-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 13 Apr 2011 08:23:07 +0200 Source: xmlsec1 Binary: libxmlsec1-dev libxmlsec1 libxmlsec1-openssl libxmlsec1-gnutls libxmlsec1-nss xmlsec1 Architecture: source amd64 Version: 1.2.14-1+squeeze1 Distribution: stable-security Urgency: high Maintainer: John V. Belmonte Changed-By: Thijs Kinkhorst Description: libxmlsec1 - XML security library libxmlsec1-dev - Development files for the XML security library libxmlsec1-gnutls - Gnutls engine for the XML security library libxmlsec1-nss - Nss engine for the XML security library libxmlsec1-openssl - Openssl engine for the XML security library xmlsec1 - XML security command line processor Closes: 620560 Changes: xmlsec1 (1.2.14-1+squeeze1) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Apply patch from upstream addressing arbitrary file overwrite (CVE-2011-1425, closes: #620560). Checksums-Sha1: 4bedfffe1d83268932b5ab1e4231bbbd421ef08f 1563 xmlsec1_1.2.14-1+squeeze1.dsc 8f949ae74a6d66278a595bd063f13e0ad196d14a 1652670 xmlsec1_1.2.14.orig.tar.gz 7b341af5f6fd7f8a12657cacc30395c68dc50030 5946 xmlsec1_1.2.14-1+squeeze1.diff.gz 76a3d8dd1762e9c52d9be564d2a8b90b5b34e466 877534 libxmlsec1-dev_1.2.14-1+squeeze1_amd64.deb de56887396f18c08840c2c0739c882c70a9faeb6 163868 libxmlsec1_1.2.14-1+squeeze1_amd64.deb d7ffefa49af300c84d1aa6189396a7b48f7bda07 100844 libxmlsec1-openssl_1.2.14-1+squeeze1_amd64.deb 1ca28d5f3e1eac6ad2e13d478f69f53ffb529105 41276 libxmlsec1-gnutls_1.2.14-1+squeeze1_amd64.deb ab07f67f0fe3e5b3fa99a0dbb2ce75151f38e73a 92754 libxmlsec1-nss_1.2.14-1+squeeze1_amd64.deb 07c2e03166621a83ee00ab033e5d23b460dfce79 45338 xmlsec1_1.2.14-1+squeeze1_amd64.deb Checksums-Sha256: d6f1d49a66e99eb4a1d8524952a4dc4934e9d89a19b1e726546693c5c7008dfd 1563 xmlsec1_1.2.14-1+squeeze1.dsc 390a5085651828b8fe12aa978b200f59b9155eedbb91a4be89bf7cf39eefdd4a 1652670 xmlsec1_1.2.14.orig.tar.gz a032576b2ebadfd4d67a5a0dd76f2e8a54766546be1e95c3b91380cf43f4a038 5946 xmlsec1_1.2.14-1+squeeze1.diff.gz 14ad05ea0cad9a6dee349ff3bfb71684ed9cdd0d9f24519bb8d5cf3ab2474e40 877534 libxmlsec1-dev_1.2.14-1+squeeze1_amd64.deb 8dd9939b766f475e9a81bc5f032aae733fbbff90aad5b29abb15361b644415cf 163868 libxmlsec1_1.2.14-1+squeeze1_amd64.deb a60a4476a3f33878169350a54ff004dd33ab6c9d9d02034096ebf80ffd572053 100844 libxmlsec1-openssl_1.2.14-1+squeeze1_amd64.deb c35030e95ab02c52d20adb0d13303e1078b1e33dc23e1486cdc488c14a64ee05 41276 libxmlsec1-gnutls_1.2.14-1+squeeze1_amd64.deb 68e5ceabc3f8171f2810a6221ade238486136ec7d6e3f9013f09dc40db0dbfa8 92754 libxmlsec1-nss_1.2.14-1+squeeze1_amd64.deb 83f0689fae69a558017aa3452c20240757ee91888efe5ff75daba4d4d573d957 45338 xmlsec1_1.2.14-1+squeeze1_amd64.deb Files: fb8f8269cfe5802a11aa71622852fbd4 1563 text optional xmlsec1_1.2.14-1+squeeze1.dsc 1f24ab1d39f4a51faf22244c94a6203f 1652670 text optional xmlsec1_1.2.14.orig.tar.gz 02f73ed6f0a7069f177724d60471c963 5946 text optional xmlsec1_1.2.14-1+squeeze1.diff.gz b76adaff3287d93c3b36eeab64fa2ea1 877534 libdevel optional libxmlsec1-dev_1.2.14-1+squeeze1_amd64.deb 1187e5e8f7032f1c87377bed5b615434 163868 libs optional libxmlsec1_1.2.14-1+squeeze1_amd64.deb 071d5074847ab284cab9ebe43d2e2daa 100844 libs optional libxmlsec1-openssl_1.2.14-1+squeeze1_amd64.deb eb3f7849bbc453082d34d2daf3858e14 41276 libs optional libxmlsec1-gnutls_1.2.14-1+squeeze1_amd64.deb 8c72d142f310cc914e7ac5a2d3dc3b60 92754 libs optional libxmlsec1-nss_1.2.14-1+squeeze1_amd64.deb 96b9c501a5a90575773cc49c08aa41f2 45338 text optional xmlsec1_1.2.14-1+squeeze1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAEBAgAGBQJNpUOvAAoJEOxfUAG2iX57zMQH/35jsiv9qfVV+6DROWovWnBD g5c+Bh5JzdIktLjuY0XnkFTGhLK9315awR2hXjWjYPMSmPdPS86nLZMoO2gVynWm TBJfk2ueDrxg7CUlEpO6TFG/OdhihD31GPl7kRnDAffn7wKnSfdWv8lpKIVovawO llvhScSfojzvFVaWC9kkqvFJV6WjPLKQ/HfDERHMq/1uO53q0cTKW64yAAMy8n4M 45Xij2VgIvMA4rMG69Ps1Oosg7rWW/4v3yTPNowr+Am72j373Ht5x/9MQNzrupuV KBcQTrakyXspYa77Ry6+nNiSD2ipQmGWxOujMrN4SqnNef0sIpV+MDzb6G3SN0A= =tJ58 -----END PGP SIGNATURE-----