-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Fri, 01 Feb 2019 00:45:09 +0100
Source: openssh
Binary: openssh-client openssh-server openssh-sftp-server ssh ssh-krb5 
ssh-askpass-gnome openssh-client-udeb openssh-server-udeb
Architecture: source amd64 all
Version: 1:6.7p1-5+deb8u8
Distribution: jessie-security
Urgency: medium
Maintainer: Debian OpenSSH Maintainers <debian-...@lists.debian.org>
Changed-By: Mike Gabriel <sunwea...@debian.org>
Description:
 openssh-client - secure shell (SSH) client, for secure access to remote 
machines
 openssh-client-udeb - secure shell client for the Debian installer (udeb)
 openssh-server - secure shell (SSH) server, for secure access from remote 
machines
 openssh-server-udeb - secure shell server for the Debian installer (udeb)
 openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access 
from remot
 ssh        - secure shell client and server (metapackage)
 ssh-askpass-gnome - interactive X program to prompt users for a passphrase for 
ssh-ad
 ssh-krb5   - secure shell client and server (transitional package)
Changes:
 openssh (1:6.7p1-5+deb8u8) jessie-security; urgency=medium
 .
   * Non-maintainer upload by the LTS Team.
   * CVE-2018-20685: Disallow empty incoming filename or ones that refer
     to the current directory; based on report/patch from Harry Sintonen.
   * CVE-2019-6109: Sanitize scp filenames via snmprintf. To do this we move
     the progressmeter formatting outside of signal handler context and have the
     atomicio callback called for EINTR, too.
   * CVE-2019-6111: Check in scp client that filenames sent during remote->local
     directory copies satisfy the wildcard specified by the user.
Checksums-Sha1:
 936ab1d04a214e1d78bccc2f44c5cf430f80ceb2 2752 openssh_6.7p1-5+deb8u8.dsc
 e41871be91b667a8affdfe42dd482ad5ff1cb04a 177024 
openssh_6.7p1-5+deb8u8.debian.tar.xz
 62d90e7cf4549e2e75c6cbd3e13f9800aa0f7da6 695954 
openssh-client_6.7p1-5+deb8u8_amd64.deb
 d417d9ec76403f2941c740ab72bf780938aadb30 328780 
openssh-server_6.7p1-5+deb8u8_amd64.deb
 284b8ca4541d40b224705786a88a8541fb131186 38062 
openssh-sftp-server_6.7p1-5+deb8u8_amd64.deb
 b20b98321a39c92fbcc3c57966b4f6596a759004 121092 ssh_6.7p1-5+deb8u8_all.deb
 da6cdf00f757ef32f0f90da362e42c639bec6671 120628 ssh-krb5_6.7p1-5+deb8u8_all.deb
 f4865729ffe558001b1b3f1223fafb9f50c53e36 128654 
ssh-askpass-gnome_6.7p1-5+deb8u8_amd64.deb
 49b968beca3a6fdeb168247ec617a914f052b9ee 262036 
openssh-client-udeb_6.7p1-5+deb8u8_amd64.udeb
 8013734c5d4090c51b7e1387c4d8cd0905e0f4a1 282566 
openssh-server-udeb_6.7p1-5+deb8u8_amd64.udeb
Checksums-Sha256:
 c5f97a39da07b386f11cd0da09d6ca9915f6c33b62dab6b86abfa33499cd7f17 2752 
openssh_6.7p1-5+deb8u8.dsc
 64a4d6fb4dd402bc95a23c3e3422ba177e3d59b294249fd80009b7d28f9810b0 177024 
openssh_6.7p1-5+deb8u8.debian.tar.xz
 50bf902cc680fd1442556325e47d892f24621d7f0c4baf826f298d737a1e8030 695954 
openssh-client_6.7p1-5+deb8u8_amd64.deb
 985012d5c9957265f8ff7a798ded28108019fa6abf571fa4be140523fba6ffde 328780 
openssh-server_6.7p1-5+deb8u8_amd64.deb
 52c36b2492e6fbd8948340943064f58619572000ee93193a35bd547541f100e4 38062 
openssh-sftp-server_6.7p1-5+deb8u8_amd64.deb
 809fb28102aac5ded2cb6740cf36c5449c3f0c42f5c469265fc2ea8dc3ddc1bd 121092 
ssh_6.7p1-5+deb8u8_all.deb
 647245073a22c66f9e82e08e5cdcf8449357dabb312435633ff55f4652e3d921 120628 
ssh-krb5_6.7p1-5+deb8u8_all.deb
 41e459d51671ee94c45d4dc7094b627aa11cce197993d6fcb16368c63f2d87ae 128654 
ssh-askpass-gnome_6.7p1-5+deb8u8_amd64.deb
 d33b40b679dcf36397e326e46566a1e4b7b3edf1d13d6634c6ef44bde652ad85 262036 
openssh-client-udeb_6.7p1-5+deb8u8_amd64.udeb
 8694b9ca999ee9f86768d43e71dd35741d62ccd5eb6575ce0b8b580b2f90cc4c 282566 
openssh-server-udeb_6.7p1-5+deb8u8_amd64.udeb
Files:
 91ef5456d83e691c05728718566e20b8 2752 net standard openssh_6.7p1-5+deb8u8.dsc
 70a980feabd0efb3f0f0684f2e79390a 177024 net standard 
openssh_6.7p1-5+deb8u8.debian.tar.xz
 716470ea992234058424c5c6d929eb1e 695954 net standard 
openssh-client_6.7p1-5+deb8u8_amd64.deb
 e5060c3022a0439be5ef81594fd48c3a 328780 net optional 
openssh-server_6.7p1-5+deb8u8_amd64.deb
 4cba32e8ffff7e90db608324f939a005 38062 net optional 
openssh-sftp-server_6.7p1-5+deb8u8_amd64.deb
 23ac53ac4d2f818c06fd0888a06cb0c0 121092 net extra ssh_6.7p1-5+deb8u8_all.deb
 673528d9de9ebbd5151502a00707fa40 120628 oldlibs extra 
ssh-krb5_6.7p1-5+deb8u8_all.deb
 2b49818fc605d1b065adbb64ff541bb7 128654 gnome optional 
ssh-askpass-gnome_6.7p1-5+deb8u8_amd64.deb
 5d11d68fe297ce2acdd72747760c4fd6 262036 debian-installer optional 
openssh-client-udeb_6.7p1-5+deb8u8_amd64.udeb
 9ea2567f9482431dff2a32f13edbb033 282566 debian-installer optional 
openssh-server-udeb_6.7p1-5+deb8u8_amd64.udeb

