Content-Type: text/plain
debian-changes-digest Digest Volume 2007 : Issue 95
Today's Topics:
Accepted glibc 2.3.6.ds1-13etch4 (so [ Aurelien Jarno ]
Accepted apache2 2.0.54-5sarge2 (sou [ Stefan Fritsch ]
Accepted klibc 1.4.34-2 (source i386 [ maximilian attems ]
Accepted tzdata 2007f-1etch1 (source [ Aurelien Jarno <aurel32@debian.org> ]
Accepted freetype 2.1.7-8 (source i3 [ Steve Langasek <vorlon@debian.org> ]
Date: Sat, 18 Aug 2007 19:56:18 +0000
From: Aurelien Jarno <aurel32@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted glibc 2.3.6.ds1-13etch4 (source all amd64)
Message-Id: <E1IMUPC-0003LB-Kx@ries.debian.org>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Fri, 17 Aug 2007 00:24:28 +0200
Source: glibc
Binary: libc0.1-prof libc6-dev-amd64 locales-all libc6-i686 libc6-dev-ppc64 libc0.3-pic glibc-doc libc0.3 libc0.1-i686 libc0.1-i386 libc6.1-dev libc6-s390x libnss-files-udeb libc0.1-dev-i386 libc6-dev-sparc64 libc6-i386 libc0.3-dev libc6-udeb libc6-dbg libc6.1-pic libc6-dev libc0.3-prof libc6-sparcv9 libc0.1-udeb libc6-dev-i386 libc6.1-prof libc0.1-dev locales libc6-pic libc0.3-udeb libc6-dev-powerpc libc0.1-pic libc6-ppc64 libc0.3-dbg libc0.1-dbg libc6-amd64 libc0.1 libc6-prof libc6-xen libc6-powerpc libc6 libc6-sparcv9b libc6.1-udeb libc6.1-dbg nscd libc6-sparc64 libnss-dns-udeb libc6.1 libc6-dev-s390x
Architecture: source amd64 all
Version: 2.3.6.ds1-13etch4
Distribution: stable
Urgency: low
Maintainer: Aurelien Jarno <aurel32@debian.org>
Changed-By: Aurelien Jarno <aurel32@debian.org>
Description:
glibc-doc - GNU C Library: Documentation
libc6 - GNU C Library: Shared libraries
libc6-dbg - GNU C Library: Libraries with debugging symbols
libc6-dev - GNU C Library: Development Libraries and Header Files
libc6-dev-i386 - GNU C Library: 32bit development libraries for AMD64
libc6-i386 - GNU C Library: 32bit shared libraries for AMD64
libc6-pic - GNU C Library: PIC archive library
libc6-prof - GNU C Library: Profiling Libraries
libc6-udeb - GNU C Library: Shared libraries - udeb (udeb)
libnss-dns-udeb - GNU C Library: NSS helper for DNS - udeb (udeb)
libnss-files-udeb - GNU C Library: NSS helper for files - udeb (udeb)
locales - GNU C Library: National Language (locale) data [support]
locales-all - GNU C Library: Precompiled locale data
nscd - GNU C Library: Name Service Cache Daemon
Closes: 426000
Changes:
glibc (2.3.6.ds1-13etch4) stable; urgency=low
.
- patches/any/cvs-vfscanf.diff: add additional test for EOF
in loop to look for conversion specifier to avoid testing of
wrong errno value. Closes: #426000.
