-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 13 Mar 2018 00:46:06 +0000 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg libcurl4-doc Architecture: arm64 Version: 7.52.1-5+deb9u5 Distribution: stretch-security Urgency: high Maintainer: arm Build Daemon (arm-conova-01) Changed-By: Alessandro Ghedini Description: curl - command line tool for transferring data with URL syntax libcurl3 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl3-dbg - debugging symbols for libcurl (OpenSSL, GnuTLS and NSS flavours) libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4-doc - documentation for libcurl libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.52.1-5+deb9u5) stretch-security; urgency=high . * Fix NIL byte out of bounds write due to FTP path trickery as per CVE-2018-1000120 https://curl.haxx.se/docs/adv_2018-9cd6.html * Fix LDAP NULL pointer dereference as per CVE-2018-1000121 https://curl.haxx.se/docs/adv_2018-97a2.html * Fix RTSP RTP buffer over-read as per CVE-2018-1000122 https://curl.haxx.se/docs/adv_2018-b047.html Checksums-Sha1: 4e4d061c2fdbd71708a7acadcff18349123fc964 134474 curl-dbgsym_7.52.1-5+deb9u5_arm64.deb fad7cd5123a3e7710552766baca77be04cedf3a7 10348 curl_7.52.1-5+deb9u5_arm64.buildinfo ea328d6e267da7036c4d288475caeff1c209b441 222512 curl_7.52.1-5+deb9u5_arm64.deb 9c3bde5f5661ca76ae64b2e85b019932d7ce385b 5056502 libcurl3-dbg_7.52.1-5+deb9u5_arm64.deb 578cc9502816fc53e2727c55e64672d3c5596d63 252560 libcurl3-gnutls_7.52.1-5+deb9u5_arm64.deb 24e44ad8c7f7d20e66224561fed5087c81a5d0d5 258522 libcurl3-nss_7.52.1-5+deb9u5_arm64.deb 2aa19231c7345f7bd51a2dedde73ebd39280e53b 254802 libcurl3_7.52.1-5+deb9u5_arm64.deb 34897e2f59f262ccb4cab5f25f5c904e21301a72 342000 libcurl4-gnutls-dev_7.52.1-5+deb9u5_arm64.deb 83e8a4e3ef3d948a7ef237adb0ba5a8f4046d7fe 347466 libcurl4-nss-dev_7.52.1-5+deb9u5_arm64.deb 8634c62273c2e9ad89a50063d77888c96249e171 343300 libcurl4-openssl-dev_7.52.1-5+deb9u5_arm64.deb Checksums-Sha256: 8b7b355bd9094a1776805d77a80b7caaaf037cce13193b3355a2381fbe6041fe 134474 curl-dbgsym_7.52.1-5+deb9u5_arm64.deb f16c16ac4f5f786044898493d6a6b5a2b4d8dac9c33d3fc68a83565f4fab3d97 10348 curl_7.52.1-5+deb9u5_arm64.buildinfo b82d939f1e5deb2a6d736d69b90bdb035821dfe7c6d6db4911f977340986deb5 222512 curl_7.52.1-5+deb9u5_arm64.deb 8349597acbefaa113947bf4b1b803678418779b56f9629b83b4018699a196fe3 5056502 libcurl3-dbg_7.52.1-5+deb9u5_arm64.deb 