:Advisories, December 10, 2006
Advisories, December 10, 2006 Dec 11, 2006, 05 :30 UTC (0 Talkback[s] ) (3175 reads)
Debian GNU/Linux
Debian Security Advisory DSA-1230-1 security@debian.org
http://www.debian.org/security/ Steve Kemp
December 08, 2006
Package : l2tpns (2.0.14-1sarge1)
Vulnerability : buffer overflow
Problem type : remote
Debian-specific: no
CVE Id(s) : CVE-2006-5873
Debian Bug : 401742
Rhys Kidd discovered a vulnerability in l2tpns, a layer 2 tunnelling
protocol network server, which could be triggered by a remote user to
execute arbitary code.
For the stable distribution (sarge), this problem has been fixed in
version 2.0.14-1sarge1.
For the unstable distribution (sid) this problem has been fixed in
version 2.1.21-1
We recommend that you upgrade your l2tpns package.
Upgrade instructions
wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
If you are using the apt-get package manager, use the line for
sources.list as given below:
apt-get update
will update the internal database
apt-get upgrade
will install corrected packages
You may use an automated update by adding the resources from the
footer to the proper configuration.
Debian 3.1 (stable)
Stable updates are available for alpha, amd64, arm, hppa, i386, ia64, m68k, mips, mipsel, powerpc, s390 and sparc.
Source archives:
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14.orig.tar.gz
Size/MD5 checksum: 149672 462bca675b5e27f40f5e5f92918911cb
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1.diff.gz
Size/MD5 checksum: 2760 21dd07043e996a6deb282ad9318ff523
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1.dsc
Size/MD5 checksum: 585 16faad913601881770b688f2fc8e8357
alpha architecture (DEC Alpha)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_alpha.deb
Size/MD5 checksum: 195906 4d8481e9bf411cd71b3439fba8c65f4d
amd64 architecture (AMD x86_64 (AMD64))
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_amd64.deb
Size/MD5 checksum: 152440 164d2205b4cd8fc99bc4763fb7ac9b38
arm architecture (ARM)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_arm.deb
Size/MD5 checksum: 151706 317794e1cbd89bf03a5276a5e0e6e946
hppa architecture (HP PA RISC)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_hppa.deb
Size/MD5 checksum: 169062 80e4b651500315e6cfeae09cbd990cca
i386 architecture (Intel ia32)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_i386.deb
Size/MD5 checksum: 144584 4a447fcc5dae3781f84f21bc8a262937
ia64 architecture (Intel ia64)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_ia64.deb
Size/MD5 checksum: 227898 e14fc8e036271566d4a9178e10650ad3
m68k architecture (Motorola Mc680x0)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_m68k.deb
Size/MD5 checksum: 128076 e30c757e00a9914890caeab4da5e364d
mips architecture (MIPS (Big Endian))
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_mips.deb
Size/MD5 checksum: 165256 c5eadfb746ff587e557241fcea756011
mipsel architecture (MIPS (Little Endian))
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_mipsel.deb
Size/MD5 checksum: 168406 b11641d83e799878de35512edb09dbfa
powerpc architecture (PowerPC)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_powerpc.deb
Size/MD5 checksum: 168706 9b4038dbfaa5fe14ac7df25857cc0e7f
s390 architecture (IBM S/390)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_s390.deb
Size/MD5 checksum: 155020 d4a196ecf8b13ae8d0830e45571cc29d
sparc architecture (Sun SPARC/UltraSPARC)
http://security.debian.org/pool/updates/main/l/l2tpns/l2tpns_2.0.14-1sarge1_sparc.deb
Size/MD5 checksum: 160188 ab36083d96a6d5ca028d93032eccdec0
These files will probably be moved into the stable distribution on
its next update.
Debian Security Advisory DSA 1231-1 security@debian.org
http://www.debian.org/security/ Moritz Muehlenhoff
December 9th, 2006 http://www.debian.org/security/faq
Package : gnupg
Vulnerability : several
Problem-Type : local(remote)
Debian-specific: no
CVE ID : CVE-2006-6169 CVE-2006-6235
Debian Bug : 401894 401898 401914
Several remote vulnerabilities have been discovered in the GNU privacy,
a free PGP replacement, which may lead to the execution of arbitrary code.
The Common Vulnerabilities and Exposures project identifies the following
problems:
CVE-2006-6169
Werner Koch discovered that a buffer overflow in a sanitising function
may lead to execution of arbitrary code when running gnupg
interactively.
