-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 02 Oct 2018 10:56:21 +0100 Source: strongswan Binary: strongswan libstrongswan libstrongswan-standard-plugins libstrongswan-extra-plugins libcharon-extra-plugins strongswan-dbg strongswan-starter strongswan-libcharon strongswan-charon strongswan-ike strongswan-nm strongswan-ikev1 strongswan-ikev2 charon-cmd Built-For-Profiles: nocheck Architecture: source all amd64 Version: 5.2.1-6+deb8u8 Distribution: jessie-security Urgency: high Maintainer: strongSwan Maintainers <pkg-swan-devel@lists.alioth.debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: charon-cmd - standalone IPsec client libcharon-extra-plugins - strongSwan charon library (extra plugins) libstrongswan - strongSwan utility and crypto library libstrongswan-extra-plugins - strongSwan utility and crypto library (extra plugins) libstrongswan-standard-plugins - strongSwan utility and crypto library (standard plugins) strongswan - IPsec VPN solution metapackage strongswan-charon - strongSwan Internet Key Exchange daemon strongswan-dbg - strongSwan library and binaries - debugging symbols strongswan-ike - strongSwan Internet Key Exchange daemon (transitional package) strongswan-ikev1 - strongSwan IKEv1 daemon, transitional package strongswan-ikev2 - strongSwan IKEv2 daemon, transitional package strongswan-libcharon - strongSwan charon library strongswan-nm - strongSwan plugin to interact with NetworkManager strongswan-starter - strongSwan daemon starter and configuration file parser Changes: strongswan (5.2.1-6+deb8u8) jessie-security; urgency=high . * CVE-2018-17540: Fix a denial-of-service vulnerability in the GMP plugin. Verification of a signature with a very short RSA public key caused an integer underflow in a length check that results in a heap buffer overflow. Checksums-Sha1: bead452c12c34c816c0853dc906d74a914c3bc17 3421 strongswan_5.2.1-6+deb8u8.dsc 3035fc0c38e0698b0d85a94dbc25944abd2a8722 4075576 strongswan_5.2.1.orig.tar.bz2 bf106c73b8e865e1e71ca1c4608467283ecc59ca 133836 strongswan_5.2.1-6+deb8u8.debian.tar.xz b0b246050eb0084d028d15352e3f981083502885 88396 strongswan_5.2.1-6+deb8u8_all.deb c9d5940009153c75b66e365ee8496d2844178055 349718 libstrongswan_5.2.1-6+deb8u8_amd64.deb ca3ae55f586be48f66d751ec454271378e115b42 107336 libstrongswan-standard-plugins_5.2.1-6+deb8u8_amd64.deb 6f9cb7f9a140dc7c2ede78c384e9f1cd7ce5b881 138640 libstrongswan-extra-plugins_5.2.1-6+deb8u8_amd64.deb 7670af1597af1522fc45da5c416fb9edaf663436 307688 libcharon-extra-plugins_5.2.1-6+deb8u8_amd64.deb 