Files:
ffa8e3b6b08d8162a1f32c5b90e3265d 2192 libs required glibc_2.3.6.ds1-13etch4.dsc
8c02c828ca75d663618b53bbc77676ba 913948 libs required glibc_2.3.6.ds1-13etch4.diff.gz
18b00f8ae9988e62488269a78429c389 1480764 doc optional glibc-doc_2.3.6.ds1-13etch4_all.deb
65e1cc6e75e3d8a72ddb3197a715e56e 4008766 libs standard locales_2.3.6.ds1-13etch4_all.deb
ea4716157fb7effe347ef0d366d7e0e6 4180676 libs required libc6_2.3.6.ds1-13etch4_amd64.deb
9b9ed67c9ba16a50876541dcf8933924 2118144 libdevel optional libc6-dev_2.3.6.ds1-13etch4_amd64.deb
2fa4225255df6874bb4f7e3684ea25aa 1576990 libdevel extra libc6-prof_2.3.6.ds1-13etch4_amd64.deb
e647e4d4212aea6ba2c03882e5406022 1405610 libdevel optional libc6-pic_2.3.6.ds1-13etch4_amd64.deb
a40c288e19ca47a2852424409702bb95 6166998 libs extra locales-all_2.3.6.ds1-13etch4_amd64.deb
eaa008c4347bde6828a4e13c1b9318bd 3070626 libs optional libc6-i386_2.3.6.ds1-13etch4_amd64.deb
51c89903a4e55199b6578ecfb5b07b20 1583918 libdevel optional libc6-dev-i386_2.3.6.ds1-13etch4_amd64.deb
01f2699ee3bd95b82121c4d325bc1c4c 146014 admin optional nscd_2.3.6.ds1-13etch4_amd64.deb
382834405a07b5d7677b1635f9f7fd7f 2297154 libdevel extra libc6-dbg_2.3.6.ds1-13etch4_amd64.deb
3a73bdea1e37625b6395441be037d72e 1042648 debian-installer extra libc6-udeb_2.3.6.ds1-13etch4_amd64.udeb
1df3a8d386a4f8fe5176519167640efc 9572 debian-installer extra libnss-dns-udeb_2.3.6.ds1-13etch4_amd64.udeb
58cd03799181c2554e87296079ff9116 17202 debian-installer extra libnss-files-udeb_2.3.6.ds1-13etch4_amd64.udeb
Package-Type: udeb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGxTvGw3ao2vG823MRAvkvAJ9AB/NrsV4yQtwksJ2SSj4leCgdrwCeM60z
sElTtjRP+shSdREP9C93Xcs=
=Ug//
-----END PGP SIGNATURE-----
Accepted:
glibc-doc_2.3.6.ds1-13etch4_all.deb
to pool/main/g/glibc/glibc-doc_2.3.6.ds1-13etch4_all.deb
glibc_2.3.6.ds1-13etch4.diff.gz
to pool/main/g/glibc/glibc_2.3.6.ds1-13etch4.diff.gz
glibc_2.3.6.ds1-13etch4.dsc
to pool/main/g/glibc/glibc_2.3.6.ds1-13etch4.dsc
libc6-dbg_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6-dbg_2.3.6.ds1-13etch4_amd64.deb
libc6-dev-i386_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6-dev-i386_2.3.6.ds1-13etch4_amd64.deb
libc6-dev_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6-dev_2.3.6.ds1-13etch4_amd64.deb
libc6-i386_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6-i386_2.3.6.ds1-13etch4_amd64.deb
libc6-pic_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6-pic_2.3.6.ds1-13etch4_amd64.deb
libc6-prof_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6-prof_2.3.6.ds1-13etch4_amd64.deb
libc6-udeb_2.3.6.ds1-13etch4_amd64.udeb
to pool/main/g/glibc/libc6-udeb_2.3.6.ds1-13etch4_amd64.udeb
libc6_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/libc6_2.3.6.ds1-13etch4_amd64.deb
libnss-dns-udeb_2.3.6.ds1-13etch4_amd64.udeb
to pool/main/g/glibc/libnss-dns-udeb_2.3.6.ds1-13etch4_amd64.udeb
libnss-files-udeb_2.3.6.ds1-13etch4_amd64.udeb
to pool/main/g/glibc/libnss-files-udeb_2.3.6.ds1-13etch4_amd64.udeb
locales-all_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/locales-all_2.3.6.ds1-13etch4_amd64.deb
locales_2.3.6.ds1-13etch4_all.deb
to pool/main/g/glibc/locales_2.3.6.ds1-13etch4_all.deb
nscd_2.3.6.ds1-13etch4_amd64.deb
to pool/main/g/glibc/nscd_2.3.6.ds1-13etch4_amd64.deb
Date: Sat, 18 Aug 2007 19:56:20 +0000