CVE-2006-6235
Tavis Ormandy discovered that parsing a carefully crafted OpenPGP
packet may lead to the execution of arbitrary code, as a function
pointer of an internal structure may be controlled through the
decryption routines.
For the stable distribution (sarge) these problems have been fixed in
version 1.4.1-1.sarge6.
For the upcoming stable distribution (etch) these problems have been
fixed in version 1.4.6-1.
For the unstable distribution (sid) these problems have been fixed in
version 1.4.6-1.
We recommend that you upgrade your gnupg packages.
Upgrade Instructions
wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
If you are using the apt-get package manager, use the line for
sources.list as given below:
apt-get update
will update the internal database
apt-get upgrade
will install corrected packages
You may use an automated update by adding the resources from the
footer to the proper configuration.
Debian GNU/Linux 3.1 alias sarge
Source archives:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6.dsc
Size/MD5 checksum: 680 f99d9936fdb3d87b37f719d4f507702a
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6.diff.gz
Size/MD5 checksum: 22889 219b13435d4594c530614638590b65d3
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1.orig.tar.gz
Size/MD5 checksum: 4059170 1cc77c6943baaa711222e954bbd785e5
Alpha architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_alpha.deb
Size/MD5 checksum: 2156230 950520b2391eb6444593c66a8e96d6c3
AMD64 architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_amd64.deb
Size/MD5 checksum: 1963738 589ab9ab433e000e919a38f558f54f5e
ARM architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_arm.deb
Size/MD5 checksum: 1899822 158ed8fe21da9e2b8c730b3b2acce9a8
HP Precision architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_hppa.deb
Size/MD5 checksum: 2004374 9daff80c38cf65bb299fb5ee370d44d6
Intel IA-32 architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_i386.deb
Size/MD5 checksum: 1909194 8752d3578b55a7fd1535bba18ca0770c
Intel IA-64 architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_ia64.deb
Size/MD5 checksum: 2325806 38fa7bb8def3d1a296aa6aa3432561a3
Motorola 680x0 architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_m68k.deb
Size/MD5 checksum: 1811222 f51182d8badb7c2b0ef42b78c71be16d
Big endian MIPS architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_mips.deb
Size/MD5 checksum: 2001184 cc087abacd572bed64a2ab191d863946
Little endian MIPS architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_mipsel.deb
Size/MD5 checksum: 2007888 c42342dd898361ed9fcee1bdc8edc3e2
PowerPC architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_powerpc.deb
Size/MD5 checksum: 1958036 ff8ee1d008561ce87732847e895024ec
IBM S/390 architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_s390.deb
Size/MD5 checksum: 1967406 693212d3c1b12bf7f6f204daa0531f6a
Sun Sparc architecture:
http://security.debian.org/pool/updates/main/g/gnupg/gnupg_1.4.1-1.sarge6_sparc.deb
Size/MD5 checksum: 1897740 3821e5e9e69241324d781fe78ed1ace7
These files will probably be moved into the stable distribution on
its next update.
Debian Security Advisory DSA 1232-1 security@debian.org
http://www.debian.org/security/ Moritz Muehlenhoff
December 9th, 2006 http://www.debian.org/security/faq
Package : clamav
Vulnerability : missing sanity checks
Problem-Type : remote
Debian-specific: no
CVE ID : CVE-2006-5874
Stephen Gran discovered that malformed base64-encoded MIME attachments
can lead to denial of service through a null pointer dereference.
For the stable distribution (sarge) this problem has been fixed in
version 0.84-2.sarge.12.
For the upcoming stable distribution (etch) this problem has been
fixed in version 0.86-1.
For the unstable distribution (sid) this problem has been fixed in
version 0.86-1.
We recommend that you upgrade your clamav package.
Upgrade Instructions
wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
If you are using the apt-get package manager, use the line for
sources.list as given below:
apt-get update
will update the internal database
apt-get upgrade
will install corrected packages
You may use an automated update by adding the resources from the
footer to the proper configuration.
