-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 19 Jul 2011 22:25:18 +1000 Source: opie Binary: opie-client opie-server libopie-dev Architecture: source amd64 Version: 2.32-10.2+lenny1 Distribution: oldstable-security Urgency: high Maintainer: Michael Stone <[email protected]> Changed-By: Steffen Joeris <[email protected]> Description: libopie-dev - OPIE library development files. opie-client - OPIE programs for generating OTPs on client machines opie-server - OPIE programs for maintaining an OTP key file Closes: 631344 631345 Changes: opie (2.32-10.2+lenny1) oldstable-security; urgency=high . * Non-maintainer upload by the security team * Fix off-by-one and privilege escalation via missing check for setuid() (Closes: #631344, #631345) Fixes: CVE-2011-2489 CVE-2011-2490 Checksums-Sha1: eca8b8b98c036bb1cf27d24ea07e35bdb5976990 1645 opie_2.32-10.2+lenny1.dsc c8a8723d9bbb910230c319848c8c9decf8dbbdc7 156751 opie_2.32.orig.tar.gz c01747322e1691000b498050c2641eddea91c7e6 18171 opie_2.32-10.2+lenny1.diff.gz 7760f52e792b3711d158b0ce18d153b537c7e7b8 43078 opie-client_2.32-10.2+lenny1_amd64.deb 96ea101692ee6cad2960323368084154f236f8fc 45914 opie-server_2.32-10.2+lenny1_amd64.deb a46b3b23d291a835c7963048cc1f7122a5cb877b 30724 libopie-dev_2.32-10.2+lenny1_amd64.deb Checksums-Sha256: 1e35f0841150168dc44ee6263eeef123d1e323949badefc03a7d4338f0364a70 1645 opie_2.32-10.2+lenny1.dsc 08eb16f40bdc167451170c59c4a7fbce04662f99984fa92dc7d02e9fad265d0c 156751 opie_2.32.orig.tar.gz ceeaae1476090a09e154edc3c1bef6bcab6ba191e72e06a197c2b3b5cb06d88a 18171 opie_2.32-10.2+lenny1.diff.gz fb7d01222a4f298681bc1298718bd3706620d1cc616407050a528f91edd440cf 43078 opie-client_2.32-10.2+lenny1_amd64.deb e05e929a2daa41cd0bf59d6581ab3b4517d5d159bff8f0ece0dc2bb6b80476c6 45914 opie-server_2.32-10.2+lenny1_amd64.deb 66e9044a396cfd7e874f0b16cfd91a319a90f1be15277fd773abd625db54342c 30724 libopie-dev_2.32-10.2+lenny1_amd64.deb Files: 15934125bd813b1af637e12c3aa7523c 1645 admin optional opie_2.32-10.2+lenny1.dsc 6970dc42e05e91fc6419533decf6c6e2 156751 admin optional opie_2.32.orig.tar.gz 058f7be8b2d2afe8f053ef538d0a162a 18171 admin optional opie_2.32-10.2+lenny1.diff.gz 1f39dd2e8cbc498d97abb8491868a203 43078 admin optional opie-client_2.32-10.2+lenny1_amd64.deb 938c5ba4181730cfafe534046c263846 45914 admin optional opie-server_2.32-10.2+lenny1_amd64.deb f3678e3169386c6b40a74eb0c8961220 30724 devel optional libopie-dev_2.32-10.2+lenny1_amd64.deb
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iQIcBAEBAgAGBQJPPrAHAAoJEMXOXcLFQs1ZPMAP/09iMo/mINrD97iEmuogBBJY 1PayzSUtuWS3DJ/lHBZc0NKNm5V6je7+4+1EzNt2uemGgW72LjL+3gnPmc5cungK F+iHFKVakCYANqPRYEANRikkj5GA6tG5JOnt6FfrwuJGc2Kg80tvqOKuNxaA8q+D zyKnjL9EaWEd+HWtykjpt6DklBhnmG/KH/O+4jA4vsXkbzzlpSlRNciNsKtb488J 2V514JrWmUAvUzQiQ5sUPZs+zFCKfq+yr+F2RDkiI06mFhaBxm2gdVp1kX5vSLIo iBQHFZfYBmokUzYLsirPXTtSmg99H5q1BHCwEiPuobdl1K/2xUJA+vccOY7aiMX1 TR0Ltrz91a7t/AWo/232gpzkluxE4gGQ59h0stw2vb7zvqjhvyih8x7pggGUlOy/ W8+BxniMyUQ+tQiMhv3+PcdqYUdOb7prc+Yt32aP1J2CV7hif8Q983O8a3KkMy07 S5rHn/jo1t8U6oS0OPum8o5iKNIDK47hieV09GVbjFNSLoAi7PH/OT7QrlEAWHD+ oCeKQiJijutyBWOCuAQ7GgpeHLA2CmrXNaE8EORTOYH0UT3n5bAHOBkbjxPOt+Gg j+RR67TrKOpCuPls9NIy+DTgm9D29P/8RHBUs8SKwZR9nj5CKGWG4tEiuxOc0SuZ Hbjs3tN/iLVosgN5y+NM =usxQ -----END PGP SIGNATURE----- Accepted: libopie-dev_2.32-10.2+lenny1_amd64.deb to main/o/opie/libopie-dev_2.32-10.2+lenny1_amd64.deb opie-client_2.32-10.2+lenny1_amd64.deb to main/o/opie/opie-client_2.32-10.2+lenny1_amd64.deb opie-server_2.32-10.2+lenny1_amd64.deb to main/o/opie/opie-server_2.32-10.2+lenny1_amd64.deb opie_2.32-10.2+lenny1.diff.gz to main/o/opie/opie_2.32-10.2+lenny1.diff.gz opie_2.32-10.2+lenny1.dsc to main/o/opie/opie_2.32-10.2+lenny1.dsc -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected] Archive: http://lists.debian.org/[email protected]

