-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sun, 27 Feb 2011 13:34:08 +0100 Source: pango1.0 Binary: libpango1.0-0 libpango1.0-udeb libpango1.0-common libpango1.0-dev libpango1.0-0-dbg libpango1.0-doc Architecture: i386 Version: 1.28.3-1+squeeze2 Distribution: squeeze-security Urgency: high Maintainer: i386 Build Daemon Changed-By: Josselin Mouette Description: libpango1.0-0 - Layout and rendering of internationalized text libpango1.0-0-dbg - The Pango library and debugging symbols libpango1.0-common - Modules and configuration files for the Pango libpango1.0-dev - Development files for the Pango libpango1.0-doc - Documentation files for the Pango libpango1.0-udeb - Layout and rendering of internationalized text - minimal runtime (udeb) Changes: pango1.0 (1.28.3-1+squeeze2) stable-security; urgency=high . * 02_CVE-2011-0064.patch: patch from Behdad Esfahbod and Karl Tomlinson to fix buffer overwrite on OOM realloc failure. CVE-2011-0064, Mozilla #606997. Checksums-Sha1: 97005d77c3702d3788b57b8a844ff28dcf3a6400 302838 libpango1.0-0_1.28.3-1+squeeze2_i386.deb fa0a8d0af7301ec2d1eb2cb47dd03ab9b8daa64a 279684 libpango1.0-udeb_1.28.3-1+squeeze2_i386.udeb 0f7c81fb1d21079e5cbb9e8608d32b6756ede7eb 375602 libpango1.0-dev_1.28.3-1+squeeze2_i386.deb 9c6897c1b88ce3594ed41c07efe8bfdd0d148c6c 841976 libpango1.0-0-dbg_1.28.3-1+squeeze2_i386.deb Checksums-Sha256: 9207bd1248f3d6dee126be014912a0a289526e69070ac96abbaa989ec30d3241 302838 libpango1.0-0_1.28.3-1+squeeze2_i386.deb e84615fceb9f119b8ffe3390f7d07b67694614fc88bf4ba5a5c61d4be652e019 279684 libpango1.0-udeb_1.28.3-1+squeeze2_i386.udeb 7409de43479bc252b7c20bda0b10163bbf31dd36e8d50f5b5c763387f15f361a 375602 libpango1.0-dev_1.28.3-1+squeeze2_i386.deb 157f45de8a104545d307f009859d7964f5ee8917387d8de0d46b6de124a671f4 841976 libpango1.0-0-dbg_1.28.3-1+squeeze2_i386.deb Files: a9dbb88abb67efb3c9346629a3175465 302838 libs optional libpango1.0-0_1.28.3-1+squeeze2_i386.deb eecb63a6b2c5db966ac809cdee86baa2 279684 debian-installer optional libpango1.0-udeb_1.28.3-1+squeeze2_i386.udeb fdfb1ed62421b32ee074b2b10a6beb02 375602 libdevel optional libpango1.0-dev_1.28.3-1+squeeze2_i386.deb e3e18f118c209be10e5ce7fb43a3140c 841976 debug extra libpango1.0-0-dbg_1.28.3-1+squeeze2_i386.deb Package-Type: udeb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iQEcBAEBAgAGBQJNbW+kAAoJEL97/wQC1SS+tigIAJWdpby162isATfx9UUOSkcl 82hmVgf7zhb0EbnqadDk/Xd4gI56YM3ymvL8DxdsifCFn4nlRWYWxKZQyOKSKt1Q BRpZ1dwor3HS12hHDioppWOjvRPTYUdX6JlO2KfrmLTbs+irb2mvLn98CXrekSDv QEt8JsUh90917o/0ztB3l9bbdFFDqTrDoAvYPzgUonrsvtCm7QCwj4AydtqhZsyG tAwQKnuR48iFscjwnM/MBgVhY4F7GUN3ZcGYObwMrlxvJtlBtBQzdVJxdrBQHJZM jLIgKsYzk0zlX/I1trPswEvUE+ZAL7gXKvve5O3wp1J04BSjjzhdB1sOEsJu+X4= =hc64 -----END PGP SIGNATURE-----