Debian GNU/Linux 3.1 alias sarge
Source archives:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12.dsc
Size/MD5 checksum: 874 5b916037233c2d9d181ea83f1d42d712
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12.diff.gz
Size/MD5 checksum: 177238 a782b435ee944e318fc88c4a0cdb67b2
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84.orig.tar.gz
Size/MD5 checksum: 4006624 c43213da01d510faf117daa9a4d5326c
Architecture independent components:
http://security.debian.org/pool/updates/main/c/clamav/clamav-base_0.84-2.sarge.12_all.deb
Size/MD5 checksum: 154928 b32d2d2ece27947abc7b7c6330abf2b1
http://security.debian.org/pool/updates/main/c/clamav/clamav-docs_0.84-2.sarge.12_all.deb
Size/MD5 checksum: 694464 eb184049df134a9006667e6785c24c25
http://security.debian.org/pool/updates/main/c/clamav/clamav-testfiles_0.84-2.sarge.12_all.deb
Size/MD5 checksum: 123944 62365dceb1d3080f1164ce0a972fdf25
Alpha architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_alpha.deb
Size/MD5 checksum: 74764 be1106a34f9f141c035e5944b515d698
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_alpha.deb
Size/MD5 checksum: 48832 16c19937df6b1e662518667bf0d0ee6f
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_alpha.deb
Size/MD5 checksum: 2176478 42c9a257d406924bd2fcac05be372969
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_alpha.deb
Size/MD5 checksum: 42112 19cf2cd6d553eba10a02ff592c12c94a
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_alpha.deb
Size/MD5 checksum: 255854 038f4ce242d6db3705a8baf832e0e12f
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_alpha.deb
Size/MD5 checksum: 285746 c0d001b91c29d95bd53737b2d7b5c547
AMD64 architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_amd64.deb
Size/MD5 checksum: 68848 c0e28ed5358d1f5ebff13d61d6eb1eb4
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_amd64.deb
Size/MD5 checksum: 44184 c88134266b22681595f3c7ed12334a4f
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_amd64.deb
Size/MD5 checksum: 2173274 64577d98f3d80cfc1e6e74ff4d81fcd5
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_amd64.deb
Size/MD5 checksum: 39996 b463aded3ec3448e8a577674cc257c31
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_amd64.deb
Size/MD5 checksum: 176586 eeb2004aab6cc21d10384e5ca036a87c
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_amd64.deb
Size/MD5 checksum: 259932 870f959c30fe9e7bcf48deac7fd6759b
ARM architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_arm.deb
Size/MD5 checksum: 63922 29edcdab52e56c2b72af6af97ca0c768
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_arm.deb
Size/MD5 checksum: 39584 a8afdb2046b166a1b1f5b8a3e9b82e5e
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_arm.deb
Size/MD5 checksum: 2171286 d8537b008fbb7bf022af9c388fd3e4ac
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_arm.deb
Size/MD5 checksum: 37322 fd8f26bcf782fefba3c5a0530dcf2ec2
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_arm.deb
Size/MD5 checksum: 174942 4e3f425067940ad951c5db80bedb1bde
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_arm.deb
Size/MD5 checksum: 249834 941fa21a688be04473a079fca7e8a3b4
HP Precision architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_hppa.deb
Size/MD5 checksum: 68282 2fb841851035efd52fefa7e724d590be
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_hppa.deb
Size/MD5 checksum: 43280 d3c20fdeb6f4aebaa0dbe8ae90a5d184
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_hppa.deb
Size/MD5 checksum: 2173744 4d0ea408992b3b0f96e7d17ff167a729
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_hppa.deb
Size/MD5 checksum: 39452 c9c873ee637518fa15725c8490bf09bc
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_hppa.deb
Size/MD5 checksum: 202738 457a65fb73cd55814e01dc86fe4e09d8
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_hppa.deb
Size/MD5 checksum: 283560 80e6985db13798376fa0bd037180347b
Intel IA-32 architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_i386.deb
Size/MD5 checksum: 65210 e77f2ea59853a44c9de70078084818f7
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_i386.deb
Size/MD5 checksum: 40316 a6277fe555ed016b66e31a8f12ae5900
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_i386.deb
Size/MD5 checksum: 2171600 04bed8cc7a6fce37fadb00e7c3de0158
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_i386.deb
Size/MD5 checksum: 38040 8f2f1d793f711032130b79374a3fe92d
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_i386.deb
Size/MD5 checksum: 159766 ed10728241f21d9ca16958b69ef2835e
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_i386.deb
Size/MD5 checksum: 254628 7a3362570c412ce45fef6af9836dc5a9
Intel IA-64 architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_ia64.deb
Size/MD5 checksum: 81826 d6ce185e7548aca1a6d9d5076dd02c62
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_ia64.deb
Size/MD5 checksum: 55238 2048e4d1efbd87de9ab0bb0af1aad258
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_ia64.deb
Size/MD5 checksum: 2180260 a2609594a563da9abfa754d24417a9c2
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_ia64.deb
