-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Aug 2016 16:47:10 +0200 Source: quagga Binary: quagga quagga-dbg quagga-doc Architecture: source amd64 all Version: 0.99.22.4-1+wheezy3 Distribution: wheezy-security Urgency: high Maintainer: Christian Hammers <ch@debian.org> Changed-By: Hugo Lefeuvre <hle@debian.org> Description: quagga - BGP/OSPF/RIP routing daemon quagga-dbg - BGP/OSPF/RIP routing daemon (debug symbols) quagga-doc - documentation files for quagga Closes: 822787 835223 Changes: quagga (0.99.22.4-1+wheezy3) wheezy-security; urgency=high . * Non-maintainer upload by the LTS team. * CVE-2016-4049: Missing size check in bgp_dump_routes_func in bgpd/bgp_dump.c allowing DoS (Closes: #822787). * CVE-2016-4036: World readable sensitive files in /etc/quagga (Closes: #835223). Checksums-Sha1: 14b5b6ca03cec730309d0970a77a953161c7b1ef 2139 quagga_0.99.22.4-1+wheezy3.dsc 0f20e02e772f7bcf17d51cb99ad69e87fb3f547e 43042 quagga_0.99.22.4-1+wheezy3.debian.tar.gz 2dc0a33b963cda7227b537f44f310ad00e22da53 1722506 quagga_0.99.22.4-1+wheezy3_amd64.deb 945b8c41a2911b635f99703b5bbdaad95c099f8e 2530810 quagga-dbg_0.99.22.4-1+wheezy3_amd64.deb 1a8aa4178a12437172b38d02fdce69812047662f 656384 quagga-doc_0.99.22.4-1+wheezy3_all.deb Checksums-Sha256: 29c6e74c8c2002a574ae3ab47a226266fe5201c789c4cb1a2bb73ae65aba8aee 2139 quagga_0.99.22.4-1+wheezy3.dsc 441d2e053436bd40bfa8c4f805bbaaa4a8f89eb0f418115356d5cd24b55541c8 43042 quagga_0.99.22.4-1+wheezy3.debian.tar.gz bd72b35c20e2e9b4dcdebb7b16d5f6a50c98629b07779eedfa01ad2a00f29c1c 1722506 quagga_0.99.22.4-1+wheezy3_amd64.deb 2b71f9b9801d5a66c9162434c3534fe6e21ee952ecd256c5a69c4e9449301876 2530810 quagga-dbg_0.99.22.4-1+wheezy3_amd64.deb 7936467505bb1757479060e569a6dc9e330510260c30c693b0a6721ae5629a2e 656384 quagga-doc_0.99.22.4-1+wheezy3_all.deb Files: ec6be919d15e4956573ff926b338cb97 2139 net optional quagga_0.99.22.4-1+wheezy3.dsc c49c7af84c556637ef079e636c467cc9 43042 net optional quagga_0.99.22.4-1+wheezy3.debian.tar.gz 4031be375f970ee94fb63b71e006c847 1722506 net optional quagga_0.99.22.4-1+wheezy3_amd64.deb 3efe7091290d87acfc758eb4c7bc47d0 2530810 debug extra quagga-dbg_0.99.22.4-1+wheezy3_amd64.deb 3f7e410388f3613c2c565332b354520f 656384 net optional quagga-doc_0.99.22.4-1+wheezy3_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXwA2RAAoJEKyQrD7FJAZeQAwP/R+k0QQSoFINcdVHfBszOQX+ lCbceYUdaroJKjOoLOoKok4IScjZUbGd6Vd1Wg7/1pirnCu95CTuZ6gof1mGXshA 9SFbRSNkIlW0zyUj/KSfskaDN3jbE5GkG/52ZmuLUNYltPULAIjKoTrPnNe0mR7H 9MWhRhK8X9yLtX7jCe7o+23ygIVDNmhbvSkVdQr6j3mvO5qbSIMkDweMvpgCIECr FmhIGJjo5Hi7WqpoxnERbXhjruhCSfhU053muKCW5yM4vp72Te5hhaQaJ3yM8zNg xJJbKMBJx4ORF1L1S+SXX/mUGf0PnsCCl7gYzRn8VkA0RDDQTih4Z9JkPQcBup7X cqamcEYXC3stD/gUaTCZETDeIX2oR/IT5d4IH053oLxcBcwoXam4FwPdudrh9am2 GvTBh/8kZA8wfWnyIWYPhXuzm0oNOWOLHDxvs0IPVNliORb3wpx/GXA+dztYtvMf B6Fe/zo3ynqI0CsaTO9k8eBxkdzPzWIE9smijzmVfeqzszOuJ5ylh1wf6U/Vv/Jv B0CDcgZ99RPsDC1G8zIQ6ALbDzWycQ7GvnnwEQTmgJVQ1n1iUAMRHM+xlLLoRo3f uBxhJZCZTNR+ri3chA7mqj709n6tXhVQ/5PIKnr5F9fgkbJz9WwNWE86+KTLwM6K Ae6w9xdx/THrMArPsbUj =243A -----END PGP SIGNATURE-----