-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 26 Jun 2018 16:35:12 +0100 Source: redis Binary: redis-server redis-tools Architecture: source amd64 Version: 2:2.8.17-1+deb8u6 Distribution: jessie-security Urgency: high Maintainer: Chris Lamb <lamby@debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: redis-server - Persistent key-value database with network interface redis-tools - Persistent key-value database with network interface (client) Closes: 901495 902410 Changes: redis (2:2.8.17-1+deb8u6) jessie-security; urgency=high . * CVE-2018-11218, CVE-2018-11219: Backport patches to fix multiple heap corruption and integer overflow vulnerabilities. (Closes: #901495) * CVE-2018-12326: Fix a buffer overflow in the "redis-cli" tool which could have allowed an attacker to achieve code execution and/or escalate to higher privileges via a crafted command line. (Closes: #902410) Checksums-Sha1: ef743b3b14f325f795b83f0c09d9a2fb15ab4631 1924 redis_2.8.17-1+deb8u6.dsc 913479f9d2a283bfaadd1444e17e7bab560e5d1e 1234543 redis_2.8.17.orig.tar.gz 3d906ec3ecdc8c47654d300ddee5921dbd695026 26160 redis_2.8.17-1+deb8u6.debian.tar.xz f71c407c7fdd8b53158d070ac735c3d8760247aa 308322 redis-server_2.8.17-1+deb8u6_amd64.deb b8f01229afc586e7292f76a634a358f048a98c53 79870 redis-tools_2.8.17-1+deb8u6_amd64.deb Checksums-Sha256: 29e1984cc5d5d631e0a9ff4dd2311b4e8ea76c140f102703cea6e5f9527b9332 1924 redis_2.8.17-1+deb8u6.dsc 53c7cc639571729fa57d7baa7f81aec1d5886f86bac9c66f6ad06dbdaee236a7 1234543 redis_2.8.17.orig.tar.gz aa7175ed64e8a2dce1f143ae989235963e555b0c100db066beecf18e175b0af8 26160 redis_2.8.17-1+deb8u6.debian.tar.xz 8d46d66933288b5d26854b6e796e63108e605bd04c10813240baf6a9717f5bff 308322 redis-server_2.8.17-1+deb8u6_amd64.deb 3a93d8eb3177c4d0b9ecd0961b775cf364bf1983dbda796f0afae2724fabe188 79870 redis-tools_2.8.17-1+deb8u6_amd64.deb Files: de0de279e5cbd7695487013fe418bd79 1924 database optional redis_2.8.17-1+deb8u6.dsc 69023c3005664602268a5e2dbe23425c 1234543 database optional redis_2.8.17.orig.tar.gz f8026451a4401fe0aa9be65312f73491 26160 database optional redis_2.8.17-1+deb8u6.debian.tar.xz 87d71c73ae75a0ee32f7341ae61e3a7c 308322 database optional redis-server_2.8.17-1+deb8u6_amd64.deb 8af165a6be3d98586f12c529a41c8473 79870 database optional redis-tools_2.8.17-1+deb8u6_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAlsyXnIACgkQHpU+J9Qx HlgviA/8D9MizCUZBRXBmh+nj45O+HP51lOOLLOQFXiMOOQcFcjdh5udjHQ+zKC2 0jGET7s8yh88eVf37JesweAj4resKX+gfRQFSkuwRsW4PWMRH2JcADjMy02KH3tG cJht/kQpLOfTwdDbEMjlyYhtHJm8MpXyLoDerqf3ovc+arokb3/h6I7mx+Qkxl2t xb2Ew2adolrSiiDq1zQxH20P0zVIEQoiGvn1N/KB369sO/L54eGTX7VuPJ0B6/k7 rQNfNzGbsyCE9zC8aN1+vojlk9IG9NZd6Aecfkk0jx5LHIit1T77AIIBk0VZW1Du jhPQ9+lxmSIsLk75Qxv0Anj/Fi9p8Q/DDM2rB+PGi+rSk5vHHstDW5JaZSScRiWJ cGYZKhV7wFe48g+xM9o8K3Up/l1+oUNE1pH+Y9IBySFoh0gtsceMy6BErDIBPemq FuaJZjUwAnEjXXFs0wg2IlU6a6SkWc+cnBCwcEHePewDQYqirfbiYL+eA0xsHy6e 62pkBPh6ZlWh3H6HylMTYfYKeWJKxuZu51N3dC5LM07xsgY8SCXPn7OcFdyUrfUw Lr6p7uCUm10g982bkDtID7Ds/aX3YrvF6k6gLGUYi6dm3bXLA/RFq9QDKh0t3XY0 UWUGySjFDcRq7+vTyGHk50kf8Je5NBpsjhurczPM0BKXWyOSxas= =w1R9 -----END PGP SIGNATURE-----