-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 04 Apr 2017 13:04:23 +0200 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg Architecture: source amd64 Version: 7.26.0-1+wheezy19 Distribution: wheezy-security Urgency: high Maintainer: Alessandro Ghedini <ghedo@debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: curl - command line tool for transferring data with URL syntax libcurl3 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl3-dbg - debugging symbols for libcurl (OpenSSL, GnuTLS and NSS flavours) libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.26.0-1+wheezy19) wheezy-security; urgency=high . * CVE-2017-7407: Fix a buffer read overrun in --write-out; if a % ended the statement the string's trailing NUL would be skipped and memory past the end of the buffer could be accessed and potentially displayed as part of the output. Checksums-Sha1: 93373a32f295916c922f2493bb747aba96bb2417 2534 curl_7.26.0-1+wheezy19.dsc 66e1fd0312f62374b96fe02e644f66202fd6324b 3073624 curl_7.26.0.orig.tar.gz 5b81d0fee35dee73f09860f2bf9088aed1dc13a8 65127 curl_7.26.0-1+wheezy19.debian.tar.gz efc01a00cc8563f8620dc0a8a1d38224da39696c 272882 curl_7.26.0-1+wheezy19_amd64.deb 9f3ad2b1fe18d0269117dc3b89ba4d3ad22e1fc4 334490 libcurl3_7.26.0-1+wheezy19_amd64.deb 5a09c82984253a3691f3e15753d35d62c4631481 325680 libcurl3-gnutls_7.26.0-1+wheezy19_amd64.deb 23acacf316e657209f47af35b720342c2f2934a4 332224 libcurl3-nss_7.26.0-1+wheezy19_amd64.deb 54fb89a284c67cc542eaf62147da159430d1bcbd 1275524 libcurl4-openssl-dev_7.26.0-1+wheezy19_amd64.deb b534b94773a5ff047bff1d0f44bbb1e41d780548 1264996 libcurl4-gnutls-dev_7.26.0-1+wheezy19_amd64.deb 4df67a0e6e0097b5c339b9c81cc76317579a6830 1271804 libcurl4-nss-dev_7.26.0-1+wheezy19_amd64.deb e10d24b17f2a355ee7afe5a0d039dd282fd9bfa7 3309412 libcurl3-dbg_7.26.0-1+wheezy19_amd64.deb Checksums-Sha256: b1ea1e14b6edf19df59451d6acc7ab4bf08d43e7b44da0605c34fdb7e45ec84e 2534 curl_7.26.0-1+wheezy19.dsc 79ccce9edb8aee17d20ad4d75e1f83a789f8c2e71e68f468e1bf8abf8933193f 3073624 curl_7.26.0.orig.tar.gz 729313e79a66ec2a4262a692d4a8128e283ee688d406a7d26a26d8676c084be3 65127 curl_7.26.0-1+wheezy19.debian.tar.gz 0d8e643c997e29bba76dca33bacd758183e1ab4b70367f55487f11921628ff39 272882 curl_7.26.0-1+wheezy19_amd64.deb ff9e8ce909affa335f52c1ce94cceaa9fc54ecd509875d497c6c2784ea28c27b 334490 libcurl3_7.26.0-1+wheezy19_amd64.deb 75e4542a6b5fd65fbe0b6e472f5f030a85d83ac14abcb53294fe76ad6887fae5 325680 