-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 16 May 2016 05:51:27 +0000 Source: expat Binary: lib64expat1-dev lib64expat1 libexpat1-dev libexpat1 libexpat1-udeb expat Architecture: source amd64 Version: 2.1.0-6+deb8u2 Distribution: jessie-security Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org> Description: expat - XML parsing C library - example application lib64expat1 - XML parsing C library - runtime library (64bit) lib64expat1-dev - XML parsing C library - development kit (64bit) libexpat1 - XML parsing C library - runtime library libexpat1-dev - XML parsing C library - development kit libexpat1-udeb - XML parsing C library - runtime library (udeb) Changes: expat (2.1.0-6+deb8u2) jessie-security; urgency=high . * Avoid relying on undefined behavior in CVE-2015-1283 fix. * Apply upstream patch to fix the root cause of CVE-2016-0718 and CVE-2016-0719 vulnerabilities. Checksums-Sha1: 54c77c24938e8a313f64b22ece9b45336fe0d66b 2278 expat_2.1.0-6+deb8u2.dsc 0bdac1a8a9f9279c3bddc4bdbff0df32e90d6c10 20016 expat_2.1.0-6+deb8u2.debian.tar.xz f402c3c2ed999ec90c60726795d31c15dbe2cdca 126358 libexpat1-dev_2.1.0-6+deb8u2_amd64.deb 48a09a5ef71fb105af967bbaf3ffdf569cbd2076 79400 libexpat1_2.1.0-6+deb8u2_amd64.deb bfe901ac9558727bed421df4a615354847d1d003 52022 libexpat1-udeb_2.1.0-6+deb8u2_amd64.udeb 5ea4cea92c4cc187cad3056f2b7d282701616c9e 24016 expat_2.1.0-6+deb8u2_amd64.deb Checksums-Sha256: 0e9218d2cc9c230ff4a71fd7517e23be424f8f015f95c6d1da98e905e54fc2f9 2278 expat_2.1.0-6+deb8u2.dsc c9d6039ddb28dd5445d7218ec6e557151e1226d34a6d228033c91895b62ce7e8 20016 expat_2.1.0-6+deb8u2.debian.tar.xz f7beff225dc7c1cb16e38adab907e03308f2709a50a74c514e5d632711dc1e72 126358 libexpat1-dev_2.1.0-6+deb8u2_amd64.deb 70abf38f7a6d3b1f26dcd4666aba2c6893525bdc8b054d5187632e99c0510d41 79400 libexpat1_2.1.0-6+deb8u2_amd64.deb 197563ba93cdda93d8fdfa9c40be283b8175ed4d031a642671eb7d702b97e90d 52022 libexpat1-udeb_2.1.0-6+deb8u2_amd64.udeb 2e42cb7495f5f17cd3e820512707fbd760180936376ce52d1a58cdf0013472c9 24016 expat_2.1.0-6+deb8u2_amd64.deb Files: 9fe84288aad884217f49b4cad0ce106d 2278 text optional expat_2.1.0-6+deb8u2.dsc 014a753a751d5dc0c3058704c3bbc1c5 20016 text optional expat_2.1.0-6+deb8u2.debian.tar.xz c442721b10c6b75bdff5821d53a2471d 126358 libdevel optional libexpat1-dev_2.1.0-6+deb8u2_amd64.deb 26e8009436760246408bddf1b3b69a65 79400 libs optional libexpat1_2.1.0-6+deb8u2_amd64.deb 9b795a4d56f02413eb144fe0bcf99ebb 52022 debian-installer extra libexpat1-udeb_2.1.0-6+deb8u2_amd64.udeb 3c82bc9439ce5fab765db9d7656c456c 24016 text optional expat_2.1.0-6+deb8u2_amd64.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJXO1TBAAoJENzjEOeGTMi/zEEQAJgZgch7YM2RC/nOG6uPVDVw OlGixXxhLdtimwaKpBStOI/ccKuuDzDRoxrjsI39G2q8SiFz49V8/Gn4IOPKsyiS hVCuZv4GCcGBA/82Sz1NBb2Z5gTVKxvDY66Ub8PK14uekWdJML+AMpXYhhUNumBr DIKzQ/8r0WGSVnWCR0z2UfaOSZ2+Hti4z8te+FwzfT5TrWc8GhXdIJlKEt50Md+v UB/LmKmCgzVfijfxvMxjmcuzyEQF9FKz9PTClC/0uovcfYjj4vJc+BRrfuTnfiUl FyOUSGhby+T19wuEaFUnpwMLHtNamRcEpMrpo8xqA3G7gWtRFr+vZAoy1upv0XDb y2VU6QZVmY7IOpgFLYfsaWK+rVqWlV65WA3KJPGjjXsIC6GMyfSMee4Sp4QhWkXh liYOJ2SotiHoYzmP6kQjMFh9Xzj7qr42EHJoB5oFSIdty7nLG7GL3ruqxlXQ5GJG QAvFF9ZNCMsnt3UErtI/zdvb2LiRye4SdxeHWoSv3yn9bzFZpquwyiuOwnb9NoXS wF+S1fKYVGrwp0wuBkBlaG1P2xKEOw1/SLbQV0OcDECiQOqJaDLULG/WyDmqxGHP rIxXHIPvw9r9R1GwVI1BFleWLKU174nWSaDdWWTPcS+hun9cSEbxdtBd/0s+VxGM ni2YZnDWq+hSdeQFi8vs =imeB -----END PGP SIGNATURE-----