-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 06 Mar 2015 18:46:50 +0100 Source: libssh2 Binary: libssh2-1 libssh2-1-dev libssh2-1-dbg Architecture: source amd64 Version: 1.4.2-1.1+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Mikhail Gusarov <dottedmag@debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: libssh2-1 - SSH2 client-side library libssh2-1-dbg - SSH2 client-side library (debug package) libssh2-1-dev - SSH2 client-side library (development headers) Changes: libssh2 (1.4.2-1.1+deb7u1) wheezy-security; urgency=high . * Non-maintainer upload by the Security Team. * Add CVE-2015-1782.patch. CVE-2015-1782: Using SSH_MSG_KEXINIT data unbounded. Checksums-Sha1: 307025f4000f8b4797f9819a574a56090270ee03 1859 libssh2_1.4.2-1.1+deb7u1.dsc 7fc084254dabe14a9bc90fa3d569faa7ee943e19 679992 libssh2_1.4.2.orig.tar.gz a98087867217b706d8714c6a5863f73a3f2c14d5 7299 libssh2_1.4.2-1.1+deb7u1.debian.tar.gz 8b56421c7725bae4e95626fbd7eca5d211e8b33f 133758 libssh2-1_1.4.2-1.1+deb7u1_amd64.deb e78bf2ef64ce1eeb86cfa3e680c7bbf30d789e88 311492 libssh2-1-dev_1.4.2-1.1+deb7u1_amd64.deb 7d2e452995d729793365ae97fbf2cfe83844336c 271176 libssh2-1-dbg_1.4.2-1.1+deb7u1_amd64.deb Checksums-Sha256: 99de736174beb2d1690aff15e3fecf4d7ab16c3a7b2ed2a19d81da3131260f6a 1859 libssh2_1.4.2-1.1+deb7u1.dsc 418c09061fb9c3c26fec391a35a062780b21b3199885e3b27054619582469bd3 679992 libssh2_1.4.2.orig.tar.gz a217c8c2acd097e40e5f3623d135e2139aefb480e12f40d8f36aee33ed2c8ea4 7299 libssh2_1.4.2-1.1+deb7u1.debian.tar.gz 9738159425ebd9ef854172586f9ba4502cbbb929a5a05147d256c4a45626ecb4 133758 libssh2-1_1.4.2-1.1+deb7u1_amd64.deb 8badd5f54001132427c30e64c9eee0c7374b3ffae2d78fae9df7d5c799010847 311492 libssh2-1-dev_1.4.2-1.1+deb7u1_amd64.deb e3872d23b5d3cb2d30c312cfabfc8d43bf928e187bbb4f2fea198083f8924bae 271176 libssh2-1-dbg_1.4.2-1.1+deb7u1_amd64.deb Files: 0d61a08e98ea1afda192dd25bd9c1fa3 1859 libs optional libssh2_1.4.2-1.1+deb7u1.dsc 42e2b3796ac07fc1dbafc7abcc002cd3 679992 libs optional libssh2_1.4.2.orig.tar.gz cf8ca8de017b8f4c28e1eaf0aa4d235b 7299 libs optional libssh2_1.4.2-1.1+deb7u1.debian.tar.gz 7babd3e2d174b6f15c993f30e0a50f33 133758 libs optional libssh2-1_1.4.2-1.1+deb7u1_amd64.deb 3796ff3e1716bdd44448338fa222a159 311492 libdevel optional libssh2-1-dev_1.4.2-1.1+deb7u1_amd64.deb 1fc3ca73fa38571c091114907693d8ea 271176 debug extra libssh2-1-dbg_1.4.2-1.1+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJU+yuuAAoJEAVMuPMTQ89EcboP/3o7m7kOB5YsRQGmm3u5gl0R n9PvVlYLu5TyBNhi4DQb6BiK1S+PhStRppDl+Q15mHXhaOFMWDzZyabsioOgET+O DFTI5TXUnKYgVymR8hxH53lWZJi+QnPsJNnhnkFfe0CFwdjM93g4i0r+Fdw1LolA ZkGLdPVMM+a73lif/SJuUkjAwUzbDlrsIbqGSvTKavIUYFCRghQmKRUS5N4xQpcT oiVKdkkzPcw8TeSrMwZLS5tCX777xCmQ9VrOn2hKP6SAaHokZGevLKgyj2LYWM03 W1ZrJu6sOf8W3HIn2ShoPQSr5jygYdrx1CVWNjwlOXKvaBOxyX5crb+gCBnzf7IX dRCr+Bn54gEKQoQIqF4ASc/WsmcsYKLICn0YsCi/4PuLDGHW+osWIWnTB/FWWVh8 NxIkXWEaVOrs3Mj6jGffiNzN9HMFofRKJM+wWcRK0IWN4MaI0uqe0iCrO0BBbFc4 TIW/E6GPUMP47NtACpqu5lLQLka+3J8K6Zf0+IoYKQI4QeOOUt/bN7P7tE6hEcCt hhJUzD2dyB/u+rTcRZXWQGJM2v/PeOfwJHNS/QJlQqE7HLtmscAs0biQCeXWHvF4 Z8cAq140EHnxvLWwuYnvQ6sVBvK4Eu0wg6dvWIUVpQmbDUxMSkSHYRj17SNoxO9n 9HZPgh4gj6tLKlIfgriY =sq1C -----END PGP SIGNATURE-----