4132dc9d10398497524bf50def551dd3eb7e3552 7567230 strongswan-dbg_5.2.1-6+deb8u8_amd64.deb 46c1a04b49cdb0487cd086aee5974b2ea04145fe 308020 strongswan-starter_5.2.1-6+deb8u8_amd64.deb a98b12ec9127503cbd3c23a918b83e209e6b3ad6 253542 strongswan-libcharon_5.2.1-6+deb8u8_amd64.deb 038ad10760252aca34f079d27e60f5280f4d652c 81474 strongswan-charon_5.2.1-6+deb8u8_amd64.deb 50f57f3189b0b6169d46fdeeb60b341bcdd7689e 72450 strongswan-ike_5.2.1-6+deb8u8_all.deb 2a51434052af38cd3bbb79ed442667523af77444 83392 strongswan-nm_5.2.1-6+deb8u8_amd64.deb 1ecbdb1cbd60a266b0e586a6df2c965ef78af0e1 72434 strongswan-ikev1_5.2.1-6+deb8u8_all.deb 0784ec83aa10de9a1d11d2f977bcf204a02a802a 72426 strongswan-ikev2_5.2.1-6+deb8u8_all.deb c03cde62441203bd6c4cf4d8da3ef15e0b2c46e9 83240 charon-cmd_5.2.1-6+deb8u8_amd64.deb Checksums-Sha256: a964cf1a6b975a0f6fc7c76af2621159eb9b3e36a8d026bfac2aec2d750106aa 3421 strongswan_5.2.1-6+deb8u8.dsc ea51ab33b5bb39fecaf10668833a9936583b42145948ae9da1ab98f74e939215 4075576 strongswan_5.2.1.orig.tar.bz2 c82706d927fe31a43fb9313ce98b710c6729f9fd4f9d2427b6b37a67cd962fa3 133836 strongswan_5.2.1-6+deb8u8.debian.tar.xz 1990a1eb6b5350503f31567eaefab438863f1b4a03731ec5b98c00d928ddea52 88396 strongswan_5.2.1-6+deb8u8_all.deb 83cb958f034dee630e73c535e431db6cd93573b0965f719f9a3f55e829b6539e 349718 libstrongswan_5.2.1-6+deb8u8_amd64.deb c024145be6c7b2bac5fb840a85cdfb8e32eb4bad6a3dd7f900ac04ef0d55fef0 107336 libstrongswan-standard-plugins_5.2.1-6+deb8u8_amd64.deb 51a9ec341982ea71c17ec913bc5147840e8530c0472d6439781430a62cc56f0e 138640 libstrongswan-extra-plugins_5.2.1-6+deb8u8_amd64.deb 921f4437e3a18a3470f0d74c53e96a73f700653682b03a8673008df5ffaac0bd 307688 libcharon-extra-plugins_5.2.1-6+deb8u8_amd64.deb ea0b156e72c8855939ca7e2914473f56d3c60f222a7fdd4a01e9dc00ac5ab2cf 7567230 strongswan-dbg_5.2.1-6+deb8u8_amd64.deb 165a1752515540bfe189014e9b8571cb6545e768d725816ee119ddfac0f47525 308020 strongswan-starter_5.2.1-6+deb8u8_amd64.deb 49bdf3545c983ce42a8562ef98b683d81e6feca946a37ba352488d3cba733db4 253542 strongswan-libcharon_5.2.1-6+deb8u8_amd64.deb c3b376b7e55289518f4fd28e74ff59d740b809f7840501fb5c103684059232ed 81474 strongswan-charon_5.2.1-6+deb8u8_amd64.deb c86a1ab21ab1163c9b670d6507dcaba75034c9fc98e07685ee6caea741b6c3d7 72450 strongswan-ike_5.2.1-6+deb8u8_all.deb e45a255f357b16f02d1d927388f7de09f2c4ce79f5625f301001831b6f3079dc 83392 strongswan-nm_5.2.1-6+deb8u8_amd64.deb 4bfa36751caf2a5556a543e97c0dd368fd4f189065f291291b23e872e52ad88d 72434 strongswan-ikev1_5.2.1-6+deb8u8_all.deb ca7381b3bc07315850ec59610fb995ab953d7bb56c757aec10f9afa34eb4fd48 