-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 13 Jul 2017 09:06:49 +0100 Source: nginx Binary: nginx nginx-doc nginx-common nginx-full nginx-full-dbg nginx-light nginx-light-dbg nginx-extras nginx-extras-dbg nginx-naxsi nginx-naxsi-dbg nginx-naxsi-ui Architecture: source all amd64 Version: 1.2.1-2.2+wheezy4+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Kartik Mistry <kartik@debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: nginx - small, powerful, scalable web/proxy server nginx-common - small, powerful, scalable web/proxy server - common files nginx-doc - small, powerful, scalable web/proxy server - documentation nginx-extras - nginx web/proxy server (extended version) nginx-extras-dbg - nginx web/proxy server (extended version) - debugging symbols nginx-full - nginx web/proxy server (standard version) nginx-full-dbg - nginx web/proxy server (standard version) - debugging symbols nginx-light - nginx web/proxy server (basic version) nginx-light-dbg - nginx web/proxy server (basic version) - debugging symbols nginx-naxsi - nginx web/proxy server (version with naxsi) nginx-naxsi-dbg - nginx web/proxy server (version with naxsi) - debugging symbols nginx-naxsi-ui - nginx web/proxy server - naxsi configuration front-end Closes: 868109 Changes: nginx (1.2.1-2.2+wheezy4+deb7u1) wheezy-security; urgency=high . * CVE-2017-7529: Fix an vulnerability in the range filter. A specially crafted request could have resulted in an integer overflow and incorrect processing of ranges, potentially resulting in sensitive information leak. (Closes: #868109) Checksums-Sha1: 268d640656d043efe7c9ea465f9879f35a39c6b8 2845 nginx_1.2.1-2.2+wheezy4+deb7u1.dsc 4fb69411f6c3ebb5818005955a085e891e77b2d8 718161 nginx_1.2.1.orig.tar.gz a0668a20db0b1820e56d6a33952225c13d029ebb 1371918 nginx_1.2.1-2.2+wheezy4+deb7u1.debian.tar.gz 1696937d1a247be62c19e7e642c2e8e791bb41f9 61434 nginx_1.2.1-2.2+wheezy4+deb7u1_all.deb 9dcb2fa1a6e21f3e2a1054c1b52ee8843b8ee517 74908 nginx-doc_1.2.1-2.2+wheezy4+deb7u1_all.deb 89888dc576b37672507b9bb54539b3c0af566d38 73476 nginx-common_1.2.1-2.2+wheezy4+deb7u1_all.deb 8b0e0353177593053146f187fd511369eb6d58e2 342490 nginx-naxsi-ui_1.2.1-2.2+wheezy4+deb7u1_all.deb 879e6db273bb240d6dc3486f7bbdaf1a8ae20ca8 435948 nginx-full_1.2.1-2.2+wheezy4+deb7u1_amd64.deb e90b5f77c6e4c0d66cae2b9d8f08b7d4ef8da0a8 3093898 nginx-full-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 67f8655dc378fb1b90fb4354c3329579865f427e 319722 nginx-light_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 3d6ec0ca48377acb0af30c91d9f1aaa60a101d5f 2135500 nginx-light-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb c8746f127f90469aafbd3d948599d92c58671ad9 602060 nginx-extras_1.2.1-2.2+wheezy4+deb7u1_amd64.deb cff4ff37932bdb4f7f3115345fb88a5f7eb21776 4580426 nginx-extras-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb c59d83e59c0f85f09a8afcaeee017277e2f50d28 359272 nginx-naxsi_1.2.1-2.2+wheezy4+deb7u1_amd64.deb afec5fde0c694f2520b79c25bf6aa32c99b21cd5 2266448 nginx-naxsi-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb Checksums-Sha256: 4d37d6fdd509c8106ce986d42648413a393c92806f71bddcb05b988c6244cb28 2845 nginx_1.2.1-2.2+wheezy4+deb7u1.dsc 994ad97cbf6f7045f95ea9d6d401aad1e95766671e402c48af85aba5235a2dd7 718161 nginx_1.2.1.orig.tar.gz d91221226b62db8f7ae90480c850e9957771a013eff1aa53d54df33e6068e273 1371918 nginx_1.2.1-2.2+wheezy4+deb7u1.debian.tar.gz 0969ac7a8f5023503b9313fe75bcfa34620fb760b736e6dc50560b4ba46c6abe 61434 nginx_1.2.1-2.2+wheezy4+deb7u1_all.deb 0388be6c1f6bfee73d11500ab1ce294711d3805ee4777b2e99af8a5ece4b929c 74908 nginx-doc_1.2.1-2.2+wheezy4+deb7u1_all.deb