-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 07 Feb 2011 10:48:28 -0800 Source: openafs Binary: openafs-client openafs-kpasswd openafs-fileserver openafs-dbserver openafs-doc openafs-krb5 libopenafs-dev openafs-modules-source openafs-modules-dkms libpam-openafs-kaserver openafs-dbg Architecture: armel Version: 1.4.12.1+dfsg-4 Distribution: squeeze-security Urgency: high Maintainer: armel Build Daemon (alain) Changed-By: Russ Allbery Description: libopenafs-dev - AFS distributed filesystem development libraries libpam-openafs-kaserver - AFS distributed filesystem kaserver PAM module openafs-client - AFS distributed filesystem client support openafs-dbg - AFS distributed filesystem debugging information openafs-dbserver - AFS distributed filesystem database server openafs-doc - AFS distributed filesystem documentation openafs-fileserver - AFS distributed filesystem file server openafs-kpasswd - AFS distributed filesystem old password changing openafs-krb5 - AFS distributed filesystem Kerberos 5 integration openafs-modules-dkms - AFS distributed filesystem kernel module DKMS source openafs-modules-source - AFS distributed filesystem kernel module source Closes: 607903 Changes: openafs (1.4.12.1+dfsg-4) stable-security; urgency=high . * Apply upstream deltas: - [707a959c] update ticket5 from heimdal. Avoids a double-free (from upstream) which basically allows an arbitrary attack against any krb5-aware Rx service by exploiting when the double-free occurs in asn1 payloads which came from the wire. - [beaf1606] LINUX: Use correct type of error in flock code. This avoids dereferencing a pointer that is not a pointer due to failing to properly ERR_PTR a return value. * Add a dependency on libc6-dev to openafs-modules-dkms. dkms doesn't depend on it because most kernel modules don't need it, but openafs builds userspace helper programs. Thanks, Peter Palfrader. (Closes: #607903) Checksums-Sha1: a4e70817a258a390bb4fab409e79b3ff9317cadf 3243620 openafs-client_1.4.12.1+dfsg-4_armel.deb 2a47611775b63acf2c05488388992ee02f7e4def 299630 openafs-kpasswd_1.4.12.1+dfsg-4_armel.deb b73971959c73c66f5f7877c783a53c03d1449d97 1131342 openafs-fileserver_1.4.12.1+dfsg-4_armel.deb 1ce840681858743d9c9357c72ca615e0eab61780 625774 openafs-dbserver_1.4.12.1+dfsg-4_armel.deb c3555d03f9840ff1af830c78a9367f136fe32185 282380 openafs-krb5_1.4.12.1+dfsg-4_armel.deb 039b4917fdd82201dbdfd4e77a4dd051af5ccf5c 2291092 libopenafs-dev_1.4.12.1+dfsg-4_armel.deb c378401e21151101c40ac3b3ac1654118446a0cc 912148 openafs-modules-source_1.4.12.1+dfsg-4_armel.deb 81e8602eb842c959ee9faf95b8266c899a4ed8e6 1072428 openafs-modules-dkms_1.4.12.1+dfsg-4_armel.deb 9143e1b5e2457ff0596a0224420630acdd03e80b 416402 libpam-openafs-kaserver_1.4.12.1+dfsg-4_armel.deb 3ff1cf0edee6a83de9168b5c0843a17b3d11a98f 2478602 openafs-dbg_1.4.12.1+dfsg-4_armel.deb Checksums-Sha256: 2a4052f396be0e11b14fff6aa756003305ea0283733d06412c25cb7db0a4a48d 3243620 openafs-client_1.4.12.1+dfsg-4_armel.deb a6121a1ccf1c5411aae4541ecb5f5e147fd768e798e30987ba98d82b87f358c0 299630 openafs-kpasswd_1.4.12.1+dfsg-4_armel.deb dabf655612f9a5a8ac5864d3e2e1a5bed03f9bd083319105679dcadc8be9f507 1131342 openafs-fileserver_1.4.12.1+dfsg-4_armel.deb 9bc69ba80f19cf4a603bd7fc49df0d70a16dc10922ffbe93d9006d0c4b06a3f9 625774 openafs-dbserver_1.4.12.1+dfsg-4_armel.deb ecb5ccbdfda0a8e5743ee36b5686c261a1223c65af18551d2b2c406b47c0613e 282380 openafs-krb5_1.4.12.1+dfsg-4_armel.deb 3c79451445c6ddc16607426e351ba4e4f8708efa031180e876d53a2fd7d39ed3 2291092 libopenafs-dev_1.4.12.1+dfsg-4_armel.deb 1bdf1460389d674efb1fa18a712a558ee99cd1b993cf95c43aa8da7c7e6b7f10 912148 openafs-modules-source_1.4.12.1+dfsg-4_armel.deb 7865723b42c0a2d761ce0ec05a41f297c0d89db7c6c1c2d3f0c8bfa718fe1a3a 1072428 openafs-modules-dkms_1.4.12.1+dfsg-4_armel.deb 081572110c26d0072abf7c59eb1030a09f7becfeaca094f4dd79d293d0ffaa7a 416402 libpam-openafs-kaserver_1.4.12.1+dfsg-4_armel.deb bebeec9c136f1897aa9071e11be52e8ce7d749e616f3069cb2146cd5e30830e0 2478602 openafs-dbg_1.4.12.1+dfsg-4_armel.deb Files: c0f2425b9863d66da5680c0c8311f49c 3243620 net optional openafs-client_1.4.12.1+dfsg-4_armel.deb 8607894c2402945f7f5c9da48a7ee376 299630 net extra openafs-kpasswd_1.4.12.1+dfsg-4_armel.deb b49df2d0c139dc352441a0255e478221 1131342 net optional openafs-fileserver_1.4.12.1+dfsg-4_armel.deb e354ad2d00243bb3bb4d55011d82bbcc 625774 net optional openafs-dbserver_1.4.12.1+dfsg-4_armel.deb 4fb9b3714f6cc206a5ad48d223397eb6 282380 net optional openafs-krb5_1.4.12.1+dfsg-4_armel.deb fddb4f0c5dce479f0f39b207037962d3 2291092 libdevel extra libopenafs-dev_1.4.12.1+dfsg-4_armel.deb 79eec5271b13d895aff0d87837f8502c 912148 kernel extra openafs-modules-source_1.4.12.1+dfsg-4_armel.deb 3efe286c8d61480680f40d5e26bda8ca 1072428 kernel extra openafs-modules-dkms_1.4.12.1+dfsg-4_armel.deb 449deeb636427392698459aeb150cf63 416402 admin extra libpam-openafs-kaserver_1.4.12.1+dfsg-4_armel.deb 8314afc36cfdfac4b42d98f684bcb1fa 2478602 debug extra openafs-dbg_1.4.12.1+dfsg-4_armel.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk1UYLoACgkQXm3vHE4uylpLpQCdEOpLwIz7kODT3onShKiF1tj6 WW4AoKizJPRqRljUWMpe8ZI0rdl+05XE =CEJJ -----END PGP SIGNATURE-----