Vissza a www.andrews.hu-ra

    [guru] Debian biztonsagi frissitesek


    DATE: Mon, 16 Mar 2009 11:36:32 +0100
    Több CRLF injection hibát is találtak a znc webadmin moduljában, ha
    a támadó azonosítani tudja magát, akkor a konfigurációs állományba
    olyan bejegyzéseket tehet, amik kód futtatást eredményeznek.
    
    A mahara csomagban XSS hibákat találtak.
    
    A wesnoth stratégiai játékban több hibát is találtak: a szerver DoS-olható,
    a kliens python jail-jéből pedig ki lehet törni.
    
    A curl nem figyelt a redirect-ek által visszaadott értékre, akkor is
    követte őket, ha az eredmény egy file:// URL volt (az scp: URL-en át
    kód is futtatható volt). Most bevezettek egy CURLOPT_REDIR_PROTOCOLS
    opciót, ami alapértelmezetten nem tartalmazza a file: és scp:
    protokollokat.
    
    A támadó az mldonkey segítségével tetszőleges fájlt le tud tölteni a
    HTTP konzolon.
    
    
    --- Begin Message ---
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - ------------------------------------------------------------------------
    Debian Security Advisory DSA-1735-1                  security@debian.org
    http://www.debian.org/security/                           Florian Weimer
    March 10, 2009                        http://www.debian.org/security/faq
    - ------------------------------------------------------------------------
    
    Package        : znc
    Vulnerability  : missing input sanitization
    Problem type   : remote
    Debian-specific: no
    CVE Id(s)      : CVE-2009-0759
    Debian Bug     : 516950
    
    It was discovered that znc, an IRC proxy/bouncer, does not properly
    sanitize input contained in configuration change requests to the
    webadmin interface.  This allows authenticated users to elevate their
    privileges and indirectly execute arbitrary commands (CVE-2009-0759).
    
    For the old stable distribution (etch), this problem has been fixed in
    version 0.045-3+etch2.
    
    For the stable distribution (lenny), this problem has been fixed in
    version 0.058-2+lenny1.
    
    For the unstable distribution (sid), this problem has been fixed in
    version 0.066-1.
    
    We recommend that you upgrade your znc packages.
    
    Upgrade instructions
    - --------------------
    
    wget url
            will fetch the file for you
    dpkg -i file.deb
            will install the referenced file.
    
    If you are using the apt-get package manager, use the line for
    sources.list as given below:
    
    apt-get update
            will update the internal database
    apt-get upgrade
            will install corrected packages
    
    You may use an automated update by adding the resources from the
    footer to the proper configuration.
    
    
    Debian GNU/Linux 4.0 alias etch
    - -------------------------------
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045.orig.tar.gz
        Size/MD5 checksum:   204863 9a514b125b7514811fd03befa73cce77
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2.dsc
        Size/MD5 checksum:      962 1962af4c56b4c4c169832249d6b99f30
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2.diff.gz
        Size/MD5 checksum:    12817 c254e989604122fb7267a0fafeddfd95
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_alpha.deb
        Size/MD5 checksum:   859792 f154f471d3b0d42d7b7cfe8eebaf3134
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_amd64.deb
        Size/MD5 checksum:   793694 80c9126c518abe062265cee5d94ca6f1
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_hppa.deb
        Size/MD5 checksum:   857356 04a64d64b5a4582fcd7db3bef32822ec
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_i386.deb
        Size/MD5 checksum:   806592 99b63e880bbba2841f30ed006fbe2364
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_ia64.deb
        Size/MD5 checksum:   957620 061cfe882476dc4ad55caf16ec8c7af8
    
    mips architecture (MIPS (Big Endian))
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_mips.deb
        Size/MD5 checksum:   713450 625f8ed77be76269bd78f4414ed55a61
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_mipsel.deb
        Size/MD5 checksum:   710332 5b07981be622bf78839d2376af142e3d
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_powerpc.deb
        Size/MD5 checksum:   789838 5c75fc8a345a20c6b6e39e2eb97cd004
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_s390.deb
        Size/MD5 checksum:   730066 514965b8fa4913d2e1ff13630bd5957a
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.045-3+etch2_sparc.deb
        Size/MD5 checksum:   747502 6b72758d93bb4ddc392ef6cfa119a5c2
    
    
    Debian GNU/Linux 4.0 alias lenny
    - -------------------------------
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1.dsc
        Size/MD5 checksum:     1332 c657b80b61750fc072ce257c1d682b21
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1.diff.gz
        Size/MD5 checksum:     8253 04053487dbf0b49da04ded749d1c384e
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058.orig.tar.gz
        Size/MD5 checksum:   340741 c02fd740c55d5b3a7912f7584344103e
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_alpha.deb
        Size/MD5 checksum:  1096362 92f9a65cd06d7da250f79a3d11e0a124
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_amd64.deb
        Size/MD5 checksum:  1028438 f2058b3d07a9233cef8f9ca0dfec6673
    
    arm architecture (ARM)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_arm.deb
        Size/MD5 checksum:  1149682 3ed9f92e4ca7ee29ff3c60897cc71c21
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_hppa.deb
        Size/MD5 checksum:  1163022 359b9459a44f3653e2571cda2fb51085
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_i386.deb
        Size/MD5 checksum:  1013106 15b468bd87a584a0415584452d26ab38
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_ia64.deb
        Size/MD5 checksum:  1181082 f86b365aa064e782ea72a82d216edd62
    
    mips architecture (MIPS (Big Endian))
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_mips.deb
        Size/MD5 checksum:   916040 f6c21df1590da49c335bc76860e5af8d
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_mipsel.deb
        Size/MD5 checksum:   906310 d156e11c8c0bedb5dd56fcfcf40730e9
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_powerpc.deb
        Size/MD5 checksum:  1034324 29a41349db3b895e1a6bdf0bdf249ff8
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_s390.deb
        Size/MD5 checksum:   970792 b0f4f9f9b0e38309fca19dabe60beef4
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/z/znc/znc_0.058-2+lenny1_sparc.deb
        Size/MD5 checksum:  1000006 ea9cd30f00b2f9466dfeb84e96198099
    
    
      These files will probably be moved into the stable distribution on
      its next update.
    
