fsprogs, for debian-installer (udeb) libblkid-dev - block device id library - headers and static libraries libblkid1 - block device id library libblkid1-udeb - block device id library (udeb) libcomerr2 - common error description library libss2 - command-line interface parsing library libuuid1 - universally unique id library libuuid1-udeb - universally unique id library (udeb) ss-dev - command-line interface parsing library - headers and static libra uuid-dev - universally unique id library - headers and static libraries Closes: 454760 Changes: e2fsprogs (1.40.2-1+lenny1) testing-security; urgency=high . * Non-maintainer upload by testing-security team. * This update addresses multiple integer overflows in libext2fs which could lead to arbitrary code execution via crafted filesystem images (CVE-2007-5497; Closes: #454760). Files: 44b8aa4c20c60c38b3d5bfef37c78b83 846 admin required e2fsprogs_1.40.2-1+lenny1.dsc 130ce559a0f311ea2bc04a47b4982d0a 3965919 admin required e2fsprogs_1.40.2.orig.tar.gz 2e3950ed698f66c172a9534dfc92dcf1 2554 admin required e2fsprogs_1.40.2-1+lenny1.diff.gz e7d7bafb6c92bf9d5863685a59d0df95 552306 admin optional e2fsck-static_1.40.2-1+lenny1_i386.deb c8af7f87604e1fe88944aa17d3e76ea7 33836 libs required libcomerr2_1.40.2-1+lenny1_i386.deb f7e297d44efd16b253f24535a0aca4eb 39336 libs required libss2_1.40.2-1+lenny1_i386.deb d5f99241fa7b8643fc20d58c91cf3108 35450 libs required libuuid1_1.40.2-1+lenny1_i386.deb a1bc1249454258e51e7270bcdf83aaff 46886 libs required libblkid1_1.40.2-1+lenny1_i386.deb 0cfb288bade8d09f90f83e2a6988b753 21328 libdevel extra libblkid-dev_1.40.2-1+lenny1_i386.deb f6aad60ec09d27306355369f4c3be65d 105832 libs required e2fslibs_1.40.2-1+lenny1_i386.deb 5a63c17012e63468acc84e9590387813 151958 libdevel extra e2fslibs-dev_1.40.2-1+lenny1_i386.deb 30c32603112789e91edaffc87e23d4ae 605686 admin required e2fsprogs_1.40.2-1+lenny1_i386.deb 5e2d0045530b64af760fc97e93bb272c 41500 libdevel extra comerr-dev_2.1-1.40.2-1+lenny1_i386.deb cfd38277cc5de48f79914375ba3c1868 16770 libdevel extra ss-dev_2.0-1.40.2-1+lenny1_i386.deb 8ab9dff6b2dc2b47e57db851a260dbbb 50356 libdevel extra uuid-dev_1.2-1.40.2-1+lenny1_i386.deb e5a5123b4d00b1561799bb9b53ce824e 179836 debian-installer optional e2fsprogs-udeb_1.40.2-1+lenny1_i386.udeb 896f35986008c25f4c425f375df0d6dd 15448 debian-installer optional libblkid1-udeb_1.40.2-1+lenny1_i386.udeb 95e6e31fe23f869c89c4e2c4477e901b 5440 debian-installer optional libuuid1-udeb_1.40.2-1+lenny1_i386.udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHWYkRHYflSXNkfP8RAqPGAJ9ZegFXNp1wY6swFTESZOVLtS1OkwCePjYG XEMFw45K/rEQRDWBwKu02xU= =Xp7E -----END PGP SIGNATURE----- Accepted: comerr-dev_2.1-1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/comerr-dev_2.1-1.40.2-1+lenny1_i386.deb e2fsck-static_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/e2fsck-static_1.40.2-1+lenny1_i386.deb e2fslibs-dev_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/e2fslibs-dev_1.40.2-1+lenny1_i386.deb e2fslibs_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/e2fslibs_1.40.2-1+lenny1_i386.deb e2fsprogs-udeb_1.40.2-1+lenny1_i386.udeb to pool/main/e/e2fsprogs/e2fsprogs-udeb_1.40.2-1+lenny1_i386.udeb e2fsprogs_1.40.2-1+lenny1.diff.gz to pool/main/e/e2fsprogs/e2fsprogs_1.40.2-1+lenny1.diff.gz e2fsprogs_1.40.2-1+lenny1.dsc to pool/main/e/e2fsprogs/e2fsprogs_1.40.2-1+lenny1.dsc e2fsprogs_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/e2fsprogs_1.40.2-1+lenny1_i386.deb libblkid-dev_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/libblkid-dev_1.40.2-1+lenny1_i386.deb libblkid1-udeb_1.40.2-1+lenny1_i386.udeb to pool/main/e/e2fsprogs/libblkid1-udeb_1.40.2-1+lenny1_i386.udeb libblkid1_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/libblkid1_1.40.2-1+lenny1_i386.deb libcomerr2_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/libcomerr2_1.40.2-1+lenny1_i386.deb libss2_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/libss2_1.40.2-1+lenny1_i386.deb libuuid1-udeb_1.40.2-1+lenny1_i386.udeb to pool/main/e/e2fsprogs/libuuid1-udeb_1.40.2-1+lenny1_i386.udeb libuuid1_1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/libuuid1_1.40.2-1+lenny1_i386.deb ss-dev_2.0-1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/ss-dev_2.0-1.40.2-1+lenny1_i386.deb uuid-dev_1.2-1.40.2-1+lenny1_i386.deb to pool/main/e/e2fsprogs/uuid-dev_1.2-1.40.2-1+lenny1_i386.deb