-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 06 Aug 2009 09:22:28 -0500 Source: apr Binary: libapr1 libapr1-dev libapr1-dbg Architecture: source amd64 Version: 1.2.12-5+lenny1 Distribution: stable-security Urgency: high Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org> Changed-By: Peter Samuelson <peter@p12n.org> Description: libapr1 - The Apache Portable Runtime Library libapr1-dbg - The Apache Portable Runtime Library - Development Headers libapr1-dev - The Apache Portable Runtime Library - Development Headers Changes: apr (1.2.12-5+lenny1) stable-security; urgency=high . * Fix CVE-2009-2412: overflow in pool allocations, where size alignment was taking place. Checksums-Sha1: e743c2c21004d5cdf4aa1c29c5357df3d6e00f39 1284 apr_1.2.12-5+lenny1.dsc 4b7512ec9abe351c4335b929e6044a78c403ee5b 12398 apr_1.2.12-5+lenny1.diff.gz 12ebc5ee6bba6b66b75e25ff8326fd2d2ad8f4ff 1127522 apr_1.2.12.orig.tar.gz 446129333ed7d8764a79c072a0c0e73e6e6da077 114326 libapr1_1.2.12-5+lenny1_amd64.deb e440de8244ccace5c08ce339d2dbefe90ce12cd4 825740 libapr1-dev_1.2.12-5+lenny1_amd64.deb e3d53d98b04293ec2fe5ee0f929c881d279e302f 54232 libapr1-dbg_1.2.12-5+lenny1_amd64.deb Checksums-Sha256: 86e764a4e7a4f54e19a0b0a2e810eb9368b6ab87d1e4f9ac0106575ba209cc5e 1284 apr_1.2.12-5+lenny1.dsc 8d830bf1de5989ce71c4e04e692284b01fb369bb4e9868c346e342e5f1e829ce 12398 apr_1.2.12-5+lenny1.diff.gz 23759142c483be869a0aec0529c5b8c94745b4dfd1c2c23f38417f4e02adcead 1127522 apr_1.2.12.orig.tar.gz 946f7a704fd8ab5e423e4b0881c4dff10c1ec910b6b26d8d65346af18508010b 114326 libapr1_1.2.12-5+lenny1_amd64.deb 64c6ec45975b737b0349a7d147067897b87724833614fe0f870006f4bfbf6bf2 825740 libapr1-dev_1.2.12-5+lenny1_amd64.deb 77f5b8495d90dcf356ae59d8e8f412356d8d8ebc7e4475f2080cefcb90368298 54232 libapr1-dbg_1.2.12-5+lenny1_amd64.deb Files: 4330306f892fd7c0950b1ccf2537b38d 1284 libs optional apr_1.2.12-5+lenny1.dsc b407ff7dac7363278f4f060e121aa611 12398 libs optional apr_1.2.12-5+lenny1.diff.gz 020ea947446dca2d1210c099c7a4c837 1127522 libs optional apr_1.2.12.orig.tar.gz 851cc08504589c09f08ec9e6efa52ef1 114326 libs optional libapr1_1.2.12-5+lenny1_amd64.deb bf80dbc726c5b691b023e96e463ba88c 825740 libdevel optional libapr1-dev_1.2.12-5+lenny1_amd64.deb 3f23cc38f68bbf926b801b82b3fea917 54232 libdevel extra libapr1-dbg_1.2.12-5+lenny1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFKfCdRXk7sIRPQRh0RAk1wAJ4mZWaZ6/dmB8Q+y+lVouKxDZKTLgCdFu3r y+9CuOhdARvao1veBc6ZSJM= =oW/8 -----END PGP SIGNATURE----- Accepted: apr_1.2.12-5+lenny1.diff.gz to pool/main/a/apr/apr_1.2.12-5+lenny1.diff.gz apr_1.2.12-5+lenny1.dsc to pool/main/a/apr/apr_1.2.12-5+lenny1.dsc libapr1-dbg_1.2.12-5+lenny1_amd64.deb to pool/main/a/apr/libapr1-dbg_1.2.12-5+lenny1_amd64.deb libapr1-dev_1.2.12-5+lenny1_amd64.deb to pool/main/a/apr/libapr1-dev_1.2.12-5+lenny1_amd64.deb libapr1_1.2.12-5+lenny1_amd64.deb to pool/main/a/apr/libapr1_1.2.12-5+lenny1_amd64.deb