From: Stefan Fritsch <sf@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted apache2 2.0.54-5sarge2 (source all i386)
Message-Id: <E1IMUPE-0003LR-0s@ries.debian.org>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 16 Aug 2007 20:16:15 +0200
Source: apache2
Binary: apache2-utils apache2 apache2-prefork-dev apache2-mpm-prefork apache2-doc libapr0-dev apache2-mpm-threadpool apache2-mpm-worker libapr0 apache2-threaded-dev apache2-common apache2-mpm-perchild
Architecture: source all i386
Version: 2.0.54-5sarge2
Distribution: oldstable-proposed-updates
Urgency: low
Maintainer: Debian Apache Maintainers <debian-apache@lists.debian.org>
Changed-By: Stefan Fritsch <sf@debian.org>
Description:
apache2 - next generation, scalable, extendable web server
apache2-common - next generation, scalable, extendable web server
apache2-doc - documentation for apache2
apache2-mpm-perchild - experimental high speed perchild threaded model for Apache2
apache2-mpm-prefork - traditional model for Apache2
apache2-mpm-threadpool - experimental high speed model for Apache2 (transitional package)
apache2-mpm-worker - high speed threaded model for Apache2
apache2-prefork-dev - development headers for apache2
apache2-threaded-dev - development headers for apache2
apache2-utils - utility programs for webservers
libapr0 - the Apache Portable Runtime
libapr0-dev - development headers for libapr
Changes:
apache2 (2.0.54-5sarge2) oldstable-proposed-updates; urgency=low
.
- Fix some less critical security issues:
- Denial of service for threaded MPMs:
- CVE-2005-2970: mpm_worker memory leak
- CVE-2005-3357: mod_ssl with custom errorpage
- CVE-2007-1863: mod_cache
- Cross site scripting:
- CVE-2005-3352: mod_imap
- CVE-2006-3918: via Expect header
- CVE-2006-5752: mod_status
- Add check for scoreboard PID protection (CVE-2007-3304)
Files:
a27eebf40caec5b5ebbc3cc044aa48c4 1153 net optional apache2_2.0.54-5sarge2.dsc
6591b23c0d10bb585cdd23fc436104ea 111878 net optional apache2_2.0.54-5sarge2.diff.gz
d17f122e7d0f8a08fd7b7e1c7fae60d9 33772 net optional apache2-mpm-threadpool_2.0.54-5sarge2_all.deb
3a63d358620485f18ac20a672713e2c3 3820266 doc optional apache2-doc_2.0.54-5sarge2_all.deb
f9ce42ce6a78018166f7ce14532e5fa8 807518 net optional apache2-common_2.0.54-5sarge2_i386.deb
849be7538abc6ddadd41be095fcf1e37 90966 net optional apache2-utils_2.0.54-5sarge2_i386.deb
b2c4b4457fa65306abb17a7f9f685436 206716 net optional apache2-mpm-worker_2.0.54-5sarge2_i386.deb
32089ef7e2ff35cd22d5a60b3606a87d 206958 net optional apache2-mpm-perchild_2.0.54-5sarge2_i386.deb
9d194ab106f0a09370c0872690356062 203190 net optional apache2-mpm-prefork_2.0.54-5sarge2_i386.deb
65a7c50ac66b25539f1041982328abd7 170184 devel optional apache2-prefork-dev_2.0.54-5sarge2_i386.deb
2fc6e95d6215822af3a8bbdbf91433c8 170778 devel optional apache2-threaded-dev_2.0.54-5sarge2_i386.deb
daaa7c35b984f3a64ae720e489f5d7f1 130882 net optional libapr0_2.0.54-5sarge2_i386.deb
44a2dc4c2c43e3270b97966d1217bcb4 260122 libdevel optional libapr0-dev_2.0.54-5sarge2_i386.deb
80e00df0f6489297406c2a73637df64c 33690 web optional apache2_2.0.54-5sarge2_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGxK2mbxelr8HyTqQRApxOAJ99o2vcFXvJR+qZcUylD4pbP+RG6ACeONf9
Q8AyQJ/CJpA+aca4bDAOJqM=
=UK9P
-----END PGP SIGNATURE-----
Accepted:
apache2-common_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-common_2.0.54-5sarge2_i386.deb
