-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 19 Jul 2011 22:21:04 +1000 Source: opie Binary: opie-client opie-server libopie-dev Architecture: ia64 Version: 2.32.dfsg.1-0.2+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: ia64 Build Daemon (caballero) Changed-By: Steffen Joeris Description: libopie-dev - OPIE library development files. opie-client - OPIE programs for generating OTPs on client machines opie-server - OPIE programs for maintaining an OTP key file Closes: 631344 631345 Changes: opie (2.32.dfsg.1-0.2+squeeze1) stable-security; urgency=high . * Non-maintainer upload by the security team * Fix off-by-one and privilege escalation via missing check for setuid() (Closes: #631344, #631345) Fixes: CVE-2011-2489 CVE-2011-2490 Checksums-Sha1: e8a0a6a294424c80727622a9c12dd76e5b8d9374 48754 opie-client_2.32.dfsg.1-0.2+squeeze1_ia64.deb 9f2139882c7e782c93a4c06cb44160ca27605a4b 53442 opie-server_2.32.dfsg.1-0.2+squeeze1_ia64.deb 31c7548d69a4928576b89f2bd93e0673ed9f5844 37932 libopie-dev_2.32.dfsg.1-0.2+squeeze1_ia64.deb Checksums-Sha256: c9b049bcf201ec98126fcedba9887d39cb7061acf72685ff60369bd8b08aaf59 48754 opie-client_2.32.dfsg.1-0.2+squeeze1_ia64.deb b7e471e354c469f06c0183d7a1298748a626c4d148f4f0f7d7b38b62203c9d08 53442 opie-server_2.32.dfsg.1-0.2+squeeze1_ia64.deb d31406215155d2477693a31b67f48418ceb14573c048ba1deb605c54d7c4d5bd 37932 libopie-dev_2.32.dfsg.1-0.2+squeeze1_ia64.deb Files: 7b238bf7e520c3b5f8cddddba3c7fb27 48754 admin optional opie-client_2.32.dfsg.1-0.2+squeeze1_ia64.deb 44f7b0795233a43f238b2c077ad78247 53442 admin optional opie-server_2.32.dfsg.1-0.2+squeeze1_ia64.deb 3bf870a2cc6fcc771822ab0247b4bc3f 37932 devel optional libopie-dev_2.32.dfsg.1-0.2+squeeze1_ia64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iQIcBAEBCAAGBQJOJfTcAAoJEL6oPZQvSA8urmMP/iBQe6Slp/9TSc6qFjuZPI2d O2/MaJYt4SnqD3upSHK3jQNCyXaiEgWbL35fNylpUZKewv9rb7upVwit0z34u3yl 2QWsk7mgspEyQCubk+0krmSvHUord/28B0PcxEV3Rimx0CCsgiJrNScdVWgTmf9E bpxsIDASQZtWj+5XaXfnkQcWP+ouo3Tyb5x9woDTpSY3/+lDUgl2uV/20AvT2E0f n4/LmciVxR3pBK0v398ajaLl7yt3NqRdAZG1z5BINJBELD2zeUzIMRKjoEc6bthM UrDoKD8Yh7cK5UHoS06uHujMoM377hVndDzjKGr8ca/S8lLaovQvD6HOdTqJ+WAk z+oVaeA8mG5JpF3bf7OLcBEeBrl9AtyY1lQcUcpllKP54n4uU2gbqhhLMHlQ0W8Z ZhSWfgaFiMx8nci2d4mRf/1jvaOvyFFE9LC9TD0KEuUrJYZRonKeam3TZq05F62H pXxluM6+uWIY6x/KbK6ZexbFESvp/Vf4o3vlFI4DeWBIMASbMpYdw8CKxCLJwH08 3l//t9riwhwE9j0837ImqefR3Ak0hvvl1Z5OYhfRm5VjpTPeDCBVpL77KY1P37af oCiRCl9elCfVr1EJSTarP7t8NRvrgU5ai1hS355wNJRQmdF4lwX+6dk95aMPR3zP 3uPSOEncp5SwPz3eZvW+ =qMEj -----END PGP SIGNATURE-----