-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 14 Oct 2011 08:58:40 +0200 Source: radvd Binary: radvd Architecture: i386 Version: 1:1.1-3.1 Distribution: lenny-security Urgency: high Maintainer: i386 Build Daemon (murphy) Changed-By: Yves-Alexis Perez Description: radvd - Router Advertisement Daemon Closes: 644614 Changes: radvd (1:1.1-3.1) oldstable-security; urgency=high . * Non-maintainer upload by the Security Team. * debian/patches: backport patches from upstream to fix various security issues: closes: #644614 - 0001-set_interface_var-doesn-t-check-interface-name-and-b fix arbitrary file overwrite (CVE-2011-3602) - 0002-main-must-fail-on-privsep_init-errors-it-must-not-ru, 0003-privsep_read_loop-should-return-on-unprivileged-daem and 0004-Really-exit-on-privsep-init-failure fix failure to check return code of privilege dropping function (CVE-2011-3603) - 0005-process_ra-has-numerous-missed-len-checks.-It-leads- fix multiple buffer overreads (CVE-2011-3604) - 0006-removing-mdelay-in-unicast-only-case fix a denial of service (CVE-2011-3605) - 0007-checking-iface-name-more-carefully on top of 0001-set_interface_var-doesn-t-check-interface-name-and-b (CVE-2011-3602) Checksums-Sha1: 8d88fcb2decfb829170ee0c69ba3c79b0494852b 63210 radvd_1.1-3.1_i386.deb Checksums-Sha256: 3720eeaadcece99a467cd7f21c9a19fdd062bdeb90ed1545f28841cf9a6990cf 63210 radvd_1.1-3.1_i386.deb Files: 28b2ecb8c829a39167d220942a6b45e3 63210 net optional radvd_1.1-3.1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQIcBAEBCAAGBQJOoX1SAAoJELdq5EKse8nBPQwQAMBUZPLRaliwhRW8/2j19ps5 yc7AGSXoTajpZUUSr1s6F68PwdHY9IZesPwzyclzNA23ftJyWsd0A9ChWWOM3Hgp VV3cnOz/0i7S/nmGtnxRNzm/KHmEktx3IvQf1lhG/74sOnZwbGEsuWTXyH1KdsVm t0ngxe+y+IYCF5dX1nlCyFwDprs4PZuaj9pQlcfmhCV7Am7PsdrYQmNL/MeF7YD5 Gl/m34UymXpNsDfc5xIuaxrzR72bbhZg0277Yp1l4K/RWK9DphOFnwT1cxH8p9I3 97QvGbbLlKbwaugPUKi57nhhStCrkX5cgMKRbaQAs2odD+4wEz7LpSG9s2oV5JBK PilsVeZ1Y50LqW7hIeCPI9zpSJ4tN7RWBP86ihqyC4GsoZYt5h/yBWhQbBe3EwO/ 1BIozohYWmPCrLS7t0y8pEPyfZpCklXrA9yDWx70oRe7KqEjW2L+hRFRAwcaonio 17dFUwMxIpWV08B7ax4jbZiAGlqgkuQQGl/7PqwUhwKPiHTTGkRpkn33Yrtt0+C+ MLI3Zg00RJH2C1ugk13J4HEXsSYHEBieZTaSve8rps/J+cZDLxf0g+XnLTrdFLkV 0ZgW4ezhqh5wsmWRPFKJk7kjBwyFgBghLac0xej5t2lJQLMbVoQ5DUjmCIDyCYUN jqDc+SyTwhK1BdqUGWkP =gqmk -----END PGP SIGNATURE-----