    - ---------------------------------------------------------------------------------
    For apt-get: deb http://security.debian.org/ stable/updates main
    For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
    Mailing list: debian-security-announce@lists.debian.org
    Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.9 (GNU/Linux)
    
    iQEcBAEBAgAGBQJJtsx5AAoJEL97/wQC1SS+q8UH/1er3nhvWfhDamiBuVL0Z0Fk
    n/Q5RjGvgFewUI9/uvVmrklaV+EkKjbD79w0ksHGxXilkuGNXsH1oQZgEvbWumgN
    Cyuz2s167wkjsqDDm9kAp0ijbyBXQ3ogffN+42sKtKn3+1QRMB+0kdHBjdmSAyrx
    j8Y/CqzVWgQXR0QbE37kgK/hd+0oKKwoTGQeSa2eB0r6xgJmFsJnZADjh+LVFYd2
    f3whQ3N68oZTIPjDwKt5/UUyXIA6tZLt7SYd4R+VjqlSglLjrICpVjysNtVWkVm6
    bdwDjn4fbYjfpJhCKg3CdKcVzG/lvo2zES5+d6sREFEH3qxyMKXqEdnJ3rLq9xQ=
    =ubas
    -----END PGP SIGNATURE-----
    
    
    
    
    

    --- End Message ---
    --- Begin Message ---
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - ------------------------------------------------------------------------
    Debian Security Advisory DSA-1736-1                  security@debian.org
    http://www.debian.org/security/                           Steffen Joeris
    March 10, 2009                        http://www.debian.org/security/faq
    - ------------------------------------------------------------------------
    
    Package        : mahara
    Vulnerability  : insufficient input sanitising
    Problem type   : remote
    Debian-specific: no
    CVE ID         : CVE-2009-0660
    
    It was discovered that mahara, an electronic portfolio, weblog, and
    resume builder, is prone to cross-site scripting attacks, which allows
    the injection of arbitrary Java or HTML code.
    
    For the stable distribution (lenny), this problem has been fixed in
    version 1.0.4-4+lenny1.
    
    The oldstable distribution (etch) does not contain mahara.
    
    For the testing distribution (squeeze) and the unstable distribution
    (sid), this problem will be fixed soon.
    
    
    We recommend that you upgrade your mahara package.
    
    Upgrade instructions
    - --------------------
    
    wget url
            will fetch the file for you
    dpkg -i file.deb
            will install the referenced file.
    
    If you are using the apt-get package manager, use the line for
    sources.list as given below:
    
    apt-get update
            will update the internal database
    apt-get upgrade
            will install corrected packages
    
    You may use an automated update by adding the resources from the
    footer to the proper configuration.
    
    
    Debian GNU/Linux 5.0 alias lenny
    - --------------------------------
    
    Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/m/mahara/mahara_1.0.4-4+lenny1.dsc
        Size/MD5 checksum:     1303 e78e2f84879067ead786f022b3fb9e65
      http://security.debian.org/pool/updates/main/m/mahara/mahara_1.0.4-4+lenny1.diff.gz
        Size/MD5 checksum:    38565 dab9ae59c86acc880749118e0c7fab20
      http://security.debian.org/pool/updates/main/m/mahara/mahara_1.0.4.orig.tar.gz
        Size/MD5 checksum:  2383079 cf1158e4fe3cdba14fb1b71657bf8cc9
    
    Architecture independent packages:
    
      http://security.debian.org/pool/updates/main/m/mahara/mahara_1.0.4-4+lenny1_all.deb
        Size/MD5 checksum:  1636658 52d68deb52604b9d5ae0ad910ef0ef78
      http://security.debian.org/pool/updates/main/m/mahara/mahara-apache2_1.0.4-4+lenny1_all.deb
        Size/MD5 checksum:     7778 9b1ddde46afd38972b0789e0c18e740a
    
      These files will probably be moved into the stable distribution on
      its next update.
    
    - ---------------------------------------------------------------------------------
    For apt-get: deb http://security.debian.org/ stable/updates main
    For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
    Mailing list: debian-security-announce@lists.debian.org
    Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
    
    
    
    
    
    
    
    
    
    
    
    
    
    
    
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.9 (GNU/Linux)
    
    iEYEARECAAYFAkm2zjoACgkQXm3vHE4uylp99ACdGLxX5QiuHmIP5ugO8mvWtuXT
    HzcAoM0ifVwpizr87+vJt9XxqI8dLBPV
    =R8Rx
    -----END PGP SIGNATURE-----
    
    
    
    

    --- End Message ---
    --- Begin Message ---
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - ------------------------------------------------------------------------
    Debian Security Advisory DSA-1737-1                  security@debian.org
    http://www.debian.org/security/                         Steffen Joeris
    March 11, 2009                   http://www.debian.org/security/faq
    - ------------------------------------------------------------------------
    
    Package        : wesnoth
    Vulnerability  : several vulnerabilities
    Problem type   : remote
    Debian-specific: no
    CVE Ids        : CVE-2009-0366 CVE-2009-0367
    
    
    Several security issues have been discovered in wesnoth, a fantasy
    turn-based strategy game. The Common Vulnerabilities and Exposures
    project identifies the following problems:
    
    
    CVE-2009-0366
    
    Daniel Franke discovered that the wesnoth server is prone to a denial of
    service attack when receiving special crafted compressed data.
    
    CVE-2009-0367
    
    Daniel Franke discovered that the sandbox implementation for the python
    AIs can be used to execute arbitrary python code on wesnoth clients. In
    order to prevent this issue, the python support has been disabled. A
    compatibility patch was included, so that the affected campagne is still
    working properly.
    
    
    For the stable distribution (lenny), these problems have been fixed in
    version 1.4.4-2+lenny1.
    
    For the oldstable distribution (etch), these problems have been fixed
    in version 1.2-5.
    
    For the testing distribution (squeeze) and the unstable distribution
    (sid), these problems have been fixed in version 1.4.7-4.
    
    We recommend that you upgrade your wesnoth packages.
    
    Upgrade instructions
    - --------------------
    
    wget url
            will fetch the file for you
    dpkg -i file.deb
            will install the referenced file.
    
    If you are using the apt-get package manager, use the line for
    sources.list as given below:
    
    apt-get update
            will update the internal database
    apt-get upgrade
            will install corrected packages
    
    You may use an automated update by adding the resources from the
    footer to the proper configuration.
    