Size/MD5 checksum: 49194 017e5a956c866dfbf3fb25ac9ae9af92
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_ia64.deb
Size/MD5 checksum: 252232 beb80dffdfc1bc355437f40b4694d783
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_ia64.deb
Size/MD5 checksum: 317956 006317c527eac48b0328d53dab68863f
Motorola 680x0 architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_m68k.deb
Size/MD5 checksum: 62522 7cbb98367bf49fcaaa4e17d740353fa1
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_m68k.deb
Size/MD5 checksum: 38214 23b7e1072c74ead32b3c4de2732d90a6
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_m68k.deb
Size/MD5 checksum: 2170512 24a34375e8aa0391b57695751778563c
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_m68k.deb
Size/MD5 checksum: 35076 0a65ea328e6f2a9b6682dd5124dea45d
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_m68k.deb
Size/MD5 checksum: 146374 257c0624826096b041dadfc21a722244
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_m68k.deb
Size/MD5 checksum: 250616 6e80c1cf4c8bb7289e277c74d415e187
Big endian MIPS architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_mips.deb
Size/MD5 checksum: 67954 d241687159539050660a0b26e65ce420
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_mips.deb
Size/MD5 checksum: 43788 464b8562f10bcb127cebd37192daaac9
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_mips.deb
Size/MD5 checksum: 2173044 97ebd82f119d09500a4ff5ccd8c21cef
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_mips.deb
Size/MD5 checksum: 37672 f39f4ff08d44f7e7994faf23b439af96
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_mips.deb
Size/MD5 checksum: 195606 a206da343265cb7e8c780544036bd491
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_mips.deb
Size/MD5 checksum: 257714 3d81be01bbdb7c0d48b4c97c8657c112
Little endian MIPS architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_mipsel.deb
Size/MD5 checksum: 67560 589421e196e11eb3536a2a8874af7d71
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_mipsel.deb
Size/MD5 checksum: 43588 4822a893c5c7f476b9991ed8ff9930e1
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_mipsel.deb
Size/MD5 checksum: 2173000 05c596728ad5d423d841522e5957e6e8
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_mipsel.deb
Size/MD5 checksum: 37962 432ecd8c78aaa8ce80cd385ad5a4f0d8
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_mipsel.deb
Size/MD5 checksum: 192076 77ab2250c971bb5f2a787cf904dc1176
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_mipsel.deb
Size/MD5 checksum: 255302 b2806442ee7af4103edec95f86ed4bec
PowerPC architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_powerpc.deb
Size/MD5 checksum: 69294 f737048437ce5bfc2843d757005bf902
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_powerpc.deb
Size/MD5 checksum: 44670 fc9c04bd42f2b377c85e1ca40c2889ba
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_powerpc.deb
Size/MD5 checksum: 2173674 a4b694e07e459765d2ba80471b83ef28
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_powerpc.deb
Size/MD5 checksum: 38876 0af124304eac3624be255d4e92dbc32b
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_powerpc.deb
Size/MD5 checksum: 187746 7b632f5ce2a16725010d83847031c992
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_powerpc.deb
Size/MD5 checksum: 265086 a81c89ca24d3fba3204278ec33ee3f2e
IBM S/390 architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_s390.deb
Size/MD5 checksum: 67892 9c6d6f8d31cfe729b0f14dc91f0111ed
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_s390.deb
Size/MD5 checksum: 43564 8f0b63348907e2a45b905c6c631a53a4
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_s390.deb
Size/MD5 checksum: 2172966 ac148963f872e961a99bda672d38bde4
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_s390.deb
Size/MD5 checksum: 38910 f9bc46b646faacf26f825aac7afd35f5
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_s390.deb
Size/MD5 checksum: 182718 cdce561be2f6cb23b1b29d834b2abac7
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_s390.deb
Size/MD5 checksum: 269694 168fdcd3e7231fac67facaffdbd30744
Sun Sparc architecture:
http://security.debian.org/pool/updates/main/c/clamav/clamav_0.84-2.sarge.12_sparc.deb
Size/MD5 checksum: 64428 fc678da4d6ff9a60f1d0118857025c34
http://security.debian.org/pool/updates/main/c/clamav/clamav-daemon_0.84-2.sarge.12_sparc.deb
Size/MD5 checksum: 39472 59309047f49d149d61dcaa64a7c1d261
http://security.debian.org/pool/updates/main/c/clamav/clamav-freshclam_0.84-2.sarge.12_sparc.deb
Size/MD5 checksum: 2171188 793f229374c70ed9f945effccaf4e18e
http://security.debian.org/pool/updates/main/c/clamav/clamav-milter_0.84-2.sarge.12_sparc.deb
Size/MD5 checksum: 36854 24fa5876984aa5e633781edf408dcda1
http://security.debian.org/pool/updates/main/c/clamav/libclamav-dev_0.84-2.sarge.12_sparc.deb
Size/MD5 checksum: 175978 2fb86e8253a0f9a3da3bf1101f70168e
http://security.debian.org/pool/updates/main/c/clamav/libclamav1_0.84-2.sarge.12_sparc.deb
Size/MD5 checksum: 265034 2a31297ba3c110c4398c1dd09377e24e
These files will probably be moved into the stable distribution on
its next update.
