Accepted:
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 30 Apr 2014 09:59:29 +0100 Source: openssh Binary: openssh-client openssh-server openssh-sftp-server ssh ssh-krb5 ssh-askpass-gnome openssh-client-udeb openssh-server-udeb Architecture: source i386 all Version: 1:6.6p1-4~bpo70+1 Distribution: wheezy-backports Urgency: medium Maintainer: Debian OpenSSH Maintainers <[email protected]> Changed-By: Colin Watson <[email protected]> Description: openssh-client - secure shell (SSH) client, for secure access to remote machines openssh-client-udeb - secure shell client for the Debian installer (udeb) openssh-server - secure shell (SSH) server, for secure access from remote machines openssh-server-udeb - secure shell server for the Debian installer (udeb) openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot ssh - secure shell client and server (metapackage) ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad ssh-krb5 - secure shell client and server (transitional package) Closes: 298138 341883 742308 742513 742541 743242 744867 Changes: openssh (1:6.6p1-4~bpo70+1) wheezy-backports; urgency=low . * Rebuild for wheezy-backports. . openssh (1:6.6p1-4) unstable; urgency=medium . * Debconf translations: - Spanish (thanks, Matías Bellone; closes: #744867). * Apply upstream-recommended patch to fix bignum encoding for [email protected], fixing occasional key exchange failures. . openssh (1:6.6p1-3) unstable; urgency=medium . * Debconf translations: - French (thanks, Étienne Gilli; closes: #743242). * Never signal the service supervisor with SIGSTOP more than once, to prevent a hang on re-exec (thanks, Robie Basak; LP: #1306877). . openssh (1:6.6p1-2) unstable; urgency=medium . * If no root password is set, then switch to "PermitRootLogin without-password" without asking (LP: #1300127). . openssh (1:6.6p1-1) unstable; urgency=medium . [ Colin Watson ] * Apply various warning-suppression and regression-test fixes to gssapi.patch from Damien Miller. * New upstream release (http://www.openssh.com/txt/release-6.6, LP: #1298280): - CVE-2014-2532: sshd(8): when using environment passing with an sshd_config(5) AcceptEnv pattern with a wildcard, OpenSSH prior to 6.6 could be tricked into accepting any environment variable that contains the characters before the wildcard character. * Re-enable btmp logging, as its permissions were fixed a long time ago in response to #370050 (closes: #341883). * Change to "PermitRootLogin without-password" for new installations, and ask a debconf question when upgrading systems with "PermitRootLogin yes" from previous versions (closes: #298138). * Debconf translations: - Danish (thanks, Joe Hansen). - Portuguese (thanks, Américo Monteiro). - Russian (thanks, Yuri Kozlov; closes: #742308). - Swedish (thanks, Andreas Rönnquist). - Japanese (thanks, victory). - German (thanks, Stephan Beck; closes: #742541). - Italian (thanks, Beatrice Torracca). * Don't start ssh-agent from the Upstart user session job if something like Xsession has already done so (based on work by Bruno Vasselle; LP: #1244736). . [ Matthew Vernon ] * CVE-2014-2653: Fix failure to check SSHFP records if server presents a certificate (bug reported by me, patch by upstream's Damien Miller; thanks also to Mark Wooding for his help in fixing this) (Closes: #742513) Checksums-Sha1: 79b79bb9ee83dc76b59f7b7884a4460583c21917 2669 openssh_6.6p1-4~bpo70+1.dsc b4f01b558b7d761a442ece8f31062a4253b10794 177481 openssh_6.6p1-4~bpo70+1.debian.tar.gz 872bab0b8f81c2eac2f681a289335b5b59f390a5 671910 openssh-client_6.6p1-4~bpo70+1_i386.deb 58e0588ff07d8aa3aee5de7e94a60ee58ce4f319 324104 openssh-server_6.6p1-4~bpo70+1_i386.deb 