    
    Debian GNU/Linux 4.0 alias etch
    - -------------------------------
    
    Debian (oldstable)
    - ------------------
    
    Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5.dsc
        Size/MD5 checksum:      908 13b2424eea086adcad02b938684cc12a
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2.orig.tar.gz
        Size/MD5 checksum: 74823113 722a459282abe6d04dbe228d031c088e
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5.diff.gz
        Size/MD5 checksum:    37822 ba8821ce92bfd56e036e49ea6e2531a0
    
    Architecture independent packages:
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-data_1.2-5_all.deb
        Size/MD5 checksum: 24525466 591ef75a9100039197c0f1c9158a9e2c
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-music_1.2-5_all.deb
        Size/MD5 checksum: 25575278 648efb6dac567763a6fcf5a92f4c6d24
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-tsg_1.2-5_all.deb
        Size/MD5 checksum:  1453160 0223f87ade242a0b96e76b0dd770fe27
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-trow_1.2-5_all.deb
        Size/MD5 checksum:  4095912 ea0e14709dfd5541b434e44f02e5a945
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-ttb_1.2-5_all.deb
        Size/MD5 checksum:   344160 ced00a2ced60e7132d0ce25687d9e9d3
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-ei_1.2-5_all.deb
        Size/MD5 checksum:  1016982 f3c6dfed6b98f3d74f3c9acfcd69a5a8
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-utbs_1.2-5_all.deb
        Size/MD5 checksum:  4827956 8d7dc2407649d09594cf14c3b95535df
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-httt_1.2-5_all.deb
        Size/MD5 checksum:  4853808 46b6cf5a221fe2e0d5c188347f3453db
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_alpha.deb
        Size/MD5 checksum:   346526 56c5e0724c81f37eb9bbfd6172535803
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_alpha.deb
        Size/MD5 checksum:  2254222 c66cd5c8593b3bfddccb93d1678f13c2
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_alpha.deb
        Size/MD5 checksum:  1771958 0c71e3b4eb856cb184be051ae7488c07
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_amd64.deb
        Size/MD5 checksum:   313816 0022303edc4c3d99c59aac3414584136
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_amd64.deb
        Size/MD5 checksum:  1956750 c815f8494db4091db1a13c9f5a82f10e
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_amd64.deb
        Size/MD5 checksum:  1535928 42fcb96edf4c9dc8dd31f53e424bc998
    
    arm architecture (ARM)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_arm.deb
        Size/MD5 checksum:   345862 8fc03a9a800d814cf054401326155b43
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_arm.deb
        Size/MD5 checksum:  2342256 b70222fbf3ae9de65ff6370cf5192d00
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_arm.deb
        Size/MD5 checksum:  1844082 f2ed2017b9885ab5bdb0df1377fcd875
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_hppa.deb
        Size/MD5 checksum:   346016 3133ac98595bc88fe58952a7e56a5ffc
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_hppa.deb
        Size/MD5 checksum:  2201310 3fffed12d8600b6a3f400579c2eb3c92
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_hppa.deb
        Size/MD5 checksum:  1734068 2b25c4077809c0b67d38eff9792f1b0d
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_i386.deb
        Size/MD5 checksum:  1988260 d8c1dace179c86cf5f0a437443e3434a
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_i386.deb
        Size/MD5 checksum:  1553660 4d69f813bfa2f55c6a4bb6d5b004c5b1
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_i386.deb
        Size/MD5 checksum:   316530 af623a5c82c4c9c52dd3db4fa4a8e2cb
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_ia64.deb
        Size/MD5 checksum:   397956 30931a5ddc79231d8a7a276daa018dca
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_ia64.deb
        Size/MD5 checksum:  2647074 e9d43b39f7f14cd82f7ed360a3ed3854
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_ia64.deb
        Size/MD5 checksum:  2101134 40619f77e941c3e3b1d02199a30ae266
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_mipsel.deb
        Size/MD5 checksum:  1973408 f5880799967990c5f51e3cd33a200f7b
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_mipsel.deb
        Size/MD5 checksum:  1554176 1baa585c0f8e447068847e39df1b7853
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_mipsel.deb
        Size/MD5 checksum:   323244 0a22d440e73816d95cf85ffdd5a93973
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_powerpc.deb
        Size/MD5 checksum:  1557594 2fcd08d35d9bba312b1729e362c88bba
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_powerpc.deb
        Size/MD5 checksum:   320076 5061fca92348c4c3bda8d60a89cea212
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_powerpc.deb
        Size/MD5 checksum:  1983782 5387d5bd214f1b84a381538cb119c3e9
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_s390.deb
        Size/MD5 checksum:   299986 42a4d9903a52ef9df7de9947bac14286
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_s390.deb
        Size/MD5 checksum:  1808378 c4d26c2d31151a5afb7a7b505c769602
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_s390.deb
        Size/MD5 checksum:  1416436 a90726c9129bc83cf473d26a601a9252
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.2-5_sparc.deb
        Size/MD5 checksum:  2070660 05c62b3199129b92d70f5103e9111043
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.2-5_sparc.deb
        Size/MD5 checksum:   313162 01d81f1756b34842761e5c3c3ec554d5
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.2-5_sparc.deb
        Size/MD5 checksum:  1609500 ad24088953032edfe0c7d5233baeed08
    
    Debian (stable)
    - ---------------
    
    Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1.diff.gz
        Size/MD5 checksum:    27184 3e9b6fed69fa957da57621f55a603648
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4.orig.tar.gz
        Size/MD5 checksum: 172021761 b723f7a5213e070043c637f6dd661bd4
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1.dsc
        Size/MD5 checksum:     1755 7acd6b81c3de97c39b2180f422b97a3a
    
    Architecture independent packages:
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-ttb_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:   472412 437dcfb1afe037afd828715ac09cc31f
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-utbs_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  6355812 448e51624f1df091771ebbe8ced72cb5
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-aoi_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:   408814 5a3afaa4127b1143177de1a4bae82588
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-ei_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  1275062 3fb49ef911d1532ba3288dd435ca9a17
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-trow_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  5592628 7b506b7d6975560fe672ba06ad2530c3
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-music_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum: 75401992 3be975150fc4753635c04b05a018b97b
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-sof_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  1227296 7135ec02aae96ee651f5a8a01f32bc2c
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-thot_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  1481716 06c1a099ac3dcb3043146db47ce13c38
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-did_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:   979942 5cc058311379653e68ee619d4b057f7e
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-data_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum: 37774478 38346c192fe45fcf7d08b483cc321d46
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-tsg_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  1802418 7f9eed64b43def8796df9938b9f093e6
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-sotbe_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  2748966 2cb7d0ad26c019f44866cc4bc47948fe
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-httt_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  5881854 81f9e52006f0a5a8379446f800013141
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-l_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  2157872 041b8528bbea4b7215cde7c4509ad5d5
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-tools_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:   202586 34c618c182e12b80749dd13eddb777b2
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-all_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:     1356 2370e06dcaad005d37ed0c369e52cfa2
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-nr_1.4.4-2+lenny1_all.deb
        Size/MD5 checksum:  2387580 1fa886416ddf2b1950473447403f45bc
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_alpha.deb
        Size/MD5 checksum: 28113114 716504aa7bf29300a0b406115d7f1878
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_alpha.deb
        Size/MD5 checksum:  4903526 4b02dd2a4c9b0b85f338885bc59eb875
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_alpha.deb
        Size/MD5 checksum:   517624 1b7b248e07c027beaebaad47026e1741
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_alpha.deb
        Size/MD5 checksum:   890148 d329973c8a63cd41ca3cda1a2a038a33
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_amd64.deb
        Size/MD5 checksum:   455538 16eddaf8aca98bd3a1ee72f766a5cf92
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_amd64.deb
        Size/MD5 checksum: 31988280 8c740d4b8eae2b10cfc10c7b526bfbd2
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_amd64.deb
        Size/MD5 checksum:   738526 3fb1e8272ab15069ef88550971662920
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_amd64.deb
        Size/MD5 checksum:  3922260 b0299a700824a85797c385ca1711b015
    