72426 strongswan-ikev2_5.2.1-6+deb8u8_all.deb f12bb8dfc11b9a624ec7d1795b935ea251791168e01b7204833f64a10b82c552 83240 charon-cmd_5.2.1-6+deb8u8_amd64.deb Files: 3d6cc72a353c05534ae7a3c9bc6da415 3421 net optional strongswan_5.2.1-6+deb8u8.dsc dd3717c0aa59ab4591ca1812941ebb82 4075576 net optional strongswan_5.2.1.orig.tar.bz2 be3ef793e024d601b63de69b650235e1 133836 net optional strongswan_5.2.1-6+deb8u8.debian.tar.xz 5255dfd517ee3e87c1cd90f45b0b3d77 88396 net optional strongswan_5.2.1-6+deb8u8_all.deb 4721d0657f7f2eee9abe4b7bc8fc2f40 349718 net optional libstrongswan_5.2.1-6+deb8u8_amd64.deb 3b484f117ba8d0c4917cc91063598367 107336 net optional libstrongswan-standard-plugins_5.2.1-6+deb8u8_amd64.deb 48d959ff86ba5ef3429d31021ed9d141 138640 net optional libstrongswan-extra-plugins_5.2.1-6+deb8u8_amd64.deb 43f95c5e3958ae5a6543d3f59ce2a96a 307688 net optional libcharon-extra-plugins_5.2.1-6+deb8u8_amd64.deb d77de3f9c5d54913e912d1147e8e6ff8 7567230 debug extra strongswan-dbg_5.2.1-6+deb8u8_amd64.deb 63babdb318718897e9ba258443282851 308020 net optional strongswan-starter_5.2.1-6+deb8u8_amd64.deb df4938bf9ce1991a9d43cb400d9ce9b0 253542 net optional strongswan-libcharon_5.2.1-6+deb8u8_amd64.deb e8f4cfb72872da5f3985e486a12fd44a 81474 net optional strongswan-charon_5.2.1-6+deb8u8_amd64.deb a17c61e4821d4c3153c7a8d14283ef19 72450 oldlibs extra strongswan-ike_5.2.1-6+deb8u8_all.deb 3a3f961f3beb654b2976de892cf67027 83392 net optional strongswan-nm_5.2.1-6+deb8u8_amd64.deb 238a7e7fcedf025f69468b803a383d5e 72434 oldlibs extra strongswan-ikev1_5.2.1-6+deb8u8_all.deb 5fa9b533d0b1be1f2114e44f21573f0d 72426 oldlibs extra strongswan-ikev2_5.2.1-6+deb8u8_all.deb 3c4d35f6faa182bc690802c7010dbea6 83240 net optional charon-cmd_5.2.1-6+deb8u8_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAluzRZ8ACgkQHpU+J9Qx Hlg3VRAAsbkwLCfxtQKyIg+X4WzQPSeGO5roqP/oEk2Nr6AcD8Ds4DjRm972A8y0 cqOANX3xBynBcsFbJWZFNGvTyrcRzx7SyGRd5TMohau+0GszoOXSxrU7/zbfM6Jt d9s+tZPQTWsb91grd4ykQTanwNyRO1v8DIbNeggkIDGa8ai/dW0qJsnjBqfmvxkI ZC2XzfHW/iX8YeImwcYVPgBNpBiMXPyyKq0LDV10Sx9LuM+9CMaG+lDgD1kTSHkq YhH9mzgr04guN7RU/tSlqorhmept6JD7P4QXwlCFLOavJgxCJNod7oXKvxB+o7gX 3Dk8YkX9IAdAixQDvM8r55FhNAvgtCJfU9hMgnrMuLoEthaNnnkbEYlDqSzx59np uTGnGkhoMhwXkkySc3iCx8GgQ2tu3dE9fR1V1Fv/X8yzoj17UBwkkvivgWFB+95J OI14T5gd4g0HZ/rwulST5HfoEFseCbw/ZWa5hVHQRDoacI6bmHTMN7w6PEqD8qwU lo4hiU5LhijC3OFZDg17ItVQVhjZVI1alYGVVeXLVis5DVLj+OafA5R7nIrjDUaf ByRY78F39Qx1ufZJ3+LoLn8iD3OVPQuQ43jkfL+9gexTVqCu8ctJQY4FOMlro8pa OYOH49sa9CN6ehL8Ey2fEg7DpLMdGcd8FCB93KeG5zAgEpV6f08= =7mDG -----END PGP SIGNATURE-----