Debian Security Advisory DSA 1233-1 security@debian.org
http://www.debian.org/security/ Dann Frazier v
December 10th, 2006 http://www.debian.org/security/faq
Package : kernel-source-2.6.8
Vulnerability : several
Problem-Type : local/remote
Debian-specific: no
CVE ID : CVE-2006-3741 CVE-2006-4538 CVE-2006-4813 CVE-2006-4997
CVE-2006-5174 CVE-2006-5619 CVE-2006-5649 CVE-2006-5751
CVE-2006-5871
Several local and remote vulnerabilities have been discovered in the Linux
kernel that may lead to a denial of service or the execution of arbitrary
code. The Common Vulnerabilities and Exposures project identifies the
following problems:
CVE-2006-3741
Stephane Eranian discovered a local DoS (Denial of Service) vulnerability
on the ia64 architecture. A local user could exhaust the available file
descriptors by exploiting a counting error in the permonctl() system call.
CVE-2006-4538
Kirill Korotaev reported a local DoS (Denial of Service) vulnerability
on the ia64 and sparc architectures. A user could cause the system to
crash by executing a malformed ELF binary due to insufficient verification
of the memory layout.
CVE-2006-4813
Dmitriy Monakhov reported a potential memory leak in the
__block_prepare_write function. __block_prepare_write does not properly
sanitize kernel buffers during error recovery, which could be exploited
by local users to gain access to sensitive kernel memory.
CVE-2006-4997
ADLab Venustech Info Ltd reported a potential remote DoS (Denial of
Service) vulnerability in the IP over ATM subsystem. A remote system
could cause the system to crash by sending specially crafted packets
that would trigger an attempt to free an already-freed pointer
resulting in a system crash.
CVE-2006-5174
Martin Schwidefsky reported a potential leak of sensitive information
on s390 systems. The copy_from_user function did not clear the remaining
bytes of the kernel buffer after receiving a fault on the userspace
address, resulting in a leak of uninitialized kernel memory. A local user
could exploit this by appending to a file from a bad address.
CVE-2006-5619
James Morris reported a potential local DoS (Denial of Service)
vulnerability that could be used to hang or oops a system. The seqfile
handling for /proc/net/ip6_flowlabel has a flaw that can be exploited to
cause an infinite loop by reading this file after creating a flowlabel.
CVE-2006-5649
Fabio Massimo Di Nitto reported a potential remote DoS (Denial of Service)
vulnerability on powerpc systems. The alignment exception only
checked the exception table for -EFAULT, not for other errors. This can
be exploited by a local user to cause a system crash (panic).
CVE-2006-5751
Eugene Teo reported a vulnerability in the get_fdb_entries function that
could potentially be exploited to allow arbitrary code execution with
escalated priveleges.
CVE-2006-5871
Bill Allombert reported that various mount options are ignored by smbfs
when UNIX extensions are enabled. This includes the uid, gid and mode
options. Client systems would silently use the server-provided settings
instead of honoring these options, changing the security model. This
update includes a fix from Haroldo Gamal that forces the kernel to honor
these mount options. Note that, since the current versions of smbmount
always pass values for these options to the kernel, it is not currently
possible to activate unix extensions by omitting mount options. However,
this behavior is currently consistent with the current behavior of the
next Debian release, 'etch'.
