-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 01 Mar 2018 15:17:53 +0000 Source: openssh Binary: openssh-client openssh-client-ssh1 openssh-server openssh-sftp-server ssh ssh-krb5 ssh-askpass-gnome openssh-client-udeb openssh-server-udeb Architecture: source Version: 1:7.4p1-10+deb9u3 Distribution: stretch Urgency: medium Maintainer: Debian OpenSSH Maintainers <debian-ssh@lists.debian.org> Changed-By: Colin Watson <cjwatson@debian.org> Description: openssh-client - secure shell (SSH) client, for secure access to remote machines openssh-client-ssh1 - secure shell (SSH) client for legacy SSH1 protocol openssh-client-udeb - secure shell client for the Debian installer (udeb) openssh-server - secure shell (SSH) server, for secure access from remote machines openssh-server-udeb - secure shell server for the Debian installer (udeb) openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot ssh - secure shell client and server (metapackage) ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad ssh-krb5 - secure shell client and server (transitional package) Changes: openssh (1:7.4p1-10+deb9u3) stretch; urgency=medium . * CVE-2017-15906: sftp-server(8): In read-only mode, sftp-server was incorrectly permitting creation of zero-length files. Reported by Michal Zalewski. Checksums-Sha1: d3f8412e74e0cbbc32ae51894dd91b3c8c250c0a 2924 openssh_7.4p1-10+deb9u3.dsc 379cf488df9f0195462256f829ab4dbed50fd371 162772 openssh_7.4p1-10+deb9u3.debian.tar.xz eb31bd319226c569ae62bad3d9886484424dd356 14993 openssh_7.4p1-10+deb9u3_source.buildinfo Checksums-Sha256: 1b4bcec19e41f87bdb24261e139c0e50d54ef8345ae57d1398e8f3a2afe38dd8 2924 openssh_7.4p1-10+deb9u3.dsc 7a9702bcbdb97617534179f27f3a2128d8991d24bbf89cc219c8838a3fa508eb 162772 openssh_7.4p1-10+deb9u3.debian.tar.xz 026a9f02e6973409c09436e6be7ad6f93dd539238a1bdc628d4996c5cbb31b7b 14993 openssh_7.4p1-10+deb9u3_source.buildinfo Files: 10f56bfa6b6c64adf22d66bbfe53acdd 2924 net standard openssh_7.4p1-10+deb9u3.dsc c0c7bbf1253bddea4861a4e59ef8a1b6 162772 net standard openssh_7.4p1-10+deb9u3.debian.tar.xz a60a284015fe055f6f2e304c54f7ccad 14993 net standard openssh_7.4p1-10+deb9u3_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEErApP8SYRtvzPAcEROTWH2X2GUAsFAlqahDEACgkQOTWH2X2G UAspzw//SNeNWVJwnz0x0ta0AUV7P6baBc2PvSay7Hga7akFYo/c0ut27Aiz5ccr fiIWgXyIpK7SezIEepYqakynukZZEWmNK77XA0rnLLHfZWT7VDnST/gXIkG0ghE/ eqlttLWW0WzrIjHG9E6m9hbku3Bg0mVKLSrt7yyUM5TYo1hwNj241xqZq95V2COh DeNbFlXVNnfLcZmqY4bF5k9rWxIYxEwkjLxR6l/dpbMz0R8htbJSdd2DLHYiXyjb JIYwuJuxaHypz/B/ll4Apb+2E+HZ4Jsv4O7txJLPMxnNq7kNrRk03VcNEdPqz5Pm 7xb312ovx9/E4/8T1gBacFmBLqjsFWCsYlQ0OtNPVfttmsTgcUKLFQtrIVbvhtXp xRct95/iRbYcKMNg0TOHAhDknCyeadlA/6djmDIvQJpYfMS+UyusyuYFYVN3jyk0 t4sle9TQZVIDg7G8LwT+/n8xBwiFhG3x4mI1sYXBGE6UOe8tFyBsbq2/2q42pXLO lb2thl/N8LSPmHg6/KoDcBwrcq2UmIM1VthwEXeZx7xXj/5ZpH78uOax13X9LbUf mi6rrgw2P7fYvJNuneDWIlq24LqDxvYH62vmRFSYo8KRa5y93C1vg4+Ol+b9mSZt 0b47E4dD3oD/bgrQJtQrVvZjWwcEHRFHZai5kCR4oRBCiLLmJk4= =XQsy -----END PGP SIGNATURE-----