47254a8a9c3db0e9c0d3be1f9d73f920a48100c4 36242 openssh-sftp-server_6.6p1-4~bpo70+1_i386.deb 0b72e209e7cd9a7451ab748ad44b0f052cfe1be3 1064 ssh_6.6p1-4~bpo70+1_all.deb bbccd8c1e73f7cc9fd46a0825caf94ac6153fe4e 105034 ssh-krb5_6.6p1-4~bpo70+1_all.deb 3bd0034a13a7e47828c44cea74b2491b7d874b91 112790 ssh-askpass-gnome_6.6p1-4~bpo70+1_i386.deb 792277d625f609a2ed2c721468a7d7aaf82a2762 248548 openssh-client-udeb_6.6p1-4~bpo70+1_i386.udeb c56a6f5478b1f64cad3ea4d55811747465426e5c 276906 openssh-server-udeb_6.6p1-4~bpo70+1_i386.udeb Checksums-Sha256: 7b3209e8779a9afab54207dd2c43fa7c037054ea2a283b5a9ed1170e6653a672 2669 openssh_6.6p1-4~bpo70+1.dsc c91ff816a280c2cb148c1bf743c8c005890186cea0619544094cc54a40a8fd29 177481 openssh_6.6p1-4~bpo70+1.debian.tar.gz c41373b7d01328c9e63b84e8d0360225d48bbc73491de1e723b6aa0905bbafd7 671910 openssh-client_6.6p1-4~bpo70+1_i386.deb e83390e57d9b32e284c25fcfd3d2152d7a6e5a27ba2fc7934b6a909936ca7ea5 324104 openssh-server_6.6p1-4~bpo70+1_i386.deb 34314f719e6012dc1bab5121e575a06f220d6d332aa02c3cc241f12f7e52da62 36242 openssh-sftp-server_6.6p1-4~bpo70+1_i386.deb 2e4ff487448615b0a02182569b04e1993951b431c4a3c873ebc7584c511941a7 1064 ssh_6.6p1-4~bpo70+1_all.deb 6690cc4565e1da2ade960aa64efd7d156090bb2d8f1a81d39871a3f22ef68126 105034 ssh-krb5_6.6p1-4~bpo70+1_all.deb f864264a9c9551761f8c7432bba9034fb57c328e3a8057960c342215a231f299 112790 ssh-askpass-gnome_6.6p1-4~bpo70+1_i386.deb f9b9597582af9705e68cc76ada67a702157f59c6d50414284f1f87ff369c7252 248548 openssh-client-udeb_6.6p1-4~bpo70+1_i386.udeb b76a96783164554e585d02c9eae58bef3a138770bc524a70f2304737ad9999c4 276906 openssh-server-udeb_6.6p1-4~bpo70+1_i386.udeb Files: 849922aa4e9a930e203185925f5776f6 2669 net standard openssh_6.6p1-4~bpo70+1.dsc 9f19e143692b2042d78696c151c0d3cd 177481 net standard openssh_6.6p1-4~bpo70+1.debian.tar.gz 6bef4dbccf2db0a8f923bf0e731eb90d 671910 net standard openssh-client_6.6p1-4~bpo70+1_i386.deb 078f3439953b018068a86bcd5a973e5a 324104 net optional openssh-server_6.6p1-4~bpo70+1_i386.deb 449fe5246af41bc53fbfbc1afa81d3ae 36242 net optional openssh-sftp-server_6.6p1-4~bpo70+1_i386.deb d3356173bad541fa4d1713e2d45f4d17 1064 net extra ssh_6.6p1-4~bpo70+1_all.deb 3fa1d1288fdf11e438583ff7ce9d4b6b 105034 oldlibs extra ssh-krb5_6.6p1-4~bpo70+1_all.deb fafb2824def577738ca7b31f0b09eac9 112790 gnome optional ssh-askpass-gnome_6.6p1-4~bpo70+1_i386.deb 2069922fe1f18e2821b5e7aa22434bfd 248548 debian-installer optional openssh-client-udeb_6.6p1-4~bpo70+1_i386.udeb f174c86bb4441e1b6fe4e9276d66597d 276906 debian-installer optional openssh-server-udeb_6.6p1-4~bpo70+1_i386.udeb Package-Type: udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 Comment: Colin Watson <[email protected]> -- Debian developer iQIVAwUBU2DHgjk1h9l9hlALAQgP1RAAq+ONjHHkNV/dx4hGidfe1n4hBZVkBUuh pYc2e+wpVsVnIRVp3HTVh34GbNHT/qAGUtV0lMHzIFwJlRBrcIwzFNz2vg+4nIDI uUru9QjVaW59Mb3gLGUzn388KT4D19u3Frxb8PI6AxsxFqfdG+Kd2TT7U0hrfUyd RRsLFiz6jkwvBHLLuKrVSAPYAlqzarrf/gnEdiu9XR3xWYpN/9j8RPm+qFfOej2B D5CkHUypzuyzmm2Wdl2OaUZX3KXNqq/Sy6/r1ktlNl+wMLwfb0s9RCfiDtVxH0kA MIpgL7KV7wMLDlTMKfbof5O2cTvugYIZXHIXeYXGZb8GNktPzQ/DgG+847A2zKXs bOskk6t/nH3wlsCTNmMwMWDt9XKY3e0T5CQPIMisiW7uhHHEKBDN4xNMHPZBrYub 8t0A9FIGZkPPoRKS/psASO+V3ylqndOq+E4luHrbQW7F8aeb9IwZrU/6rnCV5o0a 97OsYwd8yOYwlJbfaGDVe4S9DXQiwsMwLIsE4K5pguh1fACMSeVILGC8lh7BEqsj hmzB1MLb8NcmFGXkQwv/uTm2yz6DP73MJEaOzbSAgQJ1eDTpNuc5EqsxI7vzDZcw R175eVSdjGGIkrjbgeq46KjNueh4GsCZHEZALxlNUnpYIwFy+qDVSvgmR+0uzRmV eBeJnNWLx2s= =jSHW -----END PGP SIGNATURE----- Thank you for your contribution to Debian. -- To UNSUBSCRIBE, email to [email protected] with a subject of "unsubscribe". Trouble? Contact [email protected] Archive: https://lists.debian.org/[email protected]