The following matrix explains which kernel version for which architecture
fix the problems mentioned above:
Debian 3.1 (sarge)
Source 2.6.8-16sarge6
Alpha architecture 2.6.8-16sarge6
AMD64 architecture 2.6.8-16sarge6
HP Precision architecture 2.6.8-6sarge6
Intel IA-32 architecture 2.6.8-16sarge6
Intel IA-64 architecture 2.6.8-14sarge6
Motorola 680x0 architecture 2.6.8-4sarge6
PowerPC architecture 2.6.8-12sarge6
IBM S/390 architecture 2.6.8-5sarge6
Sun Sparc architecture 2.6.8-15sarge6
The following matrix lists additional packages that were rebuilt for
compatibility with or to take advantage of this update:
Debian 3.1 (sarge)
fai-kernels 1.9.1sarge5
We recommend that you upgrade your kernel package immediately and reboot
the machine. If you have built a custom kernel from the kernel source
package, you will need to rebuild to take advantage of these fixes.
Upgrade Instructions
wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.
If you are using the apt-get package manager, use the line for
sources.list as given below:
apt-get update
will update the internal database
apt-get upgrade
will install corrected packages
You may use an automated update by adding the resources from the
footer to the proper configuration.
Debian GNU/Linux 3.1 alias sarge
Source archives:
http://security.debian.org/pool/updates/main/f/fai-kernels/fai-kernels_1.9.1sarge5.dsc
Size/MD5 checksum: 621 011ee5100e419cb2f0c7bc1cc30ac84a
http://security.debian.org/pool/updates/main/f/fai-kernels/fai-kernels_1.9.1sarge5.tar.gz
Size/MD5 checksum: 29571 d148029e7fe13f42ab21c5eb43de8204
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-image-2.6.8-alpha_2.6.8-16sarge6.dsc
Size/MD5 checksum: 812 f693cfc9f2cd655d084ca005326c126e
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-image-2.6.8-alpha_2.6.8-16sarge6.tar.gz
Size/MD5 checksum: 40661 4e5045c3579ad31ff3ef6bc7c37bd292
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-amd64_2.6.8-16sarge6.dsc
Size/MD5 checksum: 1103 5f1ba98eda946487e954612202ebfd08
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-amd64_2.6.8-16sarge6.tar.gz
Size/MD5 checksum: 78113 c5a97681365085c2fe8e0434f87a99df
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-image-2.6.8-hppa_2.6.8-6sarge6.dsc
Size/MD5 checksum: 1013 a992f3eea9565bbad701e8b7b9de901e
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-image-2.6.8-hppa_2.6.8-6sarge6.tar.gz
Size/MD5 checksum: 69167 1eb1a08a3677ac93c3f2b881a6372830
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-i386_2.6.8-16sarge6.dsc
Size/MD5 checksum: 1047 371bc0e772a2de1e60d7c147779ee493
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-i386_2.6.8-16sarge6.tar.gz
Size/MD5 checksum: 92372 5bf576e9a0de27e48c54086ab65f6496
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6.8-ia64_2.6.8-14sarge6.dsc
Size/MD5 checksum: 1191 a89cdab675fdfc739b3e7e45b79a8e79
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6.8-ia64_2.6.8-14sarge6.tar.gz
Size/MD5 checksum: 65823 c026a5b58cd2126f7a5b7b49cd6871d0
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-m68k_2.6.8-4sarge6.dsc
Size/MD5 checksum: 874 e0b1a23eb96c7f518d5f6ebbf55de163
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-m68k_2.6.8-4sarge6.tar.gz
Size/MD5 checksum: 19011 ec0effc4a6dc039914338c10ef487de9
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-image-2.6.8-s390_2.6.8-5sarge6.dsc
Size/MD5 checksum: 846 359e3d309b037d46ea347dfa221b06fc
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-image-2.6.8-s390_2.6.8-5sarge6.tar.gz
Size/MD5 checksum: 14602 b9fade60d70a3149dfb975f46fa24876
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-image-2.6.8-sparc_2.6.8-15sarge6.dsc
Size/MD5 checksum: 1036 12556f5dfc700f91c58312c425df72e6
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-image-2.6.8-sparc_2.6.8-15sarge6.tar.gz
Size/MD5 checksum: 28517 d07e30138d6fb6f17664baaba77c2ac5
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-patch-powerpc-2.6.8_2.6.8-12sarge6.dsc
Size/MD5 checksum: 1072 30e4b72b36b22e307d597dcb3d4d20e5
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-patch-powerpc-2.6.8_2.6.8-12sarge6.tar.gz
Size/MD5 checksum: 28554 0022914d14f9ea691ac35d79b3cc1bb7
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-source-2.6.8_2.6.8-16sarge6.dsc
Size/MD5 checksum: 1002 9e5b12cb1d4c98cddc88e5c36bf7d951
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-source-2.6.8_2.6.8-16sarge6.diff.gz
Size/MD5 checksum: 1067572 1d83d174a3b2f5e6b03bcbf53c4d877f
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-source-2.6.8_2.6.8.orig.tar.gz
