-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 09 Nov 2014 13:07:38 +0100 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl4-openssl-dev libcurl4-gnutls-dev libcurl3-dbg Architecture: source i386 Version: 7.21.0-2.1+squeeze10 Distribution: squeeze-lts Urgency: high Maintainer: Ramakrishnan Muthukrishnan <rkrishnan@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: curl - Get a file from an HTTP, HTTPS or FTP server libcurl3 - Multi-protocol file transfer library (OpenSSL) libcurl3-dbg - libcurl compiled with debug symbols libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS) libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS) libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL) Changes: curl (7.21.0-2.1+squeeze10) squeeze-lts; urgency=high . * Non-maintainer upload by the Squeeze LTS Team. * Fix duphandle read out of bounds as per CVE-2014-3707 http://curl.haxx.se/docs/adv_20141105.html Checksums-Sha1: e783314ac2f7970e77d8a385f1adae1ba369eceb 2287 curl_7.21.0-2.1+squeeze10.dsc d0e5a1184315b9abb9cc54d77d4a0200526f046d 2714501 curl_7.21.0.orig.tar.gz 01cd2582ca7ef95fa7569fab114c0a4c3d527527 109442 curl_7.21.0-2.1+squeeze10.debian.tar.gz 1500e5a0b2c984df472efabda75e5fbf597ca20d 228328 curl_7.21.0-2.1+squeeze10_i386.deb 0a2ed285bac14c09dbdb8caa0d3353620cd45414 281804 libcurl3_7.21.0-2.1+squeeze10_i386.deb 1845fac610b2c862d8b5c4ce03abb84ee7468c09 261430 libcurl3-gnutls_7.21.0-2.1+squeeze10_i386.deb 280a96258deef540fa2fc086a9de421013b0da9b 1060920 libcurl4-openssl-dev_7.21.0-2.1+squeeze10_i386.deb dfbe9b6a4da22cbd292de179083a0b91b4047d71 1039932 libcurl4-gnutls-dev_7.21.0-2.1+squeeze10_i386.deb fdd59fa6e874e3059ce2130b8be1c5d520f829be 112234 libcurl3-dbg_7.21.0-2.1+squeeze10_i386.deb Checksums-Sha256: 7aa554934d9b2d09fb2b2d21eba3869391815124614a006b29094f339bb6ee47 2287 curl_7.21.0-2.1+squeeze10.dsc b3e2047c6f70eb321557af980a9554f0a98fb122d9636f1c98833262eed8de1d 2714501 curl_7.21.0.orig.tar.gz 5c770b5c6a22a5577796ef196398950aa3b09e0a8dd9e3525dc0e18a2eb83ade 109442 curl_7.21.0-2.1+squeeze10.debian.tar.gz 2c9117b154b863129fc45eb389f93739c0c9e4f0175ba29c9659ee61c1644f0f 228328 curl_7.21.0-2.1+squeeze10_i386.deb 058f268adc37e095b3f183ff54bf4ea6f506ef6c45b7fdc214754842f57c55f5 281804 libcurl3_7.21.0-2.1+squeeze10_i386.deb 421e03907024f47a5a8ffa75b13bf565d1fc454f7f4787eaa42e7c27b44a6ca3 261430 libcurl3-gnutls_7.21.0-2.1+squeeze10_i386.deb afa2a36b3edbe7765b4edd891ccab828fb68bd57f85bcfe2897a26d0034245ca 1060920 libcurl4-openssl-dev_7.21.0-2.1+squeeze10_i386.deb 1aac1d03d30c1544c4ce7114c40006e4e6f9f165d313f64497279f82422335c6 1039932 libcurl4-gnutls-dev_7.21.0-2.1+squeeze10_i386.deb 174a1b17bc157569df9b48fcb758f23567bd5c5032e6754251838336262f7435 112234 libcurl3-dbg_7.21.0-2.1+squeeze10_i386.deb Files: a28d3f05d50be8949852cb3a70929037 2287 web optional curl_7.21.0-2.1+squeeze10.dsc 6dfb911a254a1b5ca8b534b98f2196aa 2714501 web optional curl_7.21.0.orig.tar.gz 350c84ab98687caaa46f1239a4ba37c4 109442 web optional curl_7.21.0-2.1+squeeze10.debian.tar.gz 629aacb5efc44f08248b315cb3b63e4c 228328 web optional curl_7.21.0-2.1+squeeze10_i386.deb b0b63fc1e934a6f9610cbd6716b4f370 281804 libs optional libcurl3_7.21.0-2.1+squeeze10_i386.deb 4d87c25e699ff87b4876e63471a5b166 261430 libs optional libcurl3-gnutls_7.21.0-2.1+squeeze10_i386.deb fc6430bd66229c04bab17c0b24cc8a13 1060920 libdevel optional libcurl4-openssl-dev_7.21.0-2.1+squeeze10_i386.deb efbb534c6d7b95f207889f4046025499 1039932 libdevel optional libcurl4-gnutls-dev_7.21.0-2.1+squeeze10_i386.deb 0df59b18b74f9626b5eb997f68bb43eb 112234 debug extra libcurl3-dbg_7.21.0-2.1+squeeze10_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQJ8BAEBCgBmBQJUX43cXxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXQ2MjAxRkJGRkRCQkRFMDc4MjJFQUJCOTY5 NkZDQUMwRDM4N0I1ODQ3AAoJEJb8rA04e1hHVhsP/0hojiISVQ4FOjgeuN/ZD4Xy VZ58xwqK4PiIuIxCqVsMhPliUrh2nkly8wsKZtQhRJ1jt35ZXme9/6uTtasZW80p Rae36waOZZFS5+f6NPO8OpSI7QKdYTptQUz/IMpS/kpVd70XLQQkLgGNYTdvkGZR pq1w2aJIXqaII4c3eRyjE9smwl2HroMOXfs93TM6Oy4RNCPfVj5oEMsC/qELda/b n+EVhRWIgXk5RKOEZBdEHFB6B3B4Bq72fXwx7osy9HtNHbZya2aikk35F0J6gpuk 7BzBwOYd05rfYF5heeNu200/eCbJnlJ8ZtvM47T9P4MYek7yw94G4NxC6CvROxxn xm6P3/outC/pGHASC0nOnIJab/DMTq39qvhfufJDBmr7QPB8PlmlXfMtUXLSqozG 5zfs4pY2+cg+1WTQITtk5Im2kHgHwTCU13Fe70tmp9L10Ljtj/tO5vhqYzfQYWkp OelrKxaAbkgL/5/v1UQiYwZyWUh4VQOAkUZH2w0hTfG0GnKds9Kn4p0V8BzguHRa vQMyzXUSNevIwwdW93jLNmcEJb8sS0Yf6LdKrOGH54DAVeMQUA/elHeDL/9JbnKV c/fk5MB9BwppKOG595baymtD7xFzkv1kueNju1EhfOY6CuZ0uIQxzg1WllQm168W Zf0ki7/axkt/e2/T7CHk =xPhY -----END PGP SIGNATURE-----