-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 15 Sep 2014 09:24:15 +0200 Source: apt Binary: apt libapt-pkg4.12 libapt-inst1.5 apt-doc libapt-pkg-dev libapt-pkg-doc apt-utils apt-transport-https Architecture: source all amd64 Version: 0.9.7.9+deb7u3 Distribution: wheezy-security Urgency: high Maintainer: APT Development Team <deity@lists.debian.org> Changed-By: Michael Vogt <mvo@debian.org> Description: apt - commandline package manager apt-doc - documentation for APT apt-transport-https - https download transport for APT apt-utils - package managment related utility programs libapt-inst1.5 - deb package format runtime library libapt-pkg-dev - development files for APT's libapt-pkg and libapt-inst libapt-pkg-doc - documentation for APT development libapt-pkg4.12 - package managment runtime library Changes: apt (0.9.7.9+deb7u3) wheezy-security; urgency=high . * SECURITY UPDATE: - incorrect invalidating of unauthenticated data (CVE-2014-0488) - incorect verification of 304 reply (CVE-2014-0487) - incorrect verification of Acquire::Gzip indexes (CVE-2014-0489) - incorrect apt-get download validation (CVE-2014-0490) Checksums-Sha1: 3ad56afea094c83da13ecd9b9d1c916dff437c1a 1724 apt_0.9.7.9+deb7u3.dsc 8e01a6f4460ada05178394e9fde70484dc4eb38e 3401392 apt_0.9.7.9+deb7u3.tar.gz 81cd551b45a42b6ba10b1a853234cae7f0ebc163 261672 apt-doc_0.9.7.9+deb7u3_all.deb 4198766299677292b54dfc5df6b8362854ddb806 963694 libapt-pkg-doc_0.9.7.9+deb7u3_all.deb 6664a6a557ca208342ae31b0cf2c187b6cd62d90 891392 libapt-pkg4.12_0.9.7.9+deb7u3_amd64.deb 84de7581a19619d1390cdd1caa2fb6294719a265 166906 libapt-inst1.5_0.9.7.9+deb7u3_amd64.deb d7fe8910c646829b2e2ae9ee5aa5b24e0805cafa 1261774 apt_0.9.7.9+deb7u3_amd64.deb 7263da3ebb532bc12fd8470f45151eae7754badc 187254 libapt-pkg-dev_0.9.7.9+deb7u3_amd64.deb 55ca07edc07c141b1beacdcf208e6e8dd0ece619 377952 apt-utils_0.9.7.9+deb7u3_amd64.deb e855d94dc3697ecf3799e602def0a2d061d929e2 109012 apt-transport-https_0.9.7.9+deb7u3_amd64.deb Checksums-Sha256: 3386050f24ea790fb289d66b3a5ce5c0d301685361a9e47e9faffa23f3cd66ad 1724 apt_0.9.7.9+deb7u3.dsc f83368772470b6e0787dd7910dfbe1c736f64ed09a5874a5685aa76c8774d762 3401392 apt_0.9.7.9+deb7u3.tar.gz e2dc02c1ce880b3f7acf9caa280a2825723f3fb7801fd7abd241f1fd15a0956c 261672 apt-doc_0.9.7.9+deb7u3_all.deb 23d0609c6e41f5008e61b353f86be0f8366490d2d77878f483ce9d7232763656 963694 libapt-pkg-doc_0.9.7.9+deb7u3_all.deb 432bd0b846772e38403b02bc13a7e9fd686d81a405456a47edae210cc752ef32 891392 libapt-pkg4.12_0.9.7.9+deb7u3_amd64.deb 7b961d8c4fc456ab1d41a168f82896f3d0203c55e0958e0c70a5eddb2fbe79f0 166906 libapt-inst1.5_0.9.7.9+deb7u3_amd64.deb cfd9d742f7c99d55214257fdad42ead547547c5a05af9d4569a256205af28fa7 1261774 apt_0.9.7.9+deb7u3_amd64.deb 7371f20d17da2a6890b83b78f95465845fefd5ef11e3f3e9b965e8a7fddd1442 187254 libapt-pkg-dev_0.9.7.9+deb7u3_amd64.deb 866953b6c849bade96a6d0fb353a273fb7f44a6d97c4b7367e23345419cccf08 377952 apt-utils_0.9.7.9+deb7u3_amd64.deb 8262b4174ac43f2e440d54b9d6eac4bb7b23d4af55fc4be53fed36d391d4fc2f 109012 apt-transport-https_0.9.7.9+deb7u3_amd64.deb Files: 956569e118e0f6f7427b5a73c0ef068f 1724 admin important apt_0.9.7.9+deb7u3.dsc 7fc9bb670a351aaaac76b69b4737c463 3401392 admin important apt_0.9.7.9+deb7u3.tar.gz f2ce67116a4e8373dad84245f16d0ee1 261672 doc optional apt-doc_0.9.7.9+deb7u3_all.deb 191b3e0b9de18ac18077e973594eeefa 963694 doc optional libapt-pkg-doc_0.9.7.9+deb7u3_all.deb ee81420cf51c2f2b2f1ba6c811027b74 891392 libs important libapt-pkg4.12_0.9.7.9+deb7u3_amd64.deb ff15c9255997cf4d372a59b43effe638 166906 libs important libapt-inst1.5_0.9.7.9+deb7u3_amd64.deb 5a1fbd8f199be3d0563455fe08af83a7 1261774 admin important apt_0.9.7.9+deb7u3_amd64.deb 198425090440eed67c9ea965b3ce8188 187254 libdevel optional libapt-pkg-dev_0.9.7.9+deb7u3_amd64.deb 9f3ef71c662c6bafa9d36afdc6a81845 377952 admin important apt-utils_0.9.7.9+deb7u3_amd64.deb 6394ce2f4dae921f790e65cafc3a1aee 109012 admin optional apt-transport-https_0.9.7.9+deb7u3_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iEYEARECAAYFAlQWmBAACgkQliSD4VZixzTQmwCgj47A5MJu/He6qNGZQubpwf0d ERQAnA0wQoaDLEs1rHwSKLyorpTqGFwK =59G/ -----END PGP SIGNATURE-----