apache2-doc_2.0.54-5sarge2_all.deb
to pool/main/a/apache2/apache2-doc_2.0.54-5sarge2_all.deb
apache2-mpm-perchild_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-mpm-perchild_2.0.54-5sarge2_i386.deb
apache2-mpm-prefork_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-mpm-prefork_2.0.54-5sarge2_i386.deb
apache2-mpm-threadpool_2.0.54-5sarge2_all.deb
to pool/main/a/apache2/apache2-mpm-threadpool_2.0.54-5sarge2_all.deb
apache2-mpm-worker_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-mpm-worker_2.0.54-5sarge2_i386.deb
apache2-prefork-dev_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-prefork-dev_2.0.54-5sarge2_i386.deb
apache2-threaded-dev_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-threaded-dev_2.0.54-5sarge2_i386.deb
apache2-utils_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2-utils_2.0.54-5sarge2_i386.deb
apache2_2.0.54-5sarge2.diff.gz
to pool/main/a/apache2/apache2_2.0.54-5sarge2.diff.gz
apache2_2.0.54-5sarge2.dsc
to pool/main/a/apache2/apache2_2.0.54-5sarge2.dsc
apache2_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/apache2_2.0.54-5sarge2_i386.deb
libapr0-dev_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/libapr0-dev_2.0.54-5sarge2_i386.deb
libapr0_2.0.54-5sarge2_i386.deb
to pool/main/a/apache2/libapr0_2.0.54-5sarge2_i386.deb
Date: Sat, 18 Aug 2007 19:56:16 +0000
From: maximilian attems <maks@sternwelten.at>
To: debian-changes@lists.debian.org
Subject: Accepted klibc 1.4.34-2 (source i386)
Message-Id: <E1IMUPA-0003L5-HY@ries.debian.org>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 16 Aug 2007 23:35:25 +0200
Source: klibc
Binary: libklibc-dev klibc-utils-floppy-udeb libklibc-udeb libklibc klibc-utils klibc-utils-udeb
Architecture: source i386
Version: 1.4.34-2
Distribution: stable
Urgency: low
Maintainer: maximilian attems <maks@sternwelten.at>
Changed-By: maximilian attems <maks@sternwelten.at>
Description:
klibc-utils - small statically-linked utilities built with klibc
klibc-utils-floppy-udeb - small utilities built with klibc for the boot floppy (udeb)
klibc-utils-udeb - small statically-linked utilities built with klibc (udeb)
libklibc - minimal libc subset for use with initramfs
libklibc-dev - kernel headers used during the build of klibc
libklibc-udeb - minimal libc subset for use with initramfs (udeb)
Closes: 438123
Changes:
klibc (1.4.34-2) stable; urgency=low
.
- Add backported 09-mips_sock_dgram.patch for mips/mipsel definitions
of <sys/socket.h>. Fixes nfsroot on those archs. (closes: #438123)
Thanks Michel Lespinasse <walken@zoy.org> for analysis, report and testing.
- Bump build dep linux-headers-2.6.18-5.
Files:
9af70d0c796e7eca407856440e8a7ca7 747 libs optional klibc_1.4.34-2.dsc
89842620ac7eaf861f7d88c28d61a70a 16015 libs optional klibc_1.4.34-2.diff.gz
040e0a0ac558b667c0b1aaf6d08a3495 2073880 libdevel optional libklibc-dev_1.4.34-2_i386.deb
ea65db835a63c31e49949262a58805f9 43044 libs optional libklibc_1.4.34-2_i386.deb
d22cba512d7d070f0e5b743e56ff5d46 158082 libs optional klibc-utils_1.4.34-2_i386.deb
1a96aaa855ff790f06ddcb3de82bfb59 148138 debian-installer optional klibc-utils-udeb_1.4.34-2_i386.udeb
992dc84f14be606b4270132ba28f28a7 50796 debian-installer optional klibc-utils-floppy-udeb_1.4.34-2_i386.udeb