-----BEGIN PGP SIGNATURE-----

iQJJBAEBCAAzFiEEm/uu6GwKpf+/IgeCmvRrMCV3GzEFAlyY0vUVHHN1bndlYXZl
ckBkZWJpYW4ub3JnAAoJEJr0azAldxsx030P/0iVD2G+vuC4GQSOzehGHaREomiK
0pxe67XehDx6Vi1JPO3w0g52Bu2AHwUtUDIbpm0FZWj7VsFma9+1CCp/KdGqEtwr
yboNqArMXSfccGZI2YX/um+9rO/90/xVLZT+W+TKQ+ZoNnwiyi+AlkQruwnBVgIv
PM4mXqPYL7FFkvw3LAXM8rWM6I7cnMsfQES2xJJ8YLo5RVwQ7DnzehatDTZDGNOY
tPkiZ0t0CIFOB2yKeeG5pgKxTXgPzwR5w2HQMOuNvnzvwLxtH8pw8JciKf6iUM1W
HYlmlXcdFf0C6t6eb2YLaUzoBDlasiL5L9Bkw3iyGt9XbEr7pAtSwTkOTIyBc+zO
vlsc0/eqz8Z20l1AP5eQ+Ts6frQoA2hl/JjjKgTc+JBDqLrPbZImaiYOY8YG5pM0
r3s4ZiazhWdB35q9NuWiX1Mc4kWBMVVQrNHPrd6AiLOmA93rR1yqAaKx5z3q2k61
rWiHyVzk1bGtk4mZkoe4SPzBmbOGCB+CoNJxG+g43Rnl1rGKIPT35ngV5/sdRo6s
cQ5eqogxS5qAg0lZmY7dM0VG63cCE1k3zfSXJLmRNsVy/OKQY7RdQzUUTWTO4HJM
xkDKozqqtaxOc3QyPDP7FPcyMOC499Hy+ALzWxys7lupBIts+esiiTx0aGbPb6Gr
h6KDDpmm7AaN3uJc
=a8YQ
-----END PGP SIGNATURE-----

Reply via email to