Accepted opie 2.32-10.2+lenny1 (source amd64)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Tue, 19 Jul 2011 22:25:18 +1000
Source: opie
Binary: opie-client opie-server libopie-dev
Architecture: source amd64
Version: 2.32-10.2+lenny1
Distribution: oldstable-security
Urgency: high
Maintainer: Michael Stone <mstone@debian.org>
Changed-By: Steffen Joeris <white@debian.org>
Description:
libopie-dev - OPIE library development files.
opie-client - OPIE programs for generating OTPs on client machines
opie-server - OPIE programs for maintaining an OTP key file
Closes: 631344 631345
Changes:
opie (2.32-10.2+lenny1) oldstable-security; urgency=high
.
* Non-maintainer upload by the security team
* Fix off-by-one and privilege escalation via missing check for
setuid() (Closes: #631344, #631345)
Fixes: CVE-2011-2489 CVE-2011-2490
Checksums-Sha1:
eca8b8b98c036bb1cf27d24ea07e35bdb5976990 1645 opie_2.32-10.2+lenny1.dsc
c8a8723d9bbb910230c319848c8c9decf8dbbdc7 156751 opie_2.32.orig.tar.gz
c01747322e1691000b498050c2641eddea91c7e6 18171 opie_2.32-10.2+lenny1.diff.gz
7760f52e792b3711d158b0ce18d153b537c7e7b8 43078 opie-client_2.32-10.2+lenny1_amd64.deb
96ea101692ee6cad2960323368084154f236f8fc 45914 opie-server_2.32-10.2+lenny1_amd64.deb
a46b3b23d291a835c7963048cc1f7122a5cb877b 30724 libopie-dev_2.32-10.2+lenny1_amd64.deb
Checksums-Sha256:
1e35f0841150168dc44ee6263eeef123d1e323949badefc03a7d4338f0364a70 1645 opie_2.32-10.2+lenny1.dsc
08eb16f40bdc167451170c59c4a7fbce04662f99984fa92dc7d02e9fad265d0c 156751 opie_2.32.orig.tar.gz
ceeaae1476090a09e154edc3c1bef6bcab6ba191e72e06a197c2b3b5cb06d88a 18171 opie_2.32-10.2+lenny1.diff.gz
fb7d01222a4f298681bc1298718bd3706620d1cc616407050a528f91edd440cf 43078 opie-client_2.32-10.2+lenny1_amd64.deb
e05e929a2daa41cd0bf59d6581ab3b4517d5d159bff8f0ece0dc2bb6b80476c6 45914 opie-server_2.32-10.2+lenny1_amd64.deb
66e9044a396cfd7e874f0b16cfd91a319a90f1be15277fd773abd625db54342c 30724 libopie-dev_2.32-10.2+lenny1_amd64.deb
Files:
15934125bd813b1af637e12c3aa7523c 1645 admin optional opie_2.32-10.2+lenny1.dsc
6970dc42e05e91fc6419533decf6c6e2 156751 admin optional opie_2.32.orig.tar.gz
058f7be8b2d2afe8f053ef538d0a162a 18171 admin optional opie_2.32-10.2+lenny1.diff.gz
1f39dd2e8cbc498d97abb8491868a203 43078 admin optional opie-client_2.32-10.2+lenny1_amd64.deb
938c5ba4181730cfafe534046c263846 45914 admin optional opie-server_2.32-10.2+lenny1_amd64.deb
f3678e3169386c6b40a74eb0c8961220 30724 devel optional libopie-dev_2.32-10.2+lenny1_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
iQIcBAEBAgAGBQJPPrAHAAoJEMXOXcLFQs1ZPMAP/09iMo/mINrD97iEmuogBBJY
1PayzSUtuWS3DJ/lHBZc0NKNm5V6je7+4+1EzNt2uemGgW72LjL+3gnPmc5cungK
F+iHFKVakCYANqPRYEANRikkj5GA6tG5JOnt6FfrwuJGc2Kg80tvqOKuNxaA8q+D
zyKnjL9EaWEd+HWtykjpt6DklBhnmG/KH/O+4jA4vsXkbzzlpSlRNciNsKtb488J
2V514JrWmUAvUzQiQ5sUPZs+zFCKfq+yr+F2RDkiI06mFhaBxm2gdVp1kX5vSLIo
iBQHFZfYBmokUzYLsirPXTtSmg99H5q1BHCwEiPuobdl1K/2xUJA+vccOY7aiMX1
TR0Ltrz91a7t/AWo/232gpzkluxE4gGQ59h0stw2vb7zvqjhvyih8x7pggGUlOy/
W8+BxniMyUQ+tQiMhv3+PcdqYUdOb7prc+Yt32aP1J2CV7hif8Q983O8a3KkMy07
S5rHn/jo1t8U6oS0OPum8o5iKNIDK47hieV09GVbjFNSLoAi7PH/OT7QrlEAWHD+
oCeKQiJijutyBWOCuAQ7GgpeHLA2CmrXNaE8EORTOYH0UT3n5bAHOBkbjxPOt+Gg
j+RR67TrKOpCuPls9NIy+DTgm9D29P/8RHBUs8SKwZR9nj5CKGWG4tEiuxOc0SuZ
Hbjs3tN/iLVosgN5y+NM
=usxQ
-----END PGP SIGNATURE-----
Accepted:
libopie-dev_2.32-10.2+lenny1_amd64.deb
to main/o/opie/libopie-dev_2.32-10.2+lenny1_amd64.deb
opie-client_2.32-10.2+lenny1_amd64.deb
to main/o/opie/opie-client_2.32-10.2+lenny1_amd64.deb
opie-server_2.32-10.2+lenny1_amd64.deb
to main/o/opie/opie-server_2.32-10.2+lenny1_amd64.deb
opie_2.32-10.2+lenny1.diff.gz
to main/o/opie/opie_2.32-10.2+lenny1.diff.gz
opie_2.32-10.2+lenny1.dsc
to main/o/opie/opie_2.32-10.2+lenny1.dsc