7ae5d026c7079f37b70aa9d9785033aa4b914fbd7213def3e31f4b97cc69b438 252560 libcurl3-gnutls_7.52.1-5+deb9u5_arm64.deb a175a3d52b190db007b185c160bd8e6a9ac0aef5c0f975813e29c392b6e209a6 258522 libcurl3-nss_7.52.1-5+deb9u5_arm64.deb 9bb68f33e22ba7c52b52c4a9627e420d9e9ba4896632e030392b8389ab1f96c5 254802 libcurl3_7.52.1-5+deb9u5_arm64.deb 70021ebbe2d00e08db24b4b5c45f8dc13e1c4ded532e3c2d738111a5a4ef8ace 342000 libcurl4-gnutls-dev_7.52.1-5+deb9u5_arm64.deb 10218511b678404634ef516cde7a8ebd1ca0afb3dba5879269562240e275dace 347466 libcurl4-nss-dev_7.52.1-5+deb9u5_arm64.deb 946760323b02106536e06b58a2c17d8b7b087ae427d641c472e6ea1d6cf93a29 343300 libcurl4-openssl-dev_7.52.1-5+deb9u5_arm64.deb Files: dd4656754f0a83ce5b3ec99b2cb01167 134474 debug extra curl-dbgsym_7.52.1-5+deb9u5_arm64.deb 4fddff64a3e73df0be1f3b1c9b0df413 10348 web optional curl_7.52.1-5+deb9u5_arm64.buildinfo 47f775443435a4a280c8b5de6bb3582b 222512 web optional curl_7.52.1-5+deb9u5_arm64.deb 2a02462950f3a6e8ebe4320028415caf 5056502 debug extra libcurl3-dbg_7.52.1-5+deb9u5_arm64.deb 1edb575597fa52a3299e6194f615f371 252560 libs optional libcurl3-gnutls_7.52.1-5+deb9u5_arm64.deb 9ce3e5154123c107451ace5f6194431e 258522 libs optional libcurl3-nss_7.52.1-5+deb9u5_arm64.deb 6ecfd3516d968a8ae93f53bbf1bff7de 254802 libs optional libcurl3_7.52.1-5+deb9u5_arm64.deb 228e0a1595e37f49fbc78c442ffb7d39 342000 libdevel optional libcurl4-gnutls-dev_7.52.1-5+deb9u5_arm64.deb 71d168b572152d4fb5c5efa8193c26e4 347466 libdevel optional libcurl4-nss-dev_7.52.1-5+deb9u5_arm64.deb 68b45e83f9b210133e2c42d4dfbf8eb5 343300 libdevel optional libcurl4-openssl-dev_7.52.1-5+deb9u5_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEE/AZ+D7Fzp8KQK1f2vgXS0+5M9EFAlqoZloACgkQ2vgXS0+5 M9GTOxAAsDoPncg0gRQKU8bbspFjtUgnyNJcePhYEkzBTRfvpfIeDhm8kS/ZTArE rUJQjVXEA9v50EEGRsBk45bQIgHz5vJ7Yx+G1ZQeHmjUbDDX37vCKJRrtFxTrKNJ ZWnY7B3p1y6Cg8iLePOA7FjaX9sTF3M2W8HQPOQcrTAqWyeZ/FE8P6oTqCkdis5z SgitlgTaiOZ1UphhANT4M9AhOeZFoFmNYswe7+Ql3FaXLhdwVhDjgnundoKR8+w0 FBU+WTRH2vTQxugowi+NLlDQTLhP9p5ZQRTyWQJLnnCVnv0JABZ8eP47l4FHeWH4 Q1ym5dPmL1JXKHuAn35t9ZE6V9r7yTMsJpk68OTp3WJNFM7yNIU+hd8rc+s2ShFJ dkISfShsfPrVz5jNdWtsXQ62RLi3opaEiKdyAGO9PUQ5kh1wSsmVwx5vem3DRtKw sYB/iQrwaev93IE9IA5CNVPlS5pqvy/TjHBFoSifMPcBTLeizpVbzObSSG92XpH7 XcH6ba4gyF/vFTgbSlNU9o/Bwg8jXsA3s70yRwtW8WTdwx56rL7VYleTBjK0Pbbd ywj9xmtqmMRHrr516RXMsEBhUIlidw6uXCk8Fd/aVUjBbcGW8DaNqvE5YhlHPxHe g2x7v+RotF9Ym8lJxqWckMw6vQnLfzh5DsOE8FZ/yltiOOLTgfw= =O6CW -----END PGP SIGNATURE-----