    arm architecture (ARM)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_arm.deb
        Size/MD5 checksum:   481380 df00b0ad834d93c730403b305cdad634
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_arm.deb
        Size/MD5 checksum: 30801362 a0774a186a5ca379ad6cd4f3ae4a1ca4
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_arm.deb
        Size/MD5 checksum:   831282 7488aca2898161144190073bab9e82d9
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_arm.deb
        Size/MD5 checksum:  4537078 ac91db6f04dd2d00415eaa87c933c631
    
    armel architecture (ARM EABI)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_armel.deb
        Size/MD5 checksum: 31197936 ea844ffafb79a6fa45f1397c53728738
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_armel.deb
        Size/MD5 checksum:   429394 a336cad32aebcbe9fd052d405572be56
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_armel.deb
        Size/MD5 checksum:  3652626 46f326ae663f201d7dba96f8393abdf4
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_armel.deb
        Size/MD5 checksum:   692012 479d9664fa59e0a6cbd912af8ef5505e
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_hppa.deb
        Size/MD5 checksum:   504380 7e32b812b2b83aa5974c37a1f17e0056
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_hppa.deb
        Size/MD5 checksum:  4453520 b316fb0ad15f61aebda58742ad4d3f3a
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_hppa.deb
        Size/MD5 checksum:   869136 a211c3ca77090e17ea94ab7659c1f105
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_hppa.deb
        Size/MD5 checksum: 31567608 e11f9a0cdc8ae9ff70de9b21260a8271
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_i386.deb
        Size/MD5 checksum: 31210378 688e88a110f6e87f5802ddf2a0628d4b
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_i386.deb
        Size/MD5 checksum:   717824 9604bb737f722a372c3b6a310db482ed
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_i386.deb
        Size/MD5 checksum:  3897758 55238988dc01dee6d861aa39e9363120
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_i386.deb
        Size/MD5 checksum:   445544 b680f219427b5df864740319418e8cb1
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_ia64.deb
        Size/MD5 checksum:  5657878 9a3c3fcc9f526fd733cc80b0eaee8634
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_ia64.deb
        Size/MD5 checksum:   588898 f5364e521549c8d0ffb9507910b12211
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_ia64.deb
        Size/MD5 checksum: 32530580 cff80e74075989c01e007ef1e3057182
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_ia64.deb
        Size/MD5 checksum:  1084850 91b61a7d7708ffbb6336d11db1b601cb
    
    mips architecture (MIPS (Big Endian))
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_mips.deb
        Size/MD5 checksum:   471894 4f1f6aecce86fbb249a6ffe5e9cb883a
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_mips.deb
        Size/MD5 checksum:  4027248 8e5740c8eded417d961e782e24d211b5
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_mips.deb
        Size/MD5 checksum:   785504 96807f9c9cf48289f4f689588cf18570
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_mips.deb
        Size/MD5 checksum: 25578888 9519b21ea71e585599a34ec8f7e1692d
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_mipsel.deb
        Size/MD5 checksum:  3993408 93074007b297e8ab88e36ba77fe8949c
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_mipsel.deb
        Size/MD5 checksum:   470432 9882c4531b158df487d7d21b4ecd8936
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_mipsel.deb
        Size/MD5 checksum: 24749008 9d6684236ac59d725b376882443f8f92
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_mipsel.deb
        Size/MD5 checksum:   780528 3aaef74784b2cdd83414c6de013b98ab
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_powerpc.deb
        Size/MD5 checksum:   769930 442d1016085d2f00ea82bcb819e88817
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_powerpc.deb
        Size/MD5 checksum:  4006940 67217383c83833cc3c64b0246f77e184
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_powerpc.deb
        Size/MD5 checksum:   468174 533dfee86ccab55b53594acf46c2c531
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_powerpc.deb
        Size/MD5 checksum: 32361642 29fe9c60453ee7ba15895838cb684ad5
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_s390.deb
        Size/MD5 checksum:   711118 617a43e66a7536e96ad7403fdba222d9
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_s390.deb
        Size/MD5 checksum: 32181082 7e89bcff99140021c354413a4d89a968
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_s390.deb
        Size/MD5 checksum:   446940 51d995f023bcf38a44b78679a0aa08b4
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_s390.deb
        Size/MD5 checksum:  3629082 20de5b414cc22cd84f693508ca5270c0
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-editor_1.4.4-2+lenny1_sparc.deb
        Size/MD5 checksum:   780156 e9e597522f03b70dfcf9b49777490b84
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-server_1.4.4-2+lenny1_sparc.deb
        Size/MD5 checksum:   468634 8ac2db8f8f0dc0cb8eafd8cf878433af
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth_1.4.4-2+lenny1_sparc.deb
        Size/MD5 checksum:  4318388 4a190887599d8525c26948f302275ec6
      http://security.debian.org/pool/updates/main/w/wesnoth/wesnoth-dbg_1.4.4-2+lenny1_sparc.deb
        Size/MD5 checksum: 31240246 ba1475c66c67795a211b50db855e9f44
    
    
      These files will probably be moved into the stable distribution on
      its next update.
    
    - ---------------------------------------------------------------------------------
    For apt-get: deb http://security.debian.org/ stable/updates main
    For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
    Mailing list: debian-security-announce@lists.debian.org
    Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.9 (GNU/Linux)
    
    iEYEARECAAYFAkm31PEACgkQ62zWxYk/rQfgTgCghKYqDazyXArKe9VkC1Ii/D/i
    PsAAnjH2SsonXENH8Am5sr6TzxtSXaIA
    =cTL1
    -----END PGP SIGNATURE-----
    
    
    
    

    --- End Message ---
    --- Begin Message ---
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - --------------------------------------------------------------------------
    Debian Security Advisory DSA-1738-1                    security@debian.org
    http://www.debian.org/security/                                 Nico Golde
    March 11th, 2009                        http://www.debian.org/security/faq
    - --------------------------------------------------------------------------
    
    Package        : curl
    Vulnerability  : arbitrary file access
    Problem type   : remote
    Debian-specific: no
    CVE ID         : CVE-2009-0037
    Debian Bug     : 518423
    BugTraq ID     : 33962
    
    David Kierznowski discovered that libcurl, a multi-protocol file transfer
    library, when configured to follow URL redirects automatically, does not
    question the new target location.  As libcurl also supports file:// and
    scp:// URLs - depending on the setup - an untrusted server could use that
    to expose local files, overwrite local files or even execute arbitrary
    code via a malicious URL redirect.
    