055f32b5009c75fdfc2013b930f8b72a 33654 debian-installer optional libklibc-udeb_1.4.34-2_i386.udeb
Package-Type: udeb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGxMSleW7Lc5tEHqgRAn7AAKCVKySi7bzAxeujySr92ErdnFNOlQCdFE03
HE4NxeGbQzPP0cyR1nYirgM=
=miEb
-----END PGP SIGNATURE-----
Accepted:
klibc-utils-floppy-udeb_1.4.34-2_i386.udeb
to pool/main/k/klibc/klibc-utils-floppy-udeb_1.4.34-2_i386.udeb
klibc-utils-udeb_1.4.34-2_i386.udeb
to pool/main/k/klibc/klibc-utils-udeb_1.4.34-2_i386.udeb
klibc-utils_1.4.34-2_i386.deb
to pool/main/k/klibc/klibc-utils_1.4.34-2_i386.deb
klibc_1.4.34-2.diff.gz
to pool/main/k/klibc/klibc_1.4.34-2.diff.gz
klibc_1.4.34-2.dsc
to pool/main/k/klibc/klibc_1.4.34-2.dsc
libklibc-dev_1.4.34-2_i386.deb
to pool/main/k/klibc/libklibc-dev_1.4.34-2_i386.deb
libklibc-udeb_1.4.34-2_i386.udeb
to pool/main/k/klibc/libklibc-udeb_1.4.34-2_i386.udeb
libklibc_1.4.34-2_i386.deb
to pool/main/k/klibc/libklibc_1.4.34-2_i386.deb
Date: Sat, 18 Aug 2007 19:56:14 +0000
From: Bart Martens <bartm@knars.be>
To: debian-changes@lists.debian.org
Subject: Accepted flashplugin-nonfree 9.0.48.0.1etch1 (source i386)
Message-Id: <E1IMUP8-0003Kt-Dg@ries.debian.org>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 12 Jul 2007 18:39:45 +0000
Source: flashplugin-nonfree
Binary: flashplugin-nonfree
Architecture: source i386
Version: 9.0.48.0.1etch1
Distribution: stable
Urgency: low
Maintainer: Bart Martens <bartm@knars.be>
Changed-By: Bart Martens <bartm@knars.be>
Description:
flashplugin-nonfree - Adobe Flash Player plugin installer
Closes: 432755
Changes:
flashplugin-nonfree (9.0.48.0.1etch1) stable; urgency=low
.
- debian/config, debian/postinst: New plugin release "LNX 9,0,48,0".
Closes: #432755.
Files:
5657f332ddd9e106544536f0fc677fc5 545 contrib/web optional flashplugin-nonfree_9.0.48.0.1etch1.dsc
00ddd45a008c040558601f86d25a735f 17591 contrib/web optional flashplugin-nonfree_9.0.48.0.1etch1.tar.gz
e0baa755c5a67cbb5ac59a990ab5e182 13316 contrib/web optional flashplugin-nonfree_9.0.48.0.1etch1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGlnr8bMaawmho9B8RAlvVAKDo40NpK1AJDcBjtinnkFyh/zy+PwCcCZo0
AVxBFc/qlCiCGZTzw7qzllQ=
=UrAf
-----END PGP SIGNATURE-----
Accepted:
flashplugin-nonfree_9.0.48.0.1etch1.dsc
to pool/contrib/f/flashplugin-nonfree/flashplugin-nonfree_9.0.48.0.1etch1.dsc
flashplugin-nonfree_9.0.48.0.1etch1.tar.gz
to pool/contrib/f/flashplugin-nonfree/flashplugin-nonfree_9.0.48.0.1etch1.tar.gz
flashplugin-nonfree_9.0.48.0.1etch1_i386.deb
to pool/contrib/f/flashplugin-nonfree/flashplugin-nonfree_9.0.48.0.1etch1_i386.deb
Date: Sat, 18 Aug 2007 19:56:15 +0000
From: Aurelien Jarno <aurel32@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted tzdata 2007f-1etch1 (source all)
Message-Id: <E1IMUP9-0003Kz-EN@ries.debian.org>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Tue, 31 Jul 2007 13:13:50 +0000
Source: tzdata
Binary: tzdata
Architecture: source all
Version: 2007f-1etch1
Distribution: stable
Urgency: low
Maintainer: Aurelien Jarno <aurel32@debian.org>
Changed-By: Aurelien Jarno <aurel32@debian.org>
Description:
tzdata - Time Zone and Daylight Saving Time Data
Closes: 433869
Changes:
tzdata (2007f-1etch1) stable; urgency=low
.
- New upstream release for Etch:
- Only the timezone definitions have been changed, all scripts are
left unchanged.
- Includes new DST rules for New Zealand (closes: bug#433869).
