-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 20 May 2008 09:57:16 +0200 Source: gnutls13 Binary: libgnutls-dev libgnutls13 gnutls-bin gnutls-doc libgnutls13-dbg Architecture: source amd64 all Version: 1.4.4-3+etch1 Distribution: stable-security Urgency: high Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Florian Weimer <fw@deneb.enyo.de> Description: gnutls-bin - the GNU TLS library - commandline utilities gnutls-doc - the GNU TLS library - documentation and examples libgnutls-dev - the GNU TLS library - development files libgnutls13 - the GNU TLS library - runtime library libgnutls13-dbg - GNU TLS library - debugger symbols Changes: gnutls13 (1.4.4-3+etch1) stable-security; urgency=high . * Apply patch from Simon Josefsson to fix three security vulnerabilities (GNUTLS-SA-2008-1): - Fix crash when sending invalid server name (GNUTLS-SA-2008-1-1) - Fix crash when sending repeated client hellos (GNUTLS-SA-2008-1-2) - Fix crash in cipher padding decoding for invalid record lengths (GNUTLS-SA-2008-1-3) Files: f3b7538539a9a255eac70d8ed816e2d2 1251 devel optional gnutls13_1.4.4-3+etch1.dsc c06ada020e2b69caa51833175d59f8b2 4752009 devel optional gnutls13_1.4.4.orig.tar.gz 12dfc774f73fbfff5a9853255eb4044e 19173 devel optional gnutls13_1.4.4-3+etch1.diff.gz 92f5504bb67e96400b279148ff36954a 2305156 doc optional gnutls-doc_1.4.4-3+etch1_all.deb 830c1b21cdfd37cb104c8f5638e8ecd2 389130 libdevel optional libgnutls-dev_1.4.4-3+etch1_amd64.deb 339849e531211778332d01e39e806b37 314566 libs important libgnutls13_1.4.4-3+etch1_amd64.deb a044b7f079d9e26263e019cc097961d2 538864 devel extra libgnutls13-dbg_1.4.4-3+etch1_amd64.deb c6be7ccc98eed7ed736e62494b816698 182806 net optional gnutls-bin_1.4.4-3+etch1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iQEVAwUBSDKJPb97/wQC1SS+AQJjhQgAkm8/Www4JSyMVN2texLLxtiKwXtL3+1u Ve3WxPUeMFQ2X8TBQOUFuDZF9V5IsllraRQRkQwooCV52cY0vewX7cZYVkKyR8Vn nj0OkTAjexURDFdqOnlkUIG2CPQdV/ycl+ti/8ZW5UMWrVVlgdypIn9vj3C4dTqQ G99XaUZtFzSrVn/romS+uGD+mUzMhynXGd6EmFOX5BzHd8ZDA/tbw9VZ6Nhwovix CnQHVC4orr42WardcC/MmqBql0M0LxOtyqdSN82n96rbb+YARyCRNYPxnVG5zbY8 KRLUCO78ugFwptuJqqXSFD8ycMFzkkqBwNSwZE/DTxafWXmGR5qqMQ== =KwaP -----END PGP SIGNATURE----- Accepted: gnutls-bin_1.4.4-3+etch1_amd64.deb to pool/main/g/gnutls13/gnutls-bin_1.4.4-3+etch1_amd64.deb gnutls-doc_1.4.4-3+etch1_all.deb to pool/main/g/gnutls13/gnutls-doc_1.4.4-3+etch1_all.deb gnutls13_1.4.4-3+etch1.diff.gz to pool/main/g/gnutls13/gnutls13_1.4.4-3+etch1.diff.gz gnutls13_1.4.4-3+etch1.dsc to pool/main/g/gnutls13/gnutls13_1.4.4-3+etch1.dsc libgnutls-dev_1.4.4-3+etch1_amd64.deb to pool/main/g/gnutls13/libgnutls-dev_1.4.4-3+etch1_amd64.deb libgnutls13-dbg_1.4.4-3+etch1_amd64.deb to pool/main/g/gnutls13/libgnutls13-dbg_1.4.4-3+etch1_amd64.deb libgnutls13_1.4.4-3+etch1_amd64.deb to pool/main/g/gnutls13/libgnutls13_1.4.4-3+etch1_amd64.deb