    This update introduces a new option called CURLOPT_REDIR_PROTOCOLS which by
    default does not include the scp and file protocol handlers.
    
    
    For the oldstable distribution (etch) this problem has been fixed in
    version 7.15.5-1etch2.
    
    For the stable distribution (lenny) this problem has been fixed in
    version 7.18.2-8lenny2.
    
    For the unstable distribution (sid) this problem has been fixed in
    version 7.18.2-8.1.
    
    We recommend that you upgrade your curl packages.
    
    
    Upgrade instructions
    - --------------------
    
    wget url
            will fetch the file for you
    dpkg -i file.deb
            will install the referenced file.
    
    If you are using the apt-get package manager, use the line for
    sources.list as given below:
    
    apt-get update
            will update the internal database
    apt-get upgrade
            will install corrected packages
    
    You may use an automated update by adding the resources from the
    footer to the proper configuration.
    
    
    Debian GNU/Linux 4.0 alias etch
    - -------------------------------
    
    Debian (oldstable)
    - ------------------
    
    Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2.dsc
        Size/MD5 checksum:      956 0a164bd43dbfb582a049fe3a737a375b
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5.orig.tar.gz
        Size/MD5 checksum:  1897973 61997c0d852d38c3a85b445f4fc02892
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2.diff.gz
        Size/MD5 checksum:    21635 47c30162c60f8192bce199f5fab0012d
    
    Architecture independent packages:
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dev_7.15.5-1etch2_all.deb
        Size/MD5 checksum:    22244 752d541336f513b3bfd0841e0868b472
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_alpha.deb
        Size/MD5 checksum:   166256 709d02b9dae8f4b0c7333d6f03c31628
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_alpha.deb
        Size/MD5 checksum:   816206 a36046c7827322a14d257bd3fb74010b
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_alpha.deb
        Size/MD5 checksum:   818778 967acf1522d86fdf56e84e1c5b22f147
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_alpha.deb
        Size/MD5 checksum:   809316 af0f20647d1a91d799dcbed6980428b7
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_alpha.deb
        Size/MD5 checksum:   181392 78c3b97fba2c35b5c5d1bf1eb5f1d908
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_alpha.deb
        Size/MD5 checksum:   174310 433c7e16f748f83db01989e8a249a101
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_amd64.deb
        Size/MD5 checksum:   164766 6f3f68c322aa54a5000975530ded729e
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_amd64.deb
        Size/MD5 checksum:   170058 f6fd6e8f7a3e030ca028a6750f666061
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_amd64.deb
        Size/MD5 checksum:   772142 5d3cdfcfdaf0604aeebfc395703d6df7
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_amd64.deb
        Size/MD5 checksum:   778626 490801518500a00caec9e45fb755c524
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_amd64.deb
        Size/MD5 checksum:   824964 a57398dfcbd49c33060a48671bed8a02
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_amd64.deb
        Size/MD5 checksum:   163446 7eaaea76d628e03e8ebdc580bff0b72b
    
    arm architecture (ARM)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_arm.deb
        Size/MD5 checksum:   756884 8eed02667e02867ad3d130a40ad4f330
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_arm.deb
        Size/MD5 checksum:   762352 b5720175a10c9f7333a2e8a298aac91d
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_arm.deb
        Size/MD5 checksum:   783552 72af9664d85d8aa4ca0960da19554333
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_arm.deb
        Size/MD5 checksum:   160536 c9fb486fd46228488f391d57a9d6edc8
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_arm.deb
        Size/MD5 checksum:   165914 b1188bf4e4da054e04b77c4e8f27ca73
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_arm.deb
        Size/MD5 checksum:   162598 a60ef14833ef5f5bad0bffbda329e326
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_hppa.deb
        Size/MD5 checksum:   164866 73bdea9c0a854221204e7d232a464ad7
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_hppa.deb
        Size/MD5 checksum:   184262 c681c1b066c2210aa0d84f1763a14bdb
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_hppa.deb
        Size/MD5 checksum:   798798 29f2ee940a221a567c8f9568202f6f85
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_hppa.deb
        Size/MD5 checksum:   178932 76c87584e67d0e9957110bb805a15946
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_hppa.deb
        Size/MD5 checksum:   791220 9d0a1827c563e72951420d6e869a348f
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_hppa.deb
        Size/MD5 checksum:   815004 47b6884a2e5ce2224d64fdc9c5852325
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_i386.deb
        Size/MD5 checksum:   163604 16def6f8c4d5068be2bba466f89dc329
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_i386.deb
        Size/MD5 checksum:   759150 613d3cfa2de22d73706c4158f45a9380
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_i386.deb
        Size/MD5 checksum:   766468 c32cd1d31c6078d4676b8046ddc56f07
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_i386.deb
        Size/MD5 checksum:   168800 1fc225d65db9eb6508481bf2e5985d5d
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_i386.deb
        Size/MD5 checksum:   163240 362b7152f99699f68c93ab89e821d8d0
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_i386.deb
        Size/MD5 checksum:   800506 984abe71ca0999c8a587ed1b0042299a
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_ia64.deb
        Size/MD5 checksum:   811254 1992183aa065d3782a2992ea98c22a5a
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_ia64.deb
        Size/MD5 checksum:   838550 350899a4e4f86a672aeb2c3a2d011e94
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_ia64.deb
        Size/MD5 checksum:   174484 ac0a064f867f61c30ebd1cd7da6ea845
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_ia64.deb
        Size/MD5 checksum:   217504 032debd42a9a3cc08f65ee17097fe9d7
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_ia64.deb
        Size/MD5 checksum:   225458 a6beeb5551ffe3d09341160b368bf4f6
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_ia64.deb
        Size/MD5 checksum:   848606 b339d6517e49af9a30b5bed9a42c9222
    
