-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 3 Jul 2005 10:52:07 +0200 Source: openldap2 Binary: libldap2 libldap2-dev Architecture: source i386 Version: 2.1.30-11 Distribution: unstable Urgency: high Maintainer: Torsten Landschoff <torsten@debian.org> Changed-By: Torsten Landschoff <torsten@debian.org> Description: libldap2 - OpenLDAP libraries libldap2-dev - OpenLDAP development libraries Closes: 316674 Changes: openldap2 (2.1.30-11) unstable; urgency=high . * [SECURITY] Possible password disclosure (CAN-2005-2069) + libraries/libldap/tls.c: Make sure that TLS is enabled when handling referrals with "ssl start_tls" in /etc/ldap/ldap.conf (closes: #316674). Files: 543363a0c0ba58a0aa1b480f667f7f5e 974 net optional openldap2_2.1.30-11.dsc 11cd927eed22185704da0b5fd520a8f7 455714 net optional openldap2_2.1.30-11.diff.gz 94e67679c9ffc475c10afafa67d9c8e8 149880 libs important libldap2_2.1.30-11_i386.deb b201b7305ac30dbab64728eac529c004 227030 libdevel extra libldap2-dev_2.1.30-11_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) iD8DBQFCx6xLdQgHtVUb5EcRAk3XAJ0eB2FiUHe7WoEHuRX5R2LljHPzPACeNQr+ AVaMDaJI8IgaiXJQIIC9lms= =n5+b -----END PGP SIGNATURE----- Accepted: libldap2-dev_2.1.30-11_i386.deb to pool/main/o/openldap2/libldap2-dev_2.1.30-11_i386.deb libldap2_2.1.30-11_i386.deb to pool/main/o/openldap2/libldap2_2.1.30-11_i386.deb openldap2_2.1.30-11.diff.gz to pool/main/o/openldap2/openldap2_2.1.30-11.diff.gz openldap2_2.1.30-11.dsc to pool/main/o/openldap2/openldap2_2.1.30-11.dsc -- To UNSUBSCRIBE, email to debian-devel-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org