-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 24 Jan 2012 15:14:25 +0100 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl4-openssl-dev libcurl4-gnutls-dev libcurl3-dbg Architecture: mipsel Version: 7.21.0-2.1+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: mipsel Build Daemon (eysler) Changed-By: Alessandro Ghedini Description: curl - Get a file from an HTTP, HTTPS or FTP server libcurl3 - Multi-protocol file transfer library (OpenSSL) libcurl3-dbg - libcurl compiled with debug symbols libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS) libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS) libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL) Changes: curl (7.21.0-2.1+squeeze1) stable-security; urgency=high . * Non-maintainer upload * Fix URL sanitization vulnerability as per CVE-2012-0036 http://curl.haxx.se/docs/adv_20120124.html * Fix SSL CBC IV vulnerability as per CVE-2011-3389 http://curl.haxx.se/docs/adv_20120124B.html * Set urgency=high accordingly Checksums-Sha1: 500b09cd1060fee1409c45d622f250d5deef1657 229290 curl_7.21.0-2.1+squeeze1_mipsel.deb 48694e9d000c0688be0f2753a9f190199b864b8b 279316 libcurl3_7.21.0-2.1+squeeze1_mipsel.deb bf4c97bd850c164434d491159ef0dc5ea3813c07 260390 libcurl3-gnutls_7.21.0-2.1+squeeze1_mipsel.deb dae90cca8c04a3eb47e53f2dd30363d87aec3677 1109080 libcurl4-openssl-dev_7.21.0-2.1+squeeze1_mipsel.deb 25547b8d80f9295bfd3ed248b1a70b6e8bf03107 1083082 libcurl4-gnutls-dev_7.21.0-2.1+squeeze1_mipsel.deb 9b7a11b2f524b5a090050f69c04eeb22b3820410 112496 libcurl3-dbg_7.21.0-2.1+squeeze1_mipsel.deb Checksums-Sha256: f81016959931a9683b8c72f4a20dc6013cb0d43ce596f4f437c0a476fb8bd107 229290 curl_7.21.0-2.1+squeeze1_mipsel.deb bdd25dbe1a87429748d64f590fc9c1c2b0ff06d1ffd634d655dd9548f5cf2ed7 279316 libcurl3_7.21.0-2.1+squeeze1_mipsel.deb 43c6904767e6efac3023f7f5549c04d1ab6fbbbe177d2e306c81b6f8986db4ed 260390 libcurl3-gnutls_7.21.0-2.1+squeeze1_mipsel.deb f0b611dd71050d7035c05f4fb4466d164a11d14ac74b857af71da36c62e423e8 1109080 libcurl4-openssl-dev_7.21.0-2.1+squeeze1_mipsel.deb 7dd76f9d4678ce3c1ce808c76c1d532def46c7fd833791b17fc87db1beec7edc 1083082 libcurl4-gnutls-dev_7.21.0-2.1+squeeze1_mipsel.deb 46b3e760084db55a06dc0b93b24b713aa3b63a1ff70e98656aa80608d52bb4e5 112496 libcurl3-dbg_7.21.0-2.1+squeeze1_mipsel.deb Files: afdf95789080f43f260c13f3aa12a788 229290 web optional curl_7.21.0-2.1+squeeze1_mipsel.deb 62800d081e9e8800ad3640007f1c054f 279316 libs optional libcurl3_7.21.0-2.1+squeeze1_mipsel.deb adea5a386d014a33bd161c3db2f9055d 260390 libs optional libcurl3-gnutls_7.21.0-2.1+squeeze1_mipsel.deb 54ff75c5693053a889cca6d1516dfff8 1109080 libdevel optional libcurl4-openssl-dev_7.21.0-2.1+squeeze1_mipsel.deb ef18fb1e5a7181e06087401419c3f198 1083082 libdevel optional libcurl4-gnutls-dev_7.21.0-2.1+squeeze1_mipsel.deb a76dcb00f6f26aaca0ba3bafd7753338 112496 debug extra libcurl3-dbg_7.21.0-2.1+squeeze1_mipsel.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBAgAGBQJPJakfAAoJEGfN+G8NEqc0tUUP/1ss5ag+axMOpaIIO6oBoCEz bHJjWsDCcu0owMuk8FI44ck032bNAKsQEZOf9MlHUM0P7tmsUUZ9SNU19MwM0/fR TRLF9bRHiDw26Ybra5M1AunegRgtJfP1xnBZmeE9Sa9/laeGgrh6nh79w+ffHLrR r0yNx4esUk5FbdO83Djseey8cNfQyiW/CZCOI2Y9+Khw64+Au2NV3o3mFyglKu2X C4AmPluQH3dCdSFi2YsXQVW9b6N7N+01VQRV9/AgFj0I1kDdQKnyoUPRyxWWYTt+ IFsBL9KjL5+2587QJmeRFqWlc3cXfL6VPt8eNVwqCtId7dmXL9n+U4J4PI6gPRU0 8mmZ+Srz8TvTtpoCNXA4DeQszA/2jC0qV9ZK6/fR0fP6UfVWlh+EL702/JFXGhPJ ZQCMZFw3jcNsQv0EsXsgWIkz8mJA6Qy7LqLENyRjLPWCAvtr4ZbgrxP4vCjRlqLI RgTK0hZvmWs6kd/v8zZSJkf0qxgA/5svaCrgbtVwOjlND0lgWDwxmUXvTYUH/B8R x6R7LwJLab7i2ahPRSy+6z8QZReWvVfJoDja3B1++5JOznb1FVb0bfU+MIVGjpze 1NfVsKp2cX1ujJJY6bwo9u8pv3U/bUb+0HqgZbTC/nKhkmR6pojnDmMZYq9mbIZE X1MeZBziD3eyt9ykunKU =CzAH -----END PGP SIGNATURE-----