-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 24 Jan 2012 15:14:25 +0100 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl4-openssl-dev libcurl4-gnutls-dev libcurl3-dbg Architecture: mips Version: 7.21.0-2.1+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: mips Build Daemon (lucatelli) Changed-By: Alessandro Ghedini Description: curl - Get a file from an HTTP, HTTPS or FTP server libcurl3 - Multi-protocol file transfer library (OpenSSL) libcurl3-dbg - libcurl compiled with debug symbols libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS) libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS) libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL) Changes: curl (7.21.0-2.1+squeeze1) stable-security; urgency=high . * Non-maintainer upload * Fix URL sanitization vulnerability as per CVE-2012-0036 http://curl.haxx.se/docs/adv_20120124.html * Fix SSL CBC IV vulnerability as per CVE-2011-3389 http://curl.haxx.se/docs/adv_20120124B.html * Set urgency=high accordingly Checksums-Sha1: 8ba864f2d5b6e8ca6643ff71296b3d59a436d4d5 229024 curl_7.21.0-2.1+squeeze1_mips.deb 38c472cbfcd8ac7b3959e8ee374bd8c199f5ab91 279642 libcurl3_7.21.0-2.1+squeeze1_mips.deb 3c812e873a419c2c3dee51f2963407bd1c230ea3 260964 libcurl3-gnutls_7.21.0-2.1+squeeze1_mips.deb 23965d753a2d885ba37ec456f708be29a4324109 1110324 libcurl4-openssl-dev_7.21.0-2.1+squeeze1_mips.deb 79cebee86bd9d01dabdcaf517fd4beee3e960e50 1083788 libcurl4-gnutls-dev_7.21.0-2.1+squeeze1_mips.deb 597b5f8bc711d61e074b33e9e49cf3e29fdaa985 113730 libcurl3-dbg_7.21.0-2.1+squeeze1_mips.deb Checksums-Sha256: 79120a0a15f5c2a631029dfa08bfb3814bfd4ad3fec18c62ccb6f6e25f90ab57 229024 curl_7.21.0-2.1+squeeze1_mips.deb 6db97dc634225e42d5ab7dc56b6cdde42eccbff71021825c505650aef5e22397 279642 libcurl3_7.21.0-2.1+squeeze1_mips.deb 77852cf1413367bc4ff784f0a22ce34ab5fd1b267a57a0d41a4190e6c59be13c 260964 libcurl3-gnutls_7.21.0-2.1+squeeze1_mips.deb 15404bd551d17045a0a980d53d547b53c3657d9b7495c044154e4557ae2906db 1110324 libcurl4-openssl-dev_7.21.0-2.1+squeeze1_mips.deb 967debdde827e7ec1f99350ce9346dc3ee0817f072006ecce7315d8ca647900c 1083788 libcurl4-gnutls-dev_7.21.0-2.1+squeeze1_mips.deb 827c1d77b050807b2039f293da59ed8b02c3dc18d96a5e1e7cda23a9e7b76109 113730 libcurl3-dbg_7.21.0-2.1+squeeze1_mips.deb Files: 2d0d2308f47e5f5de4b74d1964d4c3e4 229024 web optional curl_7.21.0-2.1+squeeze1_mips.deb 7d341852d974c927a93629330ffa988f 279642 libs optional libcurl3_7.21.0-2.1+squeeze1_mips.deb 93a55c5bc9ee2304210c55ee54ef8c68 260964 libs optional libcurl3-gnutls_7.21.0-2.1+squeeze1_mips.deb 943fb86c92f73ae29126760dff59c9e9 1110324 libdevel optional libcurl4-openssl-dev_7.21.0-2.1+squeeze1_mips.deb 40dc4c786c78b577ab5c8768c344891b 1083788 libdevel optional libcurl4-gnutls-dev_7.21.0-2.1+squeeze1_mips.deb 2114c4329fd477a9d7eb9b41bb2050c6 113730 debug extra libcurl3-dbg_7.21.0-2.1+squeeze1_mips.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iQIcBAEBCAAGBQJPJabyAAoJEKDBSF96Co2iNMIQALw8T5EjBKrEi4d56c1TAp2p IxrpX3nOFZbyI7Ge/Bct+VDVdaROKLJ9GVpE7f+9SNPM1CnrEYQ5b/ZD0OD3tajJ 6VItGecZQ0/b5sygf3PH0phrQuJBRYEjk6EkHn9plfhjL9DSf/m3iPLOL0JF+fOr eRJ6DBw5OwtwnOHklhoCPhTkBQkxBOrC17ZG9T8r101l3Wubyvt4xuem8eauP1PX jxgP5Fxzt10OFqfGg8UtZRlCy7Wlinv7txqRDJsJGAQvwNIY8vWXi27t892rhK+W 1WM4NUcmcFLLHsPo2fsgUAj67KHdY93uYlUK8pOO/vS14uPG4UrVnati80v8N5lR bVi3QebCZZyqrSxTziZVbAzAMPORqNvDn9tjyc0LyP4HtRjA89M5ibM546U0GZ4m LAuDJsrSQW1PbEr/gdnDzBqtr6xRCqWM9q2G2l6/Z4UAtjBSawaM+Nl5VXNX49/e yhAM03jDBI2vb1/mrgUv7EJ6zcEITFqADzTTDL4D2VwyRXj3Mo1/YDliQnzCIbs/ J53RbanTuFjL7DQAHBviBslIhItwfEuSRLiUQZekfAP1OXZ/Cmd1snmuGRVnIxyP BSydcdSslVUNujB5wv4SLFZdsm+hkDLrN9P+8WoF4vtlmlc7gIPACIcgD4+jp8yO gAg43uZ9Uo9c6eX6Hwsf =MP0m -----END PGP SIGNATURE-----