cfc5ca58d1c93ab3568b540bc9f406ec7e6e9b09dac08e5489a6b22898aced94 73476 nginx-common_1.2.1-2.2+wheezy4+deb7u1_all.deb 95b2accb82aff45fec2930ea763cd386eb11ba03a3dc0afef781fa6f6c3df554 342490 nginx-naxsi-ui_1.2.1-2.2+wheezy4+deb7u1_all.deb 6271deff6d302f8e30220174a626673bb2bb34ae97fd7fcb508eb90987c8d746 435948 nginx-full_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 38fe790efb744f13e5767d44f7a6a73c4207edafea9e1d01ba0d0f91d5ab8a5a 3093898 nginx-full-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 740119356d6976d98f231f9ff3bfc9f91956f7cd2b88f515b09fba13f4860d84 319722 nginx-light_1.2.1-2.2+wheezy4+deb7u1_amd64.deb a3a86e4aecc45bd67f1febe97f26301ef689fe34604beb8bd6a80996d8f94ca1 2135500 nginx-light-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb de3c22afc901d7d03db1acf77e5d003b28124d2592140008b0bc24b24fb97a52 602060 nginx-extras_1.2.1-2.2+wheezy4+deb7u1_amd64.deb b88cde1b52e261379e2d3609aecdf9993413ccf24d4c9fd556b128910968d671 4580426 nginx-extras-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 31d13cf3d966b8e571925c7ec3af741ab9b6530a0b856be68b2d1f9b4ac1193c 359272 nginx-naxsi_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 7b37f43c09a22b9254ffc1ebe7536fe6a1e223cc7bdfce5b69ca246f38dc8081 2266448 nginx-naxsi-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb Files: 53c91a0bcba95311e6e66af2f08f5def 2845 httpd optional nginx_1.2.1-2.2+wheezy4+deb7u1.dsc ceacae12d66d1f021bf3737a0269b6f4 718161 httpd optional nginx_1.2.1.orig.tar.gz 1a48d65be29fa56c158d6c6b67084dcc 1371918 httpd optional nginx_1.2.1-2.2+wheezy4+deb7u1.debian.tar.gz 2ffd5acbf3b2b1b657f0e6d84cc4ad1b 61434 httpd optional nginx_1.2.1-2.2+wheezy4+deb7u1_all.deb ba7b4f1e5588a0b2a642bc8cd3c31c20 74908 doc optional nginx-doc_1.2.1-2.2+wheezy4+deb7u1_all.deb 2bc077bcbbaed195cdb2f5b4722de308 73476 httpd optional nginx-common_1.2.1-2.2+wheezy4+deb7u1_all.deb 505bf9f01a98ede66bb81a270f1618fe 342490 httpd extra nginx-naxsi-ui_1.2.1-2.2+wheezy4+deb7u1_all.deb 511419577f92fe69bce15cb6301048fa 435948 httpd optional nginx-full_1.2.1-2.2+wheezy4+deb7u1_amd64.deb d9781478537817c0dae62c49ae1b85b0 3093898 debug extra nginx-full-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 4ec83b19ea8e958fdb9a39657d930dde 319722 httpd extra nginx-light_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 4bdbbcdaa2f4f139c1cc9b1da43db165 2135500 debug extra nginx-light-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 3dad78c69d5485bbfed96e908eb82480 602060 httpd extra nginx-extras_1.2.1-2.2+wheezy4+deb7u1_amd64.deb abf71a7094ba440f539f3c5776d0a1e4 4580426 debug extra nginx-extras-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 034f1e80fd07b8f339eae1cdff334a21 359272 httpd extra nginx-naxsi_1.2.1-2.2+wheezy4+deb7u1_amd64.deb 8bc003f59e01cbe51b9cf88c01dc2429 2266448 debug extra nginx-naxsi-dbg_1.2.1-2.2+wheezy4+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBCAAGBQJZZyvwAAoJEB6VPifUMR5YwnEP/2cyFwe/T+SXvpB1EXUh4x+R dMgTrw3dR+rDKAf/xT6FCB9QwQrwe6xA/9ZyfcZJFqAkjhCrT49p2GXc5cwYTq5g uMlHmHbTpcq1mfYDaCSnjxAjtqHD7m7zu4PZwoi4F19vAp1aIHgNlAN49/2epFcW GprkFd67rBwBWs4PBPkmS6ZtCG5JKQsxcfQsVpFBQiQoy3xwu3XsXvuWjwal+i8t 8m8p0Q+m9gM02tMxfpyycWdywyE4eQZjCRuuzaVNbokrjaSU63vBwvmwj1z+4CqL R8R+Ghqgvb9x7Nc9dzwfiv/W3pq5HAuFly+zNFlw7nL1FUmMXiFoLw4OCXP83Hl1 S8stgmSdgtk+iITPT242cwPDnHFenyCkFDj8QuB4Krh/m4m8aRoPDNkqG1PhiDMD stfpN0J610L4/2slmKHPSjCx1tIei6PCwgJwfGnUGjMXBdw4MbOY5duwGVhW2uTd fRya5TffcWsyWc9LPcuJwGY5WCIhsIiosQHChoR14F8U3weQmD2Vfxg5n+UXd9p+ 4C+jZmBXk7tDdnIf4KzclFtOcerulixVv3tr4iNeJ2IWAcGiLchD1u9vUnNPPhfs kcz8eCsxXmwMw+mUrupECVN1mB+4+6Ft9MyEM5n+dL+rzUOxXIDzsUuDk5NibmHX C2vpHq+eQFzE6cT8E2HM =5guU -----END PGP SIGNATURE-----