-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 08 Jan 2015 10:47:24 +0100 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg libcurl4-doc Architecture: source amd64 all Version: 7.38.0-4 Distribution: unstable Urgency: high Maintainer: Alessandro Ghedini <ghedo@debian.org> Changed-By: Alessandro Ghedini <ghedo@debian.org> Description: curl - command line tool for transferring data with URL syntax libcurl3 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl3-dbg - debugging symbols for libcurl (OpenSSL, GnuTLS and NSS flavours) libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4-doc - documentation for libcurl libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.38.0-4) unstable; urgency=high . * Fix URL request injection vulnerability as per CVE-2014-8150 http://curl.haxx.se/docs/adv_20150108B.html * Set urgency=high accordingly Checksums-Sha1: 4581638993a527bc1f839a068bbbf36585304444 2625 curl_7.38.0-4.dsc bc8b9fdbe1c4b84c3d31382066dd507c4e2fda33 29988 curl_7.38.0-4.debian.tar.xz c7cabc2501fa509d2892f078708b116396884907 199792 curl_7.38.0-4_amd64.deb 2999483a4b3a015b1cc315755b3973c976614fd9 258580 libcurl3_7.38.0-4_amd64.deb b66929d636a8e0346e76bd36b66327fa94845ea8 250644 libcurl3-gnutls_7.38.0-4_amd64.deb 50bf2266bf4a3719f7a6ef73667040fab24b14e9 261962 libcurl3-nss_7.38.0-4_amd64.deb ee2979f409d85d3a4c589adeb8392a2b545e39e8 335904 libcurl4-openssl-dev_7.38.0-4_amd64.deb 2a9710875a181aa9fc126eec9faec3eba65a4a36 327198 libcurl4-gnutls-dev_7.38.0-4_amd64.deb 0e4b8bb0ac6facb9b1e870aa8cda39490ee4860a 339674 libcurl4-nss-dev_7.38.0-4_amd64.deb a003e492f74db5e808fea81fc406c807ceb93514 3365314 libcurl3-dbg_7.38.0-4_amd64.deb 2349e3761fb942f8710872f7b9ad10982fcc8aa8 1066750 libcurl4-doc_7.38.0-4_all.deb Checksums-Sha256: 9202c9ea27ce58a244aab84dac3c2e4335e57b68f02e778ca087cff44c5ed880 2625 curl_7.38.0-4.dsc 63aba5be2e872a57e2db47cbf53e61a7fe9c64710b8f498843b1aca123f6c6be 29988 curl_7.38.0-4.debian.tar.xz 112601860587d052865d80d5a1dd8488087357ef0c9f54cac32fd8ef45e71f51 199792 curl_7.38.0-4_amd64.deb 64236279f7d9933a3b3d137fba4b40c6c1b052ed16061650cc97adaceb8cdb10 258580 libcurl3_7.38.0-4_amd64.deb 0554e49b4b9ca5cec63c1994737401bb9a6f46979bfa45a68f5e838534ae6bd5 250644 libcurl3-gnutls_7.38.0-4_amd64.deb 964aa181723a7c31053c45ab0e2240e434c72ff3fafddadb6d8d8d4487b11944 261962 libcurl3-nss_7.38.0-4_amd64.deb 3d81a36999abac89a27d3e8b1e3904fa44cc312dbc0bb43876ec73eb2a35eab4 335904 libcurl4-openssl-dev_7.38.0-4_amd64.deb 985a9006e152cf4e9758f5713cb7b99b63e7f7a42e8b0d338c0cc136d1b60c70 327198 libcurl4-gnutls-dev_7.38.0-4_amd64.deb 3e8f4d02a01285032452c993953b55046ed3215435633b7425747ba08d22ee8b 339674 libcurl4-nss-dev_7.38.0-4_amd64.deb 325dae302ce66f974f40874e7be7fea0d581e9beee2418ec14bd4f3e444c4dc4 3365314 libcurl3-dbg_7.38.0-4_amd64.deb 866865b3ca17d034ebf6d14126b08fe5b91da2a5f35246a930488729416d3800 1066750 libcurl4-doc_7.38.0-4_all.deb Files: 6cb4ab2395dc7445caa59c75c71acf89 2625 web optional curl_7.38.0-4.dsc f197f0e97a0633fa06a95a13d2d738c0 29988 web optional curl_7.38.0-4.debian.tar.xz 0aabfb44f7edc0efb4e27bcd33c05f2f 199792 web optional curl_7.38.0-4_amd64.deb 875161b95d7834567398f4e804e940b4 258580 libs optional libcurl3_7.38.0-4_amd64.deb 9414ee5fdc86534279e8158373e08cc3 250644 libs optional libcurl3-gnutls_7.38.0-4_amd64.deb 1744072c45b1549196fd0e9b2da0b146 261962 libs optional libcurl3-nss_7.38.0-4_amd64.deb 991e8e62cc35839cbde1205dcc4ec750 335904 libdevel optional libcurl4-openssl-dev_7.38.0-4_amd64.deb 87a5037c3cf1bb63247b70201a854af7 327198 libdevel optional libcurl4-gnutls-dev_7.38.0-4_amd64.deb ab0e9bf0811c1a146cefa72621ec4e2c 339674 libdevel optional libcurl4-nss-dev_7.38.0-4_amd64.deb d476c3f975762b9f9c1ce3118132966e 3365314 debug extra libcurl3-dbg_7.38.0-4_amd64.deb 0fa5bbc61cf11690e40c35bf48b1299c 1066750 doc optional libcurl4-doc_7.38.0-4_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJUrlnrAAoJEK+lG9bN5XPLiAYP/1tCo6M6pGiUgmMMkpPRTSBR hA3oLcC0BkTecy7ihzcvJvRW6WFM9Nres8UrEa/geDuXTXhPP2odtm2jeyrvlpTd I10JlCPgk4mzJF8+srE087c95m3kDdjq/iC8pbfkmVU4XQZRzcs3P+pvV5m/Gfdz B6lp/UiovssMC4B0IK6SzT0NJdr+JhqlBbCrN7mK2axKH1lILqw5anMGiq/OD8gD orDjwPNtCLFQeu/30D8KB2PxMRzmPjHmSJG6TJdPjzs9ckSAguypgxK/AdcPUYA2 1JBx4+NCh+nyws+4e3F65xOKBPFYw0sIq07V/ohzIbi4VQOhvHu2xPAuaC69gm6O 2PQhMILMG/vDIeMUqIgiWFGuTOWbcbXLM9BpObL6GxGBBFbsu3Hnau5GiCn5O1SJ 1XaHv/eBuwknOWfJGXVYkkyTQpblLMXHRgC0IdWJZdEqgOL39Wz6cgU/plR3tuYm fAZW0u0rUiNxFobP8JUvuJurweRSqVUtEY1z/9QS9+lCRhW6Q3SWqWetxBYHQiAw 8U8boRfXCZHojghgCn1B+pfHOU9l65tEPlrsB+oMpDtxnUs8gQiDemVpYvYliERY xOAQ/cta3lUR0bLY1/7nJK2Ev1guSZEM4k92f8atEFBBs/miaNI5BNhJ9Rt5kRwO vMy3iaMqSX7+flrCuwu3 =aHKe -----END PGP SIGNATURE-----