Files:
234e8a807229a72ea37f8577b543c3b3 875 libs required tzdata_2007f-1etch1.dsc
1d018fb9052cbdab92eed5d58f096049 4078 libs required tzdata_2007f-1etch1.diff.gz
5f4e4d8f1a23923b302249238d401401 349908 libs required tzdata_2007f-1etch1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFGxWsaw3ao2vG823MRAlZiAJ47jXyA5XHg7xBIYdBZWyZxBzv+4wCgkBKv
VnP0WwfHSdyr2OensRz7fJA=
=ExzG
-----END PGP SIGNATURE-----
Accepted:
tzdata_2007f-1etch1.diff.gz
to pool/main/t/tzdata/tzdata_2007f-1etch1.diff.gz
tzdata_2007f-1etch1.dsc
to pool/main/t/tzdata/tzdata_2007f-1etch1.dsc
tzdata_2007f-1etch1_all.deb
to pool/main/t/tzdata/tzdata_2007f-1etch1_all.deb
Date: Wed, 22 Aug 2007 07:56:30 +0000
From: Steve Langasek <vorlon@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted freetype 2.1.7-8 (source i386)
Message-Id: <E1INl4o-0001wd-Kg@ries.debian.org>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 09 Jul 2007 01:39:14 -0700
Source: freetype
Binary: freetype2-demos libfreetype6-udeb libfreetype6 libfreetype6-dev
Architecture: source i386
Version: 2.1.7-8
Distribution: oldstable-security
Urgency: high
Maintainer: Steve Langasek <vorlon@debian.org>
Changed-By: Steve Langasek <vorlon@debian.org>
Description:
freetype2-demos - FreeType 2 demonstration programs
libfreetype6 - FreeType 2 font engine, shared library files
libfreetype6-dev - FreeType 2 font engine, development files
libfreetype6-udeb - FreeType 2 font engine for the debian-installer (udeb)
Closes: 425625
Changes:
freetype (2.1.7-8) oldstable-security; urgency=high
.
- debian/patches-freetype/500-CVE-2007-2754_ttgfload.diff: address
CVE-2007-2754, a bug allowing execution of arbitrary code via a crafted
TTF image by way of an integer overflow. Closes: #425625.
Files:
f04967ca8fffb4340fd8ef716d8fbfb5 754 libs optional freetype_2.1.7-8.dsc
d94a3a7e7575ab5c5aa67d5fc630077d 57953 libs optional freetype_2.1.7-8.diff.gz
7abd8cdd3d0b864b0f593eb391e95dc8 364974 libs optional libfreetype6_2.1.7-8_i386.deb
7e558fc40413ac96d54a6e187619923a 695068 libdevel optional libfreetype6-dev_2.1.7-8_i386.deb
e6c2ceadaa8a74247d1fe3eb4eead534 63184 utils optional freetype2-demos_2.1.7-8_i386.deb
df44023a71960bb13e8cbc868a99805c 212968 debian-installer extra libfreetype6-udeb_2.1.7-8_i386.udeb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
iD8DBQFGk9aLKN6ufymYLloRAkxgAKCLGKlYxwoK0rXVAs2mM17/4dbx9wCdGCxj
frhIiUIHBpdvkXSdcjNvs6w=
=lrXe
-----END PGP SIGNATURE-----
Accepted:
freetype2-demos_2.1.7-8_i386.deb
to pool/main/f/freetype/freetype2-demos_2.1.7-8_i386.deb
freetype_2.1.7-8.diff.gz
to pool/main/f/freetype/freetype_2.1.7-8.diff.gz
freetype_2.1.7-8.dsc
to pool/main/f/freetype/freetype_2.1.7-8.dsc
libfreetype6-dev_2.1.7-8_i386.deb
to pool/main/f/freetype/libfreetype6-dev_2.1.7-8_i386.deb
libfreetype6-udeb_2.1.7-8_i386.udeb
to pool/main/f/freetype/libfreetype6-udeb_2.1.7-8_i386.udeb
libfreetype6_2.1.7-8_i386.deb
to pool/main/f/freetype/libfreetype6_2.1.7-8_i386.deb
End of debian-changes-digest Digest V2007 Issue #95
Received on Wed Aug 22 04:01:06 2007