-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 29 May 2017 21:22:54 +0200 Source: strongswan Binary: strongswan libstrongswan libstrongswan-standard-plugins libstrongswan-extra-plugins libcharon-extra-plugins strongswan-dbg strongswan-starter strongswan-libcharon strongswan-charon strongswan-ike strongswan-nm strongswan-ikev1 strongswan-ikev2 charon-cmd Architecture: source all amd64 Version: 5.2.1-6+deb8u3 Distribution: jessie-security Urgency: medium Maintainer: strongSwan Maintainers <pkg-swan-devel@lists.alioth.debian.org> Changed-By: Yves-Alexis Perez <corsac@debian.org> Description: charon-cmd - standalone IPsec client libcharon-extra-plugins - strongSwan charon library (extra plugins) libstrongswan - strongSwan utility and crypto library libstrongswan-extra-plugins - strongSwan utility and crypto library (extra plugins) libstrongswan-standard-plugins - strongSwan utility and crypto library (standard plugins) strongswan - IPsec VPN solution metapackage strongswan-charon - strongSwan Internet Key Exchange daemon strongswan-dbg - strongSwan library and binaries - debugging symbols strongswan-ike - strongSwan Internet Key Exchange daemon (transitional package) strongswan-ikev1 - strongSwan IKEv1 daemon, transitional package strongswan-ikev2 - strongSwan IKEv2 daemon, transitional package strongswan-libcharon - strongSwan charon library strongswan-nm - strongSwan plugin to interact with NetworkManager strongswan-starter - strongSwan daemon starter and configuration file parser Changes: strongswan (5.2.1-6+deb8u3) jessie-security; urgency=medium . * debian/patches: - CVE-2017-9022_insufficient_input_validation_gmp_plugin added, fix insufficient input validation in gmp plugin which could lead to denial of service (CVE-2017-9022). - CVE-2017-9023_incorrect_handling_of_choice_types_in_asn1_parser added, fix incorrect handling of CHOICE types in ASN.1 parser and x509 plugin whch could lead to an infinite loop and a denial of service (CVE-2017-9023). * debian/rules: - disable the vectors test which is failing right now for unknown reason (maybe due to an OpenSSL regression) Checksums-Sha1: 60a17a223d930590eddec21a9ee45f60054c975a 3076 strongswan_5.2.1-6+deb8u3.dsc f33c11b996776b4b696129ad6af42d0b2058cf8a 128552 strongswan_5.2.1-6+deb8u3.debian.tar.xz 681c3c1dbd4fe272deab74f25086a714f39b5729 87860 strongswan_5.2.1-6+deb8u3_all.deb d90c6e02e8a8783c4f36fb3c63956561adc137fb 349694 libstrongswan_5.2.1-6+deb8u3_amd64.deb 7da0ccf860b239b56369098c61e10bccadb29cd6 106674 libstrongswan-standard-plugins_5.2.1-6+deb8u3_amd64.deb 096f453dabe9d9edf2e99aabb52dfedcaa057fdf 138190 libstrongswan-extra-plugins_5.2.1-6+deb8u3_amd64.deb 3cbad9ccd0b7004b640eebb2af0401decaa05872 306790 libcharon-extra-plugins_5.2.1-6+deb8u3_amd64.deb 1b73bd4d9012a58e4d9dcb41a86225c879a4ecb0 7567760 strongswan-dbg_5.2.1-6+deb8u3_amd64.deb fdc6b33becf1549600bc2529d2abedf45902fe5c 308438 strongswan-starter_5.2.1-6+deb8u3_amd64.deb 6c2eda076691cb4c89de9cd150b8621a04ab6c39 253156 strongswan-libcharon_5.2.1-6+deb8u3_amd64.deb d15cd618f7490539a273e0bcf3b3a3515cbc758b 80776 strongswan-charon_5.2.1-6+deb8u3_amd64.deb 0cb2d2894617126f8a8b6373302b4e4d3aa91c70 71912 strongswan-ike_5.2.1-6+deb8u3_all.deb 3dd0a803c7a84f36a0f65fcb12f385a7cddb8d38 82876 strongswan-nm_5.2.1-6+deb8u3_amd64.deb 3a9af10eb97afbe1a95daf0d1c4b15d0ddc79dfc 71912 strongswan-ikev1_5.2.1-6+deb8u3_all.deb 6157b8d8bddc5c24bf81e523aed6b56b6819f75d 71894 strongswan-ikev2_5.2.1-6+deb8u3_all.deb aa02b8618556acddb6e25eccadfcfcca5d07494b 82694 charon-cmd_5.2.1-6+deb8u3_amd64.deb Checksums-Sha256: 0855947c4c8734fbf8b230bb5e57991cfba426ab440585f57a4bbff81430946f 3076 strongswan_5.2.1-6+deb8u3.dsc 