libcurl3-gnutls_7.26.0-1+wheezy19_amd64.deb a5b0ca987d70102f3a53176c727ddcd2bd54f7c1f6dbc7fd07d4de43ae79f9f8 332224 libcurl3-nss_7.26.0-1+wheezy19_amd64.deb c65f8bc884214d5a3dfa83dbd37177693045f0e5b95384d160f3585cba26ca6f 1275524 libcurl4-openssl-dev_7.26.0-1+wheezy19_amd64.deb 0f62d6b054d87fb9950bf1d7dea86fe19d7ec81eb0ae2e964216998aeddcb65e 1264996 libcurl4-gnutls-dev_7.26.0-1+wheezy19_amd64.deb c3f4bc5ea697cc14320231e9848a2ba55f7f6c1c08ddb4b7687e20726b92c169 1271804 libcurl4-nss-dev_7.26.0-1+wheezy19_amd64.deb bcef3370a5d7521b3d2d2aa9681759bf6e46fbe68f479fec69f9e879595d7505 3309412 libcurl3-dbg_7.26.0-1+wheezy19_amd64.deb Files: 6cb21c42ae729835dbaa23fa7d10281e 2534 web optional curl_7.26.0-1+wheezy19.dsc 3fa4d5236f2a36ca5c3af6715e837691 3073624 web optional curl_7.26.0.orig.tar.gz ded4d826a818a0783a6a421681969533 65127 web optional curl_7.26.0-1+wheezy19.debian.tar.gz d2b2a27970899495cf3302815bcd8bb4 272882 web optional curl_7.26.0-1+wheezy19_amd64.deb c09b4133f5f017fe61cab6501f5e42c1 334490 libs optional libcurl3_7.26.0-1+wheezy19_amd64.deb 1cfe1fe42a4cc9b9c26c0887daaa1093 325680 libs optional libcurl3-gnutls_7.26.0-1+wheezy19_amd64.deb c2aefddbe90c5c07452308156d4342d0 332224 libs optional libcurl3-nss_7.26.0-1+wheezy19_amd64.deb 4a878db1a1eb7f9a5614bb2333dcf62f 1275524 libdevel optional libcurl4-openssl-dev_7.26.0-1+wheezy19_amd64.deb 6ae25ba925aa82f9b7217fcf60b5cb6c 1264996 libdevel optional libcurl4-gnutls-dev_7.26.0-1+wheezy19_amd64.deb 8c09c370d86e9100af4d1eed7f6a098f 1271804 libdevel optional libcurl4-nss-dev_7.26.0-1+wheezy19_amd64.deb fd5d75a8235395c9a8c60d50daf1bfe5 3309412 debug extra libcurl3-dbg_7.26.0-1+wheezy19_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAljjni4ACgkQHpU+J9Qx HljyZg/9EdIX2dsTl4mss4SDy718u3wR41MSRDSRJYL2qooQvPaPHKtSROY9AjU2 Zngpd29S84dWOhgE6VkGU2XBbzaM3klXM7Z2VXJCL6YdNec/gyXSXh1zxYDaS/DW rvXd63xvx7D6VxWEfd1ermmMnaZedOBPuyHqsu4OEg8IkvAXqAmYgVL9BEQJnZPe 2/Q4Ki0zm3+kTFXI/ym603Fz6iaT03N+nr2jdMRWkwtg0TZa5nGLCT3a7esjTDus UfAXhP1Gqe0bwdrI9yQ7nmRp4oeMqAfAeD57Wz02pemPrVD84KJ5KuGpcxHzKSbq 9Y6Lfdd8pQVp4Cks9q5o9DDOHlQo7amDMFpd8Ns6eloVVy0ifVc7FD/G1WnhBCFo cfbaK+dlaAljKx66rFy4OL8JoawXJtykO2dQtAt8VkR2MnUV4VbXzdIyFJom+z47 GtDLsp8+I4HUDFXcFAulUWqivW8+QHw3hyqJJJaKDEzDEFPQHsJqHzw1+ajvrQWe vkexnf/RBqPdrirRPHCrZUkn/MvwBeiFZBNZJ37baMt/i5iY9oZRTJjOpGPhP/5d lTKbk2unQyGD+7LMXPybyE6O+MdzSCsc7iLGGRb+6715R92DM7jVaEccRdMZGGUH U9pCJnfeHEDEoBtWalyqbydqVGkDfbzxX5A/4RB/UcvmcPbrfCY= =2J7D -----END PGP SIGNATURE-----