-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 04 Sep 2014 10:26:01 +0200 Source: procmail Binary: procmail Architecture: source amd64 Version: 3.22-20+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Santiago Vila <sanvila@debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: procmail - Versatile e-mail processor Closes: 704675 760443 Changes: procmail (3.22-20+deb7u1) wheezy-security; urgency=high . * Non-maintainer upload by the Security Team. * Add CVE-2014-3618.patch. CVE-2014-3618: Heap-overflow in formail when processing specially-crafted email headers. (Closes: #704675, #760443) Checksums-Sha1: a319689ee111c4f976a02eee136ab73915752ba6 1674 procmail_3.22-20+deb7u1.dsc cd4e44c15559816453fd60349e5a32289f6f2965 226817 procmail_3.22.orig.tar.gz a7aa667547579929888debf0c7b8ca1e4e28d50f 18848 procmail_3.22-20+deb7u1.debian.tar.gz ce4d05dbe1e6eb5fd9b0d9478ca50edeb9513989 159226 procmail_3.22-20+deb7u1_amd64.deb Checksums-Sha256: ec1febf9f0aa70ad9334ac756c5c73925c39967650f1d19ca2e4df781415c698 1674 procmail_3.22-20+deb7u1.dsc 087c75b34dd33d8b9df5afe9e42801c9395f4bf373a784d9bc97153b0062e117 226817 procmail_3.22.orig.tar.gz 5bc938cf5fce6260b612729749461656234ce5d16defec6ed8d2393a2cacd601 18848 procmail_3.22-20+deb7u1.debian.tar.gz 09686f52e47b7c4e632c0020ba76c90e9d7994e70799235a098d1120755402e8 159226 procmail_3.22-20+deb7u1_amd64.deb Files: 962c045cd56412abb96ba9ae622e11ef 1674 mail standard procmail_3.22-20+deb7u1.dsc 1678ea99b973eb77eda4ecf6acae53f1 226817 mail standard procmail_3.22.orig.tar.gz 95409a61e10cc19acb5092dd0e746c00 18848 mail standard procmail_3.22-20+deb7u1.debian.tar.gz 241b8f88bcbc26421b1d71cbbd6ba4ce 159226 mail standard procmail_3.22-20+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJUCExzAAoJEAVMuPMTQ89E1zsQAIfTiAcqDkHcDBYOjkSexwwZ RbOkrgWYiOfKhzwADJoWkoZt1LsWAbjm/b9A9dHxkAWDnV6P1fN9ZcWZGPPAxgH+ y13TBceaJTwlI77i0mkcB/b6ChfYrkie/QOtbFr8+MtIeKj+muVu9ohC5ORj53IP Po0HPTXUXzGr//AB9CgtdhgAPuO8R59iRy7e8DQ0u8cTOIGrgWZ5cS95SVt+jOyd keRzmMa4RT1oCriD1+kL4EuBAlNT1MDaMTecqC/hemh6E9UdIPtbh6d8Nrd3UBkT 6rgb8opXWpjt4CHDTTuGIPxYTLxqLwMnaX2SrPyHU54VdXzICoM+DNqwMtQCSHAF NEvYkINCLJ72hG9TB74XWTNgu5xEnsfvnVuYWohkKWsUF3t/jlTVkKOnvbNl962D koNigTHQj8xWcpuyjcH9hLETuFbG5bQHCrJWOAWfZRvh1+WKrZQTCj1ymqy61Ong hKAXoPvTcJbFmklKPXteiZIwa1mJIuy36vuXgjIzMz8I0i1ERbAUEyCo4BJgmL4B sWdfy0TdLhtZuDVDdP5opJHObWLb9eIx4DJLr4NH9zhJP6nFw8EorZ6tV3G3d289 25I+sRzdfIBEgEfYl1C7LbqbgnWSchhn076Ccj5rpoSSLEo3fVQXPaV/1H/qDEdR 0hMbqcx31C2EyJKXLZh4 =3eMR -----END PGP SIGNATURE-----