-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 16 Feb 2018 19:37:38 +0100 Source: quagga Binary: quagga quagga-dbg quagga-doc Architecture: source amd64 all Version: 0.99.22.4-1+wheezy3+deb7u3 Distribution: wheezy-security Urgency: high Maintainer: Christian Hammers <ch@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: quagga - BGP/OSPF/RIP routing daemon quagga-dbg - BGP/OSPF/RIP routing daemon (debug symbols) quagga-doc - documentation files for quagga Changes: quagga (0.99.22.4-1+wheezy3+deb7u3) wheezy-security; urgency=high . * Non-maintainer upload by the LTS Team. * bgpd/security: Fix double free of unknown attribute (CVE-2018-5379) Security issue: Quagga-2018-1114 * bgpd/security: debug print of received NOTIFY data can over-read msg array (CVE-2018-5380) Security issue: Quagga-2018-1550 * bgpd/security: fix infinite loop on certain invalid OPEN messages (CVE-2018-5381) Security issue: Quagga-2018-1975 Checksums-Sha1: 519a57a2cf15b39f65864296df439547eaa207ac 2340 quagga_0.99.22.4-1+wheezy3+deb7u3.dsc 73019bf915ff4fe7cd497f11579c05f35fe09df5 2352406 quagga_0.99.22.4.orig.tar.gz 4e8c2390ae94ac86b655efddfba45e29b30e55ee 46998 quagga_0.99.22.4-1+wheezy3+deb7u3.debian.tar.gz e46a99fb519c9345161d20b3c2e05ff26137c76e 1727836 quagga_0.99.22.4-1+wheezy3+deb7u3_amd64.deb 599e7918506f68df0ea510b11d5b69453b96709b 2529536 quagga-dbg_0.99.22.4-1+wheezy3+deb7u3_amd64.deb 7075100abcb4c2248859f0a16f27baa049e05d84 656944 quagga-doc_0.99.22.4-1+wheezy3+deb7u3_all.deb Checksums-Sha256: f010a59fd53f93c7e6ec56de8849ce63c0724373a18d4ce62d484cb698539113 2340 quagga_0.99.22.4-1+wheezy3+deb7u3.dsc cbe48d5cc57bbaa07cfd8362ba598447dc94aa866ddc5794e57172709d36ba79 2352406 quagga_0.99.22.4.orig.tar.gz 1eb7cb8e86095b986b9979e70a39fdc75de434ea740bb5de66737a66211843e1 46998 quagga_0.99.22.4-1+wheezy3+deb7u3.debian.tar.gz 1aaf1f0445a35ffae9863bbf6e8384b52a010e78a0984f85b7d9bc3d2d34d8e2 1727836 quagga_0.99.22.4-1+wheezy3+deb7u3_amd64.deb a29cad8b2afae82089cd95a597494f843cff56a7f631c6cb94a82a25285e40ff 2529536 quagga-dbg_0.99.22.4-1+wheezy3+deb7u3_amd64.deb 0a8a2d3fab5a9f161e718ffb8c036aafc494b2e9eeef5256004d23b38daa8eda 656944 quagga-doc_0.99.22.4-1+wheezy3+deb7u3_all.deb Files: f897266050caac0a2fc4ad519d1a1a96 2340 net optional quagga_0.99.22.4-1+wheezy3+deb7u3.dsc 27ef98abb1820bae19eb71f631a10853 2352406 net optional quagga_0.99.22.4.orig.tar.gz 7839ef08caa02b1563c9cd5c5c4c98ae 46998 net optional quagga_0.99.22.4-1+wheezy3+deb7u3.debian.tar.gz e05cb6be886b9a1bda5dc4c36868cfb7 1727836 net optional quagga_0.99.22.4-1+wheezy3+deb7u3_amd64.deb e71779f27f715ff399a237ece7d792cc 2529536 debug extra quagga-dbg_0.99.22.4-1+wheezy3+deb7u3_amd64.deb 2e2f88ac4b3def4da2be799d6c4a739f 656944 net optional quagga-doc_0.99.22.4-1+wheezy3+deb7u3_all.deb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAlqHLX1fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYRyxKD/9YeXAzOG/xYT5Rli/p+GlFNDuwlTrY 4PvFXueDCakMkuA5Se9KJBWlj46O7iVfhMj5EkKTVAEClYLbeImdCq6KNRNSWwQL Nd6xaHC1jbDNCwdILDtbb6OOf2bC6ns6ZLmeRw8lroByD+rN+Xd+Bn3MTJSmP2RD W9Sjy0ZpXEyOwEo27pqy8UG9wk60khudVVNERpTf4f2Nzfb4o3qW0hGpOpuTIbnx xBy5Gn7t4IGqd0klGAITh/BF+D4u5CaNMy5KSoqkoHIXX8gY8lNg/W3+39i+K1nW Il/2mgCjmA65TNCsdBMirYFJsbp4DLP8MGT1PC7U1CqZUFfU/RLS0npbOKKJYfxn mXKurtYgSoiUZnlWaqPNNJXkSfnd3YJyDSRztiWiLVtSvOOy4yFNA1j9h5KwGTyK sLF98/ZLWznsGdT2kxpV3/QFGARbklkYnoeVVlUB/NSyIOOrsQ2SuJUjd+SnXyGX 9CjgAh7i3GVmWuMxVEZSMyNHDlQrxA09b6dxahFNQC+BnZAj6JFKouaWwTgtfzHV 1NpnBab5mBgf/nIXQY42sxcvghb775RSLHfDb3AvMk4+YmGq7gadNdZW/vye9OT/ 0dWqdY0iC6exO16TZ+1Vr7Z2ExYtA1W7nqST8edhDVh5YafUUNoJaChgwao7K39b 2BdZY6muVX50ww== =+1lx -----END PGP SIGNATURE-----