-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Mon, 02 Jan 2012 20:24:00 +0000 Source: ia32-libs Binary: ia32-libs ia32-libs-dev Architecture: ia64 Version: 20120102 Distribution: squeeze Urgency: low Maintainer: ia64 Build Daemon (caballero) Changed-By: Thijs Kinkhorst Description: ia32-libs - ia32 shared libraries for use on amd64 and ia64 systems ia32-libs-dev - ia32 development files for use on amd64 and ia64 systems Changes: ia32-libs (20120102) stable; urgency=low . * Packages updated . [ cups (1.4.4-7+squeeze1) stable-security; urgency=high ] . * Non-maintainer upload by the Security Team. * debian/patches: - str3867 added, fix an infinite loop / heap-based buffer overflow in the gif_read_lzw() function (CVE-2011-2896) - str3914 added, complete the fix for the previous issue (CVE-2011-3170). . [ freetype (2.4.2-2.1+squeeze3) stable-security; urgency=low ] . * Non-maintainer upload by the Security Team. * Upload prepared by Michael Gilbert! * Fix CVE-2011-3439: vulnerability in CID-keyed Type 1 fonts. . [ freetype (2.4.2-2.1+squeeze2) stable-security; urgency=low ] . * Non-maintainer upload by the Security Team * CVE-2011-3256 . [ krb5 (1.8.3+dfsg-4squeeze2) stable; urgency=low ] . * Upstream ticket 6852: permit gss_set_allowable_enctypes to restirct acceptor enctypes. Required in order to permit newer than squeeze clients to talk to a squeeze nfs server without degrading security for non-nfs applications on the box, #622146 . [ mesa (7.7.1-5) squeeze; urgency=low ] . * glx: suppress BadRequest from DRI2Connect (which is expected for non-local clients). . [ nss (3.12.8-1+squeeze4) stable-security; urgency=low ] . * Explicitly distrust malaysian Digicert Sdn. Bhd CA certificate. * Address CVE-2011-3640 (Untrusted search path vulnerability). #647614. . [ openssl (0.9.8o-4squeeze4) squeeze-security; urgency=high ] . * Non-maintainer upload by the Security Team. * Block Malaysian's Digicert Sdn. Bhd. certificates by marking them as revoked. . [ openssl (0.9.8o-4squeeze3) squeeze; urgency=low ] . * Non-maintainer upload by the Security Team. * Fix CVE-2011-3210: SSL memory handling for (EC)DH ciphersuites . [ pam (1.1.1-6.1+squeeze1) stable-security; urgency=low ] . * Non-maintainer upload by the Security Team * Fix CVE-2011-3148 and CVE-2011-3149 Checksums-Sha1: f37b101f1931dea37cff2c85c521108af6a9bb92 34237520 ia32-libs_20120102_ia64.deb Checksums-Sha256: ff6b03355bff5726dde6ceaed8d7420572862d6d8881026c206ae30baaf3fde5 34237520 ia32-libs_20120102_ia64.deb Files: b584acf1327c9aa25c8ac3025a0c2f50 34237520 libs optional ia32-libs_20120102_ia64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iD8DBQFPBzpyzN/kmwoKyScRAjWlAJ46St7lV4Wk0H1HwiLJx4tRxcf+KQCfbKl6 SCOYOGRcjrRG3PvX8nKvXZM= =uFhL -----END PGP SIGNATURE-----