-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 13 Feb 2018 22:57:38 +0100 Source: quagga Binary: quagga quagga-dbg quagga-doc Architecture: all source Version: 0.99.23.1-1+deb8u5 Distribution: jessie-security Urgency: high Maintainer: Christian Hammers <ch@debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: quagga - BGP/OSPF/RIP routing daemon quagga-dbg - BGP/OSPF/RIP routing daemon (debug symbols) quagga-doc - documentation files for quagga Changes: quagga (0.99.23.1-1+deb8u5) jessie-security; urgency=high . * Non-maintainer upload by the Security Team. * bgpd/security: Fix double free of unknown attribute (CVE-2018-5379) Security issue: Quagga-2018-1114 * bgpd/security: debug print of received NOTIFY data can over-read msg array (CVE-2018-5380) Security issue: Quagga-2018-1550 * bgpd/security: fix infinite loop on certain invalid OPEN messages (CVE-2018-5381) Security issue: Quagga-2018-1975 Checksums-Sha1: 1bd9e51583c42d69b058c76b7c23fb27436ee13f 2335 quagga_0.99.23.1-1+deb8u5.dsc 1ac44617ddf2236f096e56b794772942751d4fe3 41764 quagga_0.99.23.1-1+deb8u5.debian.tar.xz 3dec99fad90ad153616dd5fa2427c1cea244d52c 907898 quagga-doc_0.99.23.1-1+deb8u5_all.deb Checksums-Sha256: 337f2f8faf267f749746ec047ea0cb39d9a8d56f4d23569c8369b11dc6c3ae48 2335 quagga_0.99.23.1-1+deb8u5.dsc e34afcce0f718b51029ba9d421b3a8d4a0dc252653caef28e34d2488c3a99df4 41764 quagga_0.99.23.1-1+deb8u5.debian.tar.xz 0379576bccfb61de55a2fdc621c24102cb0513c3e8a6411923d3fc0cfe634ea6 907898 quagga-doc_0.99.23.1-1+deb8u5_all.deb Files: a4717f6531ce1b450e660133628ada4f 2335 net optional quagga_0.99.23.1-1+deb8u5.dsc 5da3879b3d6e85ba8976ee26f184a05e 41764 net optional quagga_0.99.23.1-1+deb8u5.debian.tar.xz 6bb468f5dd467f46091ca5d3331ad24c 907898 net optional quagga-doc_0.99.23.1-1+deb8u5_all.deb -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAlqETLpfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89E9NUP/RNXAdpRiuzv6apzMqfHf9dbZuCrGnad 3g2e4feC7Bim6bdsePR1NjkwFEgfWwPYFETGaFb8nAevFlkKzEhWqwjJkCVcJS3e ZMYAoshUXQ4Vc8Kt6OCMFO7t2unYPmvDxgY3zQTIioLJIRPk/Xi31S9kh5R5M3Id nthCRKLPNf85vlUpm7f0BCSsD7ZcLdQS2JRqJGN4qKWivKqRtn1CkTuPGDEn3nDb XgtQiq57pwrEXn/AAjhcNj04HdvWPzTkZhpJKcLs04U8EbIvYX8CfalkW3resLp7 vrcWvHwxSW3eHc+n/QN6gpa/YTLwaBJlVYJih2941i7Qn3H2i+TY0znCXYh2PO5H Iy/MfvG8zrrto1mJCib/ILByf9ApOPZoq2vCx1bMuuTi4sIgQfuPQ/9uKtAA1dJu W/wyrrNhDIlQOz9mJJjZ90o+KG2sgLb7clX32giHa/kHRunsXeLn9+nkDU3VhLHX 1hpuef9kdTtcQbOxCF11IKb1wqcRZHzPvoinokK6lJ3sGoubXkVoB4z7il7WvqPs /cpkBywlM7zQuhpSB2K8uSwY7lEOSVBaOlotH8NZc7zyfor8dVTaL0XYU2aIqhjg sZJx1ns5w8HDMFa3Ew2c1+6RW6R8WEuybSdfLfTCFb/Sog1Hrzk/myilgn0wwla3 q33yWTvC1FQU =Hf6F -----END PGP SIGNATURE-----