-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Fri, 14 Oct 2011 08:58:40 +0200 Source: radvd Binary: radvd Architecture: arm Version: 1:1.1-3.1 Distribution: lenny-security Urgency: high Maintainer: arm Build Daemon (toffee) Changed-By: Yves-Alexis Perez Description: radvd - Router Advertisement Daemon Closes: 644614 Changes: radvd (1:1.1-3.1) oldstable-security; urgency=high . * Non-maintainer upload by the Security Team. * debian/patches: backport patches from upstream to fix various security issues: closes: #644614 - 0001-set_interface_var-doesn-t-check-interface-name-and-b fix arbitrary file overwrite (CVE-2011-3602) - 0002-main-must-fail-on-privsep_init-errors-it-must-not-ru, 0003-privsep_read_loop-should-return-on-unprivileged-daem and 0004-Really-exit-on-privsep-init-failure fix failure to check return code of privilege dropping function (CVE-2011-3603) - 0005-process_ra-has-numerous-missed-len-checks.-It-leads- fix multiple buffer overreads (CVE-2011-3604) - 0006-removing-mdelay-in-unicast-only-case fix a denial of service (CVE-2011-3605) - 0007-checking-iface-name-more-carefully on top of 0001-set_interface_var-doesn-t-check-interface-name-and-b (CVE-2011-3602) Checksums-Sha1: f3d53f6f9dbc446cfa04190da0ff374086dd8c73 64868 radvd_1.1-3.1_arm.deb Checksums-Sha256: 4811ceb64d42314ec58df15f2bef97ecfd03e9e3bf400d267ef8152920ffd42e 64868 radvd_1.1-3.1_arm.deb Files: f7e29b200346395dda43cdfe536fa855 64868 net optional radvd_1.1-3.1_arm.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iEYEARECAAYFAk6hmBgACgkQXm3vHE4uylrTnQCfcxu6Y26aiMgAuXBcwLHCiJ10 vU0An1zCkZT+BRElRzADY2vGXRUVidqb =QH1K -----END PGP SIGNATURE-----