-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 11 Sep 2015 13:02:05 +0200 Source: openldap Binary: slapd slapd-smbk5pwd ldap-utils libldap-2.4-2 libldap-2.4-2-dbg libldap2-dev slapd-dbg Architecture: source Version: 2.4.31-2+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Debian OpenLDAP Maintainers <pkg-openldap-devel@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: ldap-utils - OpenLDAP utilities libldap-2.4-2 - OpenLDAP libraries libldap-2.4-2-dbg - Debugging information for OpenLDAP libraries libldap2-dev - OpenLDAP development libraries slapd - OpenLDAP server (slapd) slapd-dbg - Debugging information for the OpenLDAP server (slapd) slapd-smbk5pwd - Keeps Samba and Kerberos passwords in sync within slapd. Closes: 798622 Changes: openldap (2.4.31-2+deb7u1) wheezy-security; urgency=high . * Non-maintainer upload by the Security Team. * Add ITS8240-remove-obsolete-assert.patch patch. Import upstream patch to remove an unnecessary assert(0) that could be triggered remotely by an unauthenticated user by sending a malformed BER element. (CVE-2015-6908, Closes: #798622) Checksums-Sha1: fe06a2eed40a948f89e8a592494d5e70869799f5 2800 openldap_2.4.31-2+deb7u1.dsc 6d23d6050c9a17ff5b8dd8bbae6a547b1dd4b938 166309 openldap_2.4.31-2+deb7u1.diff.gz Checksums-Sha256: befbe20207bca94313788ccf5cdc14c2b8507b501635d365000ed0d30dd31a6d 2800 openldap_2.4.31-2+deb7u1.dsc 703c9d535627b129e299f0801b9322f7374e01efe6a07d82ffd692ecf4fb2875 166309 openldap_2.4.31-2+deb7u1.diff.gz Files: f47add3cc793dab108b430d2709a78b7 2800 net optional openldap_2.4.31-2+deb7u1.dsc 07879ddc80e0d93bc058cca59dc94175 166309 net optional openldap_2.4.31-2+deb7u1.diff.gz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJV8uz2AAoJEAVMuPMTQ89EWawQAIHvEI9x+MYLFFRBk+DMFA02 xMiNbbyQrmVm40OGivuU/90BpLsvkRiasE0HovYG3jLc44Ex0FieV9ovkCnW5cWS Cz2Gf3N1CHOMvdiZL6Bag66gHB5mEQF7wIj0FHhuUF5XzfegCfLGOXFSfeoEf3YA /RNdOjCz/sPPOQH66WOm4gZTOl3C3l+n12qKI6zbcZnRqYu+sW9Z9B2KVKVSflEc BJg+PVFG3eR+QllOQpi8UbGz6IJdAanatmq9ppBDpi+5njm+Wh1QzlaivW4a7Erc tI0SVOQCmXtFH827aVoQYb9BjNPGbXB1vEY1Tm22lz611SldqdZNOqtycxv5mZcx HK+6LifNY83wRfClZXW3pvAVyZxnIxe0WlpfoTPkDhXG3kkeD2wTM1AirWU2Bvt5 YBUsy/tgXNrhYMW/2iKZFRaJhox/Xj7j05ghJet3GNg5cK8EzuloEEAgcAbsO04y tyVUtsk6jf9s9gUAVPpVFjP0snA/bfrdY1VGTfcGxRncuBfzbj4e8hYwB90EQt7M d7sBIjwqaylrOeNUNugmbwkVtpi4jbHt+V6VpxPj3789XAkd0dLSiF4AiaynIkZj N1ORA94infp7oA9ny08p/LA2bZb11n+FvonEojieQxfx0eq7fra4C0XbGC/n3v9P 9hFqBROTU+Z7LSXUc2hQ =mnqI -----END PGP SIGNATURE-----