698751646dd426b6c9d6592dca68ced6203e921c9f6b130ec5d2bfd72fcbf0ed 128552 strongswan_5.2.1-6+deb8u3.debian.tar.xz 9b3d83066b6bcf0604904b570caa4944f2a660057e50fe27a4c259f7abecdc6b 87860 strongswan_5.2.1-6+deb8u3_all.deb fec0c571a58dd3dd6dafe59de67f9939ac3e7dd4f1d30f474f50d9fba3d207f8 349694 libstrongswan_5.2.1-6+deb8u3_amd64.deb 29cfcd69ba2e0614167471e7bcfc70fbdae90181cbce4f0a3ac19924faeaaeb0 106674 libstrongswan-standard-plugins_5.2.1-6+deb8u3_amd64.deb 05d1bdd67266aadd11d8b9fa4aa36423651d73be2543102733250b42b2a31b6d 138190 libstrongswan-extra-plugins_5.2.1-6+deb8u3_amd64.deb c0deafdb355601382b0b6f019d8096400312d8737ea0f7928b51f1706639c2e0 306790 libcharon-extra-plugins_5.2.1-6+deb8u3_amd64.deb 80c8d3872891d4fcba8a49bc0f52b95880203ab36f78330506dec3a037fc74e7 7567760 strongswan-dbg_5.2.1-6+deb8u3_amd64.deb c233a67c1d92b05c3a87297f3e4c3848dcadd25fd2f2eb0000a7c69473b68b2a 308438 strongswan-starter_5.2.1-6+deb8u3_amd64.deb eb54d62e7047767a2e71f5a63c561335f6b807ea2dcca37e4e88a4f247b7b41b 253156 strongswan-libcharon_5.2.1-6+deb8u3_amd64.deb c5341c491fcad6ea12deb6986a3ffe3c8c244f66d5a5841c34ea7f403c0b7dbb 80776 strongswan-charon_5.2.1-6+deb8u3_amd64.deb f1035cf0023e3d5cbcbee8fb95951506d36817000a04bba967ad4fa9e1a0d4d7 71912 strongswan-ike_5.2.1-6+deb8u3_all.deb 78bfa10493f6c71a44a876c41103c71ba41ce71b7361b76e9f5410c3ffa53bea 82876 strongswan-nm_5.2.1-6+deb8u3_amd64.deb 600a35520e09e647afeaa6c49297e1050288589214cb58adeb34424fb157385a 71912 strongswan-ikev1_5.2.1-6+deb8u3_all.deb 9f668d8c0e9498c8a695c119cd38abd990fbc0fd6a58ff9d965c8c49371e7fd9 71894 strongswan-ikev2_5.2.1-6+deb8u3_all.deb 1edb5fc22c1e7bff4b11cc858040955bb54dd8ff5c3460556f4db6f2a374656c 82694 charon-cmd_5.2.1-6+deb8u3_amd64.deb Files: 2a42abc296643bd0cff541f5f60eb9e8 3076 net optional strongswan_5.2.1-6+deb8u3.dsc 93c9a92f0fc246a3c1a3e2180b792eea 128552 net optional strongswan_5.2.1-6+deb8u3.debian.tar.xz 227c86eedda421599ff26232ed2764a1 87860 net optional strongswan_5.2.1-6+deb8u3_all.deb 43b26976dd897b88a9032af293124159 349694 net optional libstrongswan_5.2.1-6+deb8u3_amd64.deb b648e66be138da1e11c8457610713ca2 106674 net optional libstrongswan-standard-plugins_5.2.1-6+deb8u3_amd64.deb 96fc4c4411d00e61b703f4c9efee54bf 138190 net optional libstrongswan-extra-plugins_5.2.1-6+deb8u3_amd64.deb d9fa100568c67c458b1421809084dfb9 306790 net optional libcharon-extra-plugins_5.2.1-6+deb8u3_amd64.deb fc9f7420d1cacc244ff8a71678ab0542 7567760 debug extra strongswan-dbg_5.2.1-6+deb8u3_amd64.deb 8b39bf1a8fc20a323ad3dd08b09e474e 308438 net optional strongswan-starter_5.2.1-6+deb8u3_amd64.deb 35e4dff9873f63789e6f6f2b0b975966 253156 net optional strongswan-libcharon_5.2.1-6+deb8u3_amd64.deb 05534b2b10118048e8862247e5e652c4 80776 net optional strongswan-charon_5.2.1-6+deb8u3_amd64.deb 15b4454626b279ee0a3646e0f8767451 71912 oldlibs extra strongswan-ike_5.2.1-6+deb8u3_all.deb 203042a3262c3cbdeb75d95411fd6a62 82876 net optional strongswan-nm_5.2.1-6+deb8u3_amd64.deb 49979b879ec245099a415a44dcbf352a 71912 oldlibs extra strongswan-ikev1_5.2.1-6+deb8u3_all.deb 6d625e9fcb9a0190ac14fd76cf02de69 71894 oldlibs extra strongswan-ikev2_5.2.1-6+deb8u3_all.deb 980297153a8c9795529be8538f0242ea 82694 net optional charon-cmd_5.2.1-6+deb8u3_amd64.deb -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEl0WwInMjgf6efq/1bdtT8qZ1wKUFAlkseIkACgkQbdtT8qZ1 wKXf+Qf/fCr98fHuQXbvIYKlCiFmiavDfDvP+mnJg4UOVkFDY71uyF3HQ/Wnl/kl RpA7fDQ/8xONTopIQE52i2f9NMID7nbwxzzwofWW06Y1gQ13mmDcIm89PWTyNITv W/1MoOMFhUrqQpGqVi7Ntt/w0NpkcVw3WQmpoEBZivvF3EWZrnkggof/Ef6DnGug egBwiH78oYVHlU9Dvvxs9CSekChfo704JQusyc6P9zBsC7/+muqgwVTf6se325ZW 5YiYsvvD+juZ8rzjbnuQJaGdIBBghM6ijCl7e3xdZIrp0OYVnLS9hfrWtQXYQqt4 GIpj/7tlGpRYbMROfRJZdFe6DOVsIQ== =BMfs -----END PGP SIGNATURE-----