    mips architecture (MIPS (Big Endian))
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_mips.deb
        Size/MD5 checksum:   784292 439b960fc26cd382f86bbfb20478d7b0
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_mips.deb
        Size/MD5 checksum:   831916 dcfa7a779ae3cdac67cecf847dac0162
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_mips.deb
        Size/MD5 checksum:   792482 357d60661e80f1ee887d2345a119b547
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_mips.deb
        Size/MD5 checksum:   164020 c91e5b7e745e2179301d2e75be7d8ee2
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_mips.deb
        Size/MD5 checksum:   165474 eff09f808ce9a23ce659aeeffea398f1
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_mips.deb
        Size/MD5 checksum:   170646 650b55f89ad5530208e49e211f5aebeb
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_mipsel.deb
        Size/MD5 checksum:   164056 b2cbeec53d1eef3e9d0e29adf797548b
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_mipsel.deb
        Size/MD5 checksum:   792108 4fe7f7e85d02706503d1064895607831
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_mipsel.deb
        Size/MD5 checksum:   165674 500cb0c319ee13c14f8d010b3c4457cc
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_mipsel.deb
        Size/MD5 checksum:   811082 c61871a4ac26252046b4e161aeef2dd7
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_mipsel.deb
        Size/MD5 checksum:   784546 b8ba2732071c34bbfe5c10927317f589
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_mipsel.deb
        Size/MD5 checksum:   170522 0919591347253f65b44ddea61f49cbc7
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_powerpc.deb
        Size/MD5 checksum:   774490 f804de8b26ea6914f0283f79f71d72b2
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_powerpc.deb
        Size/MD5 checksum:   781844 b53e33260b02761cd26c8780b8e81f2b
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_powerpc.deb
        Size/MD5 checksum:   173906 edf0a2342f93af56ffb18a45a934ace3
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_powerpc.deb
        Size/MD5 checksum:   841666 5df4b820f0f196560bd5796d0ad1bad7
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_powerpc.deb
        Size/MD5 checksum:   165134 c62f63233f70e51a732c36492fd04ae9
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_powerpc.deb
        Size/MD5 checksum:   169130 44d2765d66141ceb6c6626750a098aaa
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_s390.deb
        Size/MD5 checksum:   836322 26db7bd743a5c2141c6aee251a9cede0
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_s390.deb
        Size/MD5 checksum:   179832 487db999849a4ac171d86d87d12d3f7f
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_s390.deb
        Size/MD5 checksum:   163182 7be52b66b1f79a0d0f76d0183da4104a
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_s390.deb
        Size/MD5 checksum:   768888 87b9a0f806f25692cd2f9a30bd0be9eb
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_s390.deb
        Size/MD5 checksum:   172444 3d9a0b971714e2f9f6c7d15ce387bc93
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_s390.deb
        Size/MD5 checksum:   774446 9c7cf8ac1154f4b8b71615ad8d48ed99
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.15.5-1etch2_sparc.deb
        Size/MD5 checksum:   160204 433e751e98d9010f793cfacf4c809996
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.15.5-1etch2_sparc.deb
        Size/MD5 checksum:   788794 2c4e9c34ccf365fa02bc1f1657e68f35
      http://security.debian.org/pool/updates/main/c/curl/curl_7.15.5-1etch2_sparc.deb
        Size/MD5 checksum:   162412 1bab2e9e64b655babb5f1ef1b7271090
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-openssl-dev_7.15.5-1etch2_sparc.deb
        Size/MD5 checksum:   766110 cc724da5e7cc8b38376d1644d98a144e
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.15.5-1etch2_sparc.deb
        Size/MD5 checksum:   165224 671413f03a06041a824630be23ded9e9
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls-dev_7.15.5-1etch2_sparc.deb
        Size/MD5 checksum:   759596 2070bf93dadb3b3fe1aa387fb0f8e6c7
    
    Debian GNU/Linux 5.0 alias lenny
    - --------------------------------
    
    Debian (stable)
    - ---------------
    
    Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2.diff.gz
        Size/MD5 checksum:    27675 3cc8e00a5145e9f8f35823f89170ed4e
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2.dsc
        Size/MD5 checksum:     1418 02c706202a50b3358769c4c1e9f1a120
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2.orig.tar.gz
        Size/MD5 checksum:  2273077 4fe99398a64a34613c9db7bd61bf6e3c
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_alpha.deb
        Size/MD5 checksum:   211250 dcccf85073a2826d5af6e6d438f6c9f6
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_alpha.deb
        Size/MD5 checksum:   224420 33ead51af60c4e6ea8f08b16ebde1e06
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_alpha.deb
        Size/MD5 checksum:   985930 c90004e19361846cbded2fb615eb60ec
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_alpha.deb
        Size/MD5 checksum:  1150080 c3436b5c4979764699a7236674df93cf
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_alpha.deb
        Size/MD5 checksum:   241558 7d28ddb21b9a23f2e4b6302dea9ffc36
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_alpha.deb
        Size/MD5 checksum:   957810 49c87cfe63e61d4c905c2c481b1a88a2
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_amd64.deb
        Size/MD5 checksum:   214620 3d0a0aa6453df3486b5910e198275f84
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_amd64.deb
        Size/MD5 checksum:  1182662 c7a8138e99e78dd772758e4d1db098fe
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_amd64.deb
        Size/MD5 checksum:   230526 1d8262e5c8ce1baddb748a76b836ff79
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_amd64.deb
        Size/MD5 checksum:   951202 76dd51652be02ad2972cbb32df9cbe60
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_amd64.deb
        Size/MD5 checksum:   208912 e66d007bbedba4d7e838045e549c64b1
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_amd64.deb
        Size/MD5 checksum:   928736 6f66f5283ad91d0a2b4d56bd629e8305
    
