-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 24 Dec 2016 14:33:58 +0100 Source: nagios3 Binary: nagios3-common nagios3-cgi nagios3 nagios3-core nagios3-doc nagios3-dbg Architecture: source amd64 all Version: 3.4.1-5~bpo7+2 Distribution: wheezy-backports Urgency: medium Maintainer: Debian Nagios Maintainer Group <pkg-nagios-devel@lists.alioth.debian.org> Changed-By: Jonas Meurer <mejo@debian.org> Description: nagios3 - A host/service/network monitoring and management system nagios3-cgi - cgi files for nagios3 nagios3-common - support files for nagios3 nagios3-core - A host/service/network monitoring and management system core file nagios3-dbg - debugging symbols and debug stuff for nagios3 nagios3-doc - documentation for nagios3 Changes: nagios3 (3.4.1-5~bpo7+2) wheezy-backports; urgency=medium . * Port security fixes from wheezy-security to wheezy-backports. * From 3.4.1-3+deb7u2, add CVE-2014-1878.dpatch: - CVE-2014-1878: Stack-based buffer overflow in the cmd_submitf function in cgi/cmd.c in Nagios allows remote attackers to cause a denial of service (segmentation fault) via a long message to cmd.cgi. * From 3.4.1-3+deb7u3, add CVE-2016-9566.patch.dpatch: - CVE-2016-9566: privilege escalation in logfile opening (ported upstream patch) - CVE-2016-9565: Curl command injection (code removed) Checksums-Sha1: 17a2666b0d342f15dfe3f8ff07996a8265bcdc9d 2359 nagios3_3.4.1-5~bpo7+2.dsc edaf772e3b10ce1420a68124b7142dad1c6337e5 53358 nagios3_3.4.1-5~bpo7+2.diff.gz 864ffa3f5745a7aca2031ed2940680719b7722cd 1968518 nagios3-cgi_3.4.1-5~bpo7+2_amd64.deb 53ace5b05b3595770e3c813c857fcdb68e7347d9 1434 nagios3_3.4.1-5~bpo7+2_amd64.deb 12fa014d25382cd278b81ae7f409248837199dc8 286452 nagios3-core_3.4.1-5~bpo7+2_amd64.deb 7e86f1e9329552a326212fc317f8dda40c1cb354 4459004 nagios3-dbg_3.4.1-5~bpo7+2_amd64.deb 8668b380d128c41fdae905d0521dececd15b306e 80610 nagios3-common_3.4.1-5~bpo7+2_all.deb 60f1c8d439540fb037eca0338a9759dd3d7ac54c 26308 nagios3-doc_3.4.1-5~bpo7+2_all.deb Checksums-Sha256: a293302a493a2ba56942bd726d85c9376a137364a78bd2724123d4b0fda8b86f 2359 nagios3_3.4.1-5~bpo7+2.dsc e77e10b70b4f52bdded984bd266a774c0e927a55343176b230faece0a09420cd 53358 nagios3_3.4.1-5~bpo7+2.diff.gz 04b579605602ceb0892abd75b9831742409973b77c3153582e920a96746caa7f 1968518 nagios3-cgi_3.4.1-5~bpo7+2_amd64.deb 7b7dde7e2811c22cafe3d79ed0c8e56b978522da9786d88a545ef254e04831f9 1434 nagios3_3.4.1-5~bpo7+2_amd64.deb 870a363e1badab771056972ce58cda293dd79542c3d042a8d20d85a909d611eb 286452 nagios3-core_3.4.1-5~bpo7+2_amd64.deb 5c478951c83dd75320093dd1f48a47d736837834973b7259c1654a1a570b5661 4459004 nagios3-dbg_3.4.1-5~bpo7+2_amd64.deb 163a8d6cb7887f98bdc305683463785ad3c7c7ec8f1dd03ad210aa36b56f68ac 80610 nagios3-common_3.4.1-5~bpo7+2_all.deb bd28ea87b045a1377ce18ad58e09e3f10abf461ad38d8ccdd522de1ea5a8e7bf 26308 nagios3-doc_3.4.1-5~bpo7+2_all.deb Files: 9001021d520f487130455347ade45307 2359 net optional nagios3_3.4.1-5~bpo7+2.dsc e2f4890ba82dd7c4ada2822ee62c961c 53358 net optional nagios3_3.4.1-5~bpo7+2.diff.gz fffde4763584d2a3b1b35adf80269f3b 1968518 net optional nagios3-cgi_3.4.1-5~bpo7+2_amd64.deb 80af9b743d01458c6ed5efe2ea01d38a 1434 net optional nagios3_3.4.1-5~bpo7+2_amd64.deb 7683cb1f826ce3b954e70393fae38a93 286452 net optional nagios3-core_3.4.1-5~bpo7+2_amd64.deb 3d1a43616fa1baed0f8578cc76a86e8f 4459004 debug extra nagios3-dbg_3.4.1-5~bpo7+2_amd64.deb 29128583f4f6809b0324d65a38b651f7 80610 net optional nagios3-common_3.4.1-5~bpo7+2_all.deb 0d1f410031723c52884d3cda19bd0287 26308 doc optional nagios3-doc_3.4.1-5~bpo7+2_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEELIzSg9Pv30M4kOeDUmLn/0kQSf4FAlhefB4ACgkQUmLn/0kQ Sf7cZxAAnx0X6hPuyuxxJxfrd/ZnBozk3F5yDM7cS1JK30EcZG/i8ac1yFIfE07E oEtj/k2vKm7pV6L4qp+jW8CJQBx6uoRQVPFPE4GrYD2PODgL/nA2oPBznHIN6kNJ gVzojAkiqil7C7516tt8LrJyHKh7q0MJ9IiW16QweZXZgQdwgEQsJoWqxtO2rCpP VgE4y6eb21e9pJ96zKn1ms3gWhG4toSIQtTa2TirY6AmqC1coAIQHsczINEjXb9O 9OGZExshu4HvblQKT04GNXou9ztQcG8hKyFv53VxuxYhzs7gX665KiESaAbRPXcN iJptjdXSF1yz9w2dh9vR5f/AjBLkZyOrMeVFCxuEJPIieo3w7HtyXGx95cWCik4F bV/LUQCyFWszvJgkFH0APzc5esPyfM9Tqx5lU6UMvnlrmpbX2o6qB9l5O25wNzWa tuQ7z8hTTYm2Bm94R7waVo9cbvX4cG/miSulDnYHp/5DgCpWHuRnLtrmo7ZqrYoU 9eqj9fISWOl/zXilWJvclhIZn0JVOS2XYi1UM8DHYXpHCFXA4TXZk6Ftj5nN88kH q9JhvXmXB1LWbgv/E56JU2lf8BXmynFuu3vnOdikWZvISe8pF7kHn8P8KOzDbO0U zMFMvjvnmpMmjJEUkd6N0MxR8kTg74AhM/259U4JVsUK4G6tYJE= =fxp7 -----END PGP SIGNATURE-----