-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 18 Dec 2011 20:37:18 +0100 Source: lighttpd Binary: lighttpd lighttpd-doc lighttpd-mod-mysql-vhost lighttpd-mod-trigger-b4-dl lighttpd-mod-cml lighttpd-mod-magnet lighttpd-mod-webdav Architecture: mips Version: 1.4.28-2+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: mips Build Daemon (lucatelli) Changed-By: Arno Töll Description: lighttpd - A fast webserver with minimal memory footprint lighttpd-doc - Documentation for lighttpd lighttpd-mod-cml - Cache meta language module for lighttpd lighttpd-mod-magnet - Control the request handling module for lighttpd lighttpd-mod-mysql-vhost - MySQL-based virtual host configuration for lighttpd lighttpd-mod-trigger-b4-dl - Anti-deep-linking module for lighttpd lighttpd-mod-webdav - WebDAV module for lighttpd Changes: lighttpd (1.4.28-2+squeeze1) stable-security; urgency=high . * Backport security issues from 1.4.30: + Fix integer overflow (CVE-2011-4362) + Fix attack vector as disclosed by the SSL BEAST attack (related: CVE-2011-3389). Note: If you are upgrading from an older version you need to change your configuration to mitigate effects of the attack. See the corresponding NEWS file for details. Checksums-Sha1: 328dbb45c8383c2f997c76834d9ed39df3ac6a16 283370 lighttpd_1.4.28-2+squeeze1_mips.deb bf316df28ed3a8c20287d49ae2babcd21d05e7eb 18312 lighttpd-mod-mysql-vhost_1.4.28-2+squeeze1_mips.deb 8240acb765dfab753eaab884bc7487278a76782e 19724 lighttpd-mod-trigger-b4-dl_1.4.28-2+squeeze1_mips.deb feab30c5f22e7af11289d215dafcd1b30442eeb2 22458 lighttpd-mod-cml_1.4.28-2+squeeze1_mips.deb d14ce1272b393e1f457fac111ee5f666f2da71a8 23532 lighttpd-mod-magnet_1.4.28-2+squeeze1_mips.deb ef05ee2521506ca695775826c4e8df82f2e38a00 30058 lighttpd-mod-webdav_1.4.28-2+squeeze1_mips.deb Checksums-Sha256: 2b116495b52369a1d1cbd7b227375aa32803b9f02cba33136338aaf842bdf4f6 283370 lighttpd_1.4.28-2+squeeze1_mips.deb 3f893f0748eb296b7a4bcc4536f18257f194c65d654996b7d4bf70046b2af760 18312 lighttpd-mod-mysql-vhost_1.4.28-2+squeeze1_mips.deb 01e52b3f8ab9d078bb260fbe552d1b0dd08da8f4fdd92423236fbd73f5c56d9b 19724 lighttpd-mod-trigger-b4-dl_1.4.28-2+squeeze1_mips.deb fad604ab316eb45ee7440196e266862c8e887ba3b6a9848d8cbe988d7f96ceff 22458 lighttpd-mod-cml_1.4.28-2+squeeze1_mips.deb 3f1eafc80cfed9dcf22e7dbe1b77a5a624a909d90da79c25803489096757ed4b 23532 lighttpd-mod-magnet_1.4.28-2+squeeze1_mips.deb 7ca39e953dab3b26a5426c561ce0b3c92ebf98e3fe53d3610b87ae729b2b9c0f 30058 lighttpd-mod-webdav_1.4.28-2+squeeze1_mips.deb Files: 0d6ff41acb69165a2898ec7c98fe25c4 283370 httpd optional lighttpd_1.4.28-2+squeeze1_mips.deb 22c9ae9e7ea9995917512a895c805771 18312 httpd optional lighttpd-mod-mysql-vhost_1.4.28-2+squeeze1_mips.deb 79cafd38f27aaca0d36785e5d51b3d46 19724 httpd optional lighttpd-mod-trigger-b4-dl_1.4.28-2+squeeze1_mips.deb 182e0111d3d6071db0636ce0c9e588be 22458 httpd optional lighttpd-mod-cml_1.4.28-2+squeeze1_mips.deb 40cde00cc5400674ba08112ccfd09359 23532 httpd optional lighttpd-mod-magnet_1.4.28-2+squeeze1_mips.deb 619973f146ba63955965663fb85e8cd9 30058 httpd optional lighttpd-mod-webdav_1.4.28-2+squeeze1_mips.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iQIcBAEBCAAGBQJO8QNeAAoJEKDBSF96Co2i6fgP/j/R6yqJk3GWAQd2T8adlkTt ezxE0TKst4E35N1vgM2l/pE+0Go57Il8mYpflZPjMIPDVcF694QhPk8gbe9sXGMq QtQiADzIYkKA96NxcNQ7Pv8+Nyc0QbQSqgc7iOO/KzMYoR7YnPQcmIue8SmBc9yQ ZJOWB527iBJVigiBIjkIEjPtt0mXCzLhqElNzyUMXCbLzvLie/mSJAAfNI+DmJyG 7RaKkqVOopJvuP7B7R6zTI9dYIxDZKy/jI//0QGAm47lYcAmKjBlt7IdIuYPU6Hl 6B7JYhsP7ifIIOr9pKVPHIfBdn6Qs9sKwjy8tjnhV0QugaICSMlo2lu+kr0RmJgI JMoA/XSNnffeBa51RnpQvoVZicbl+0baYgaI183OQIOFWWS/OTVYoiHJG+m4DcGl uEpD+oYGRHfQMawJpTezEE9qrj0oxWTXkKP2g7Xi9CslxPLV6gnFUslaCrDeB4qY 8ZtP50iJJjOcvRvJSLjU4fWuoPudNnbHJzcjEtB46keuvdjyzxtsCprl04SG6Cn1 hzxQexEoQi//MdqyE8PfNRncR/wvY7gK/FxjffGrqhJsHgh+46yzW0q09Kqm1/QN JWCPc7B+9nXeutD6CwZ/y4ba9N2qISujkYISyTEby1cCOqjGzyPpfyZ95V97q69E yjE16cry/00i9C76DMDL =t4ip -----END PGP SIGNATURE-----