    armel architecture (ARM EABI)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_armel.deb
        Size/MD5 checksum:   223972 d139a82972490d1f706ec27cacddadac
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_armel.deb
        Size/MD5 checksum:   920298 d740b279b624e6a475cb7d391f7b2c10
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_armel.deb
        Size/MD5 checksum:   903750 c81c5db454d3263cd6ae51d16c933a6d
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_armel.deb
        Size/MD5 checksum:   209142 e9f8cea7ff20b90a27e1a72a523b3d47
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_armel.deb
        Size/MD5 checksum:   209082 a906ad9c5f72efd9cdd561aed4ca8dc9
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_armel.deb
        Size/MD5 checksum:  1151506 7c7546f135977a859ddc976f73b6542d
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_hppa.deb
        Size/MD5 checksum:   939250 04c83feddcf78eaca8136bd4b15bee90
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_hppa.deb
        Size/MD5 checksum:   209462 8e62f5740ba733a9a8cde83f045873e2
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_hppa.deb
        Size/MD5 checksum:   227528 9905b63e7ffb02e1b6da0443ad99bbf6
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_hppa.deb
        Size/MD5 checksum:   244642 f127b127e9783af96664f67fab940458
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_hppa.deb
        Size/MD5 checksum:   960844 5c3918da2bdb2bcb6e5775935d101600
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_hppa.deb
        Size/MD5 checksum:  1173380 ef0c131c585f50dd3b1d494be681ad4c
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_i386.deb
        Size/MD5 checksum:   903896 766d2afb93354dc6cfccc719ca5d3a32
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_i386.deb
        Size/MD5 checksum:   923838 54e2efa56e08277cd061ec142167b8f8
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_i386.deb
        Size/MD5 checksum:  1155810 b481158475101fe14cd7086dd09b00ba
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_i386.deb
        Size/MD5 checksum:   228434 806b581b9cb3e7b74b4c5b38d952d496
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_i386.deb
        Size/MD5 checksum:   208184 310da7a3545fdd174ae3f7cf7a05d84e
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_i386.deb
        Size/MD5 checksum:   210964 fde8c7b507ef8fca75b3b95557443568
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_ia64.deb
        Size/MD5 checksum:   274076 a242056cc5928023e19189e0dad47a54
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_ia64.deb
        Size/MD5 checksum:  1165456 63a88f4853c990bf6a26744b25ffcd65
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_ia64.deb
        Size/MD5 checksum:   991418 a81c668fb270734005c855f77fbaa1b2
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_ia64.deb
        Size/MD5 checksum:   296182 959638d94a18a01ee393a5388af95e9a
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_ia64.deb
        Size/MD5 checksum:   222326 8f7d1012c7920a818ff3387fd672582b
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_ia64.deb
        Size/MD5 checksum:  1019228 f1ee83304b03f4e168a3077577aee4ca
    
    mips architecture (MIPS (Big Endian))
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_mips.deb
        Size/MD5 checksum:  1193134 69792abd2ebb8ae27741fd5380a15c7d
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_mips.deb
        Size/MD5 checksum:   227940 f59a95b1a51411e2df9f7646166b8bb0
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_mips.deb
        Size/MD5 checksum:   212670 38196676b77101edb8d75e050ccdfa83
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_mips.deb
        Size/MD5 checksum:   950332 3d0b559a946b285580c626796bd79619
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_mips.deb
        Size/MD5 checksum:   208940 c4b370ba4637c34fb90b7241d94ad26e
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_mips.deb
        Size/MD5 checksum:   929246 a3250ee1c064f637f4f8b80fe67cc126
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_mipsel.deb
        Size/MD5 checksum:   208632 8e7b0faa4d0fcf82d4832c88040644a4
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_mipsel.deb
        Size/MD5 checksum:  1169800 fec90115dd8a0a4159eb0b32f9d2f547
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_mipsel.deb
        Size/MD5 checksum:   949916 4c476dd885c52cc5de342bf739d84f65
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_mipsel.deb
        Size/MD5 checksum:   212332 d9cccbe468c2228b96c662fab496a06e
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_mipsel.deb
        Size/MD5 checksum:   928636 b3e28a026e7deb8cce632c63b2a7a140
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_mipsel.deb
        Size/MD5 checksum:   227638 75ad8b0dd97c093ff56338d856df7383
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_powerpc.deb
        Size/MD5 checksum:   941020 0f242ff442fea24f03c33af08d9e6c75
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_powerpc.deb
        Size/MD5 checksum:  1179540 551daec15eb2ce16e000b2201dba167c
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_powerpc.deb
        Size/MD5 checksum:   212734 57c377e5cbef3618e283a1e187045598
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_powerpc.deb
        Size/MD5 checksum:   238114 440e40511e414c3a0c3a4f4bfd479a41
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_powerpc.deb
        Size/MD5 checksum:   922274 73c54c0b54c83950728f60d8cc1727ea
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_powerpc.deb
        Size/MD5 checksum:   222642 74220c8c71a4a5d9af54694d9777a9b0
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_s390.deb
        Size/MD5 checksum:   223330 8c5ca7bc3655a68e2fc33d11ecc06865
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_s390.deb
        Size/MD5 checksum:   209294 e28839caee56080274e61541e035af52
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_s390.deb
        Size/MD5 checksum:  1190688 bd391c517d8ec4b5179f753ef73825a9
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_s390.deb
        Size/MD5 checksum:   931312 dc473f1db5201689c7cb15f41929f780
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_s390.deb
        Size/MD5 checksum:   239904 5f08a1a17220525e249e6dec32a21bfb
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_s390.deb
        Size/MD5 checksum:   912728 368e5d51de6826fce49b35e728a52dda
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-gnutls_7.18.2-8lenny2_sparc.deb
        Size/MD5 checksum:   207660 84f75b95a33d19a1027b281c136f38ca
      http://security.debian.org/pool/updates/main/c/curl/curl_7.18.2-8lenny2_sparc.deb
        Size/MD5 checksum:   208576 4ac3ac2bb012ba68a1872620cc90e3a3
      http://security.debian.org/pool/updates/main/c/curl/libcurl3-dbg_7.18.2-8lenny2_sparc.deb
        Size/MD5 checksum:  1134708 3403c94f0c0c32c1e964364337132456
      http://security.debian.org/pool/updates/main/c/curl/libcurl3_7.18.2-8lenny2_sparc.deb
        Size/MD5 checksum:   222562 990364878bde2699a2af470013f90fce
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-gnutls-dev_7.18.2-8lenny2_sparc.deb
        Size/MD5 checksum:   902436 8f221c8abaab29401bd0434b9add83c8
      http://security.debian.org/pool/updates/main/c/curl/libcurl4-openssl-dev_7.18.2-8lenny2_sparc.deb
        Size/MD5 checksum:   918590 2d0b3f1dc2882cc2446ed708c2f2b55e
    
    
      These files will probably be moved into the stable distribution on
      its next update.
    
    - ---------------------------------------------------------------------------------
    For apt-get: deb http://security.debian.org/ stable/updates main
    For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
    Mailing list: debian-security-announce@lists.debian.org
    Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.9 (GNU/Linux)
    
    iEYEARECAAYFAkm36v4ACgkQHYflSXNkfP/PaQCfe6xmnRhMoAmhLaEsVrOEwCD2
    OKIAoKxDcy9wTjQb4jLMoZ1tAqSuS9jr
    =eSVR
    -----END PGP SIGNATURE-----
    
    
    
    
    

    --- End Message ---
    --- Begin Message ---
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1
    
    - ------------------------------------------------------------------------
    Debian Security Advisory DSA-1739-1                  security@debian.org
    http://www.debian.org/security/                           Florian Weimer
    March 13, 2009                        http://www.debian.org/security/faq
    - ------------------------------------------------------------------------
    
    Package        : mldonkey
    Vulnerability  : path traversal
    Problem type   : remote
    Debian-specific: no
    CVE Id(s)      : CVE-2009-0753
    Debian Bug     : 516829
    
    It has been discovered that mldonkey, a client for several P2P
    networks, allows attackers to download arbitrary files using crafted
    requests to the HTTP console.
    
