-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 24 Nov 2014 13:49:52 +0000 Source: dbus Binary: dbus dbus-x11 libdbus-1-3 dbus-1-doc libdbus-1-dev dbus-1-dbg Architecture: all source Version: 1.6.8-1+deb7u5 Distribution: wheezy-security Urgency: high Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers@lists.alioth.debian.org> Changed-By: Simon McVittie <smcv@debian.org> Closes: 769069 Description: dbus-1-dbg - simple interprocess messaging system (debug symbols) dbus-1-doc - simple interprocess messaging system (documentation) dbus - simple interprocess messaging system (daemon and utilities) dbus-x11 - simple interprocess messaging system (X11 deps) libdbus-1-3 - simple interprocess messaging system (library) libdbus-1-dev - simple interprocess messaging system (development headers) Changes: dbus (1.6.8-1+deb7u5) wheezy-security; urgency=high . * Fix CVE-2014-7824: - Start 'dbus-daemon --system' as root under sysvinit (it already starts as root under systemd), so it can increase its file descriptor limit - Add patch from upstream to increase dbus-daemon's file descriptor limit to 65536, completing the incomplete fix for CVE-2014-3636 * Fix regression introduced in 1.6.8-1+deb7u4 (Closes: #769069): - Add patch from upstream to restore auth_timeout to its previous value, since the shorter value causes boot failures on some systems - Add README.Debian to dbus package, documenting how sysadmins with hostile local users, and systems where boot succeeds with the shorter value, can get the shorter value back Checksums-Sha1: ddd17c791742e66fb01eb6f8f1157d758a4bf65f 2585 dbus_1.6.8-1+deb7u5.dsc f2c4ea3c8b8d48504df92439f3a73e130c6dfb7a 49624 dbus_1.6.8-1+deb7u5.debian.tar.xz 11af121c453fd729c2274fb9511a07b3d5c30480 2293984 dbus-1-doc_1.6.8-1+deb7u5_all.deb Checksums-Sha256: 774f9812dfb9d288c4afbd89555743f8ba8ebdd8ec66c53b30bdcfd0c0bc70c5 2585 dbus_1.6.8-1+deb7u5.dsc 884e1811c8ee978f788904f788dd7ad22398e1a41334d69b7ffa46423d3d816f 49624 dbus_1.6.8-1+deb7u5.debian.tar.xz dff00029bdb7021c89fa52526016979f4388dc76ecea771637786ccc04298c86 2293984 dbus-1-doc_1.6.8-1+deb7u5_all.deb Files: 82d13a3b39c4925814bf18b564a5879f 2585 admin optional dbus_1.6.8-1+deb7u5.dsc c2b5cdf453071fea1eedff1657c28d84 49624 admin optional dbus_1.6.8-1+deb7u5.debian.tar.xz 58ae23dd5b0d0d44ec0913bf72c677cc 2293984 doc optional dbus-1-doc_1.6.8-1+deb7u5_all.deb -----BEGIN PGP SIGNATURE----- iQIVAwUBVH91h03o/ypjx8yQAQgNwA/+MN62DAy9BHIk85HqrFFfE/ndva+bJuj6 2fP/Gn6Mq1dBWO3+BsbLWTnmAdHMn521KxuOsv4Q0GslOkgJExjYEqmRhtUqbW/d AZDP5lrPinDTROcIfNWPyjvEMVv0E0JPBGi+SsbSVDNQSQJjNotj+PFmHWC7WiUL nbdumOFxdaRTPhnqRJ07oY33Oww7irnKpawgJZET5AoyeXAHzn+zCT8sfxHn+Mph sFvNG/hLX6E/3gpF2zedyvIh7N7hw/HuzA0xfX5eJGCPeq7xkVjFFsPzeMgFWzHM xwzv6FlLZFmH7MBWr2S7FRp4EN86LBVUirSufDLuJeZxyNxY5ikXDGbPah0wMD0w 0RgKQoWvP4xdAtZh26OTCgAVy8LuFa6ldBKZHRe5DsdsaN+5XGQ3BdN9M0a2sm6D xamsgdXlqSLiQx6XlwVxM2gUwXLWZ95Vnl5IMp2MclwxURA0ylDRmk+BhP9Pmt7h mYMYtHLqTGeeGgSUpo4vcqedCsIkg3+jmBOXC+YvC5YhUaaYfhnByV267QW1+Otk QH5rGyKHQ40O1n82CPSRwMcLn2TuO+sXxRGdATix8cHCurbR31Bnzcyxx9Y6XoaI FEUPZk9uR628MxR4alFZ9zpSVEHvHXdNjXMFAr7bxrHc46/FC0dwq0aKh+wOcz2f QuOdEe5tklI= =EtO7 -----END PGP SIGNATURE-----