    For the stable distribution (etch), this problem has been fixed in
    version 2.9.5-2+lenny1.
    
    For the unstable distribution (sid), this problem will be fixed soon.
    
    The old stable distribution (etch) is not affected by this problem.
    
    We recommend that you upgrade your mldonkey packages.
    
    Upgrade instructions
    - --------------------
    
    wget url
            will fetch the file for you
    dpkg -i file.deb
            will install the referenced file.
    
    If you are using the apt-get package manager, use the line for
    sources.list as given below:
    
    apt-get update
            will update the internal database
    apt-get upgrade
            will install corrected packages
    
    You may use an automated update by adding the resources from the
    footer to the proper configuration.
    
    
    Debian GNU/Linux 5.0 alias lenny
    - --------------------------------
    
    Source archives:
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey_2.9.5-2+lenny1.dsc
        Size/MD5 checksum:     1894 80d8a01209691f1ab695073a77bf671a
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey_2.9.5.orig.tar.gz
        Size/MD5 checksum:  3346730 280207370693e16ae51d4a3b28d6424e
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey_2.9.5-2+lenny1.diff.gz
        Size/MD5 checksum:   141220 515bfab6892fc58b4a46fc0b26a1fd72
    
    alpha architecture (DEC Alpha)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_alpha.deb
        Size/MD5 checksum:  2950652 d344e8130032020b12862ff2c4b973d1
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_alpha.deb
        Size/MD5 checksum:  2123122 0e0b5b4aa226a5447e84154666cd3880
    
    amd64 architecture (AMD x86_64 (AMD64))
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_amd64.deb
        Size/MD5 checksum:  2693524 eee55c6718a61403aedfeb2ff4fdc285
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_amd64.deb
        Size/MD5 checksum:  3945406 ed6496fb59f045cf00191d627ebe35fd
    
    arm architecture (ARM)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_arm.deb
        Size/MD5 checksum:  2807094 4f979e8cf35a3f6fcbe67aa623bad40d
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_arm.deb
        Size/MD5 checksum:  2022926 d707587954b43a950f3d9bd944876cab
    
    armel architecture (ARM EABI)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_armel.deb
        Size/MD5 checksum:  2008824 6c96ac0d574ed19b006e165a4e9cb344
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_armel.deb
        Size/MD5 checksum:  2817946 c6f55245d4aa3151b9bc22237239f357
    
    hppa architecture (HP PA RISC)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_hppa.deb
        Size/MD5 checksum:  2114000 47a512a8de09ab95d1d91b007accbf7e
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_hppa.deb
        Size/MD5 checksum:  2889248 029f2ab69fd534512cca380396dc952b
    
    i386 architecture (Intel ia32)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_i386.deb
        Size/MD5 checksum:  3683876 8ce12ce87061b61d7e4cb5c67dc963a9
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_i386.deb
        Size/MD5 checksum:  2501302 4341f0bf5e24ce5422931c0ab108f32f
    
    ia64 architecture (Intel ia64)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_ia64.deb
        Size/MD5 checksum:  2163096 174b9b0a75831066f21055198ecd4d31
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_ia64.deb
        Size/MD5 checksum:  3000352 6e78f5ceccac87e2b15e169c0acee411
    
    mips architecture (MIPS (Big Endian))
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_mips.deb
        Size/MD5 checksum:  2136466 7cf59869940cc4d6afd9b873f391a5c2
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_mips.deb
        Size/MD5 checksum:  2869464 265d5e3c6a74202ecef638300c6e8397
    
    mipsel architecture (MIPS (Little Endian))
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_mipsel.deb
        Size/MD5 checksum:  2846658 009ac5c09b749eb9a000fddbd5ac8433
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_mipsel.deb
        Size/MD5 checksum:  2106860 bc87908cae2094944ed5502e6b821609
    
    powerpc architecture (PowerPC)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_powerpc.deb
        Size/MD5 checksum:  2928596 f1015d4d46ceab971d0acf93a75aab0a
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_powerpc.deb
        Size/MD5 checksum:  4279076 2f10a109630f7cc6dc5813507a006bc3
    
    s390 architecture (IBM S/390)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_s390.deb
        Size/MD5 checksum:  2076138 32d816b48fae49b535821ea350e6bada
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_s390.deb
        Size/MD5 checksum:  2999080 e1535e41938c76dc4fb6f441fb89473a
    
    sparc architecture (Sun SPARC/UltraSPARC)
    
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-server_2.9.5-2+lenny1_sparc.deb
        Size/MD5 checksum:  2870322 34a2b0276e6bb38f1cb11bb0769a18b1
      http://security.debian.org/pool/updates/main/m/mldonkey/mldonkey-gui_2.9.5-2+lenny1_sparc.deb
        Size/MD5 checksum:  4232002 5d2e6e79eb759ad3290c513e6767bb51
    
    
      These files will probably be moved into the stable distribution on
      its next update.
    
    - ---------------------------------------------------------------------------------
    For apt-get: deb http://security.debian.org/ stable/updates main
    For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
    Mailing list: debian-security-announce@lists.debian.org
    Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.4.9 (GNU/Linux)
    
    iQEcBAEBAgAGBQJJusjRAAoJEL97/wQC1SS+s9EH/0SnMPPSwJWjxx6xB2G+Xs1M
    jArHFSnhmsGOhusIFCTjLRXVZXpb9OHJqnslgwesBkZDf1b5uu+QASe8qFgteevh
    cFXNGV1mI37McIxJVTrWQb+YT7yj+yS4/sJtR4GZlhHvaGiCwXGVHn1iWZvuy1GM
    TuODe39AEe8a/TkNyqHOSxSjetw4P8PQvyKCDjjZEDJDb47looIKHPav/yVbWvlO
    +W7xYobGHX3FsEk5aMWZygyA8knTDnuBWaOIdo4SmFiU9upiB9l5HldLTxmq7jAE
    ekSfZQmG0/SFvNMiikUlVljVTYitgjvD0ly+aoQETX93zTrmcFFOM6SWETiPWoM=
    =hipV
    -----END PGP SIGNATURE-----
    
    
    
    
    

    --- End Message ---

    Vissza a www.andrews.hu-ra