Size/MD5 checksum: 43929719 0393c05ffa4770c3c5178b74dc7a4282
Architecture independent components:
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-doc-2.6.8_2.6.8-16sarge6_all.deb
Size/MD5 checksum: 6192778 9c16bf9ab5f0ecf6551812f3e0e693ac
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-patch-debian-2.6.8_2.6.8-16sarge6_all.deb
Size/MD5 checksum: 1116726 3156984be3fc859f717a4253bd0ea462
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-source-2.6.8_2.6.8-16sarge6_all.deb
Size/MD5 checksum: 34943318 4b4ecbf67cb066043d0d9447b5238d28
http://security.debian.org/pool/updates/main/k/kernel-source-2.6.8/kernel-tree-2.6.8_2.6.8-16sarge6_all.deb
Size/MD5 checksum: 36670 67ed3f0138673fdf06494239a3531972
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-patch-2.6.8-s390_2.6.8-5sarge6_all.deb
Size/MD5 checksum: 12640 482b528f209c1c2cae844c28d6b18ae3
Alpha architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-headers-2.6.8-3_2.6.8-16sarge6_alpha.deb
Size/MD5 checksum: 2761698 83f1d28bc308bc26af3d17abacfdd30f
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-headers-2.6.8-3-generic_2.6.8-16sarge6_alpha.deb
Size/MD5 checksum: 233604 4043f87dd5ae9112e28a72094bea4a86
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-headers-2.6.8-3-smp_2.6.8-16sarge6_alpha.deb
Size/MD5 checksum: 228886 02018d26ea8bfd1e0b8af7580ba05113
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-image-2.6.8-3-generic_2.6.8-16sarge6_alpha.deb
Size/MD5 checksum: 20237958 816d6775108cf3e9515b5605849d3051
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-alpha/kernel-image-2.6.8-3-smp_2.6.8-16sarge6_alpha.deb
Size/MD5 checksum: 20097652 e66a50b7968d11f9a1951d544134ebd0
AMD64 architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 2724402 87e94eebbe634daa042e7b62a49b8aab
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-amd64-generic_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 227732 e29cc25197c45b2cee30c7f1a957716f
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-amd64-k8_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 226898 7dc6ccee008e587fad16c8520e53acc8
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-amd64-k8-smp_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 222930 6fa3fd9a93f01842cb2f913d69b60777
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-em64t-p4_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 224678 c355e6eec253fa1a60592ecf97850d94
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-em64t-p4-smp_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 221322 02266d74b03665409b8616688df66228
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-amd64-generic_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 12571284 c0a9538516a6cce193b918dec8b0a0e3
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-amd64-k8_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 13271158 208285a35c6d9ee4844f19196810214d
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-amd64-k8-smp_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 13228820 497f1fd377746b9969ccb322e81b96fd
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-em64t-p4_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 13074616 10c7d4caa55222d8d4e445b161805335
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-em64t-p4-smp_2.6.8-16sarge6_amd64.deb
Size/MD5 checksum: 13053762 8dd7a6bcb65be4d1ec36b5b8df791e9f
Intel IA-32 architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 2724464 a8c2ca19ce721a696635823d29debf36
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-amd64-generic_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 227760 7cc36da576c41b0cc36ed299ceb3b924
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-amd64-k8_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 226792 92b357210c7cd4f06699af1d8af8d9da
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-amd64-k8-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 222922 6c9be69bcbb8373ea339ecbf7b3b4ab0
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-em64t-p4_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 224708 8a3c89878570fb4f8af43dac22a31f7f
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-headers-2.6.8-12-em64t-p4-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 221334 51763611463ba3b42d81dcc73ddf8cd5
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-amd64-generic_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 12571406 e4d6d6b706f2bde44c2f20a9eb63b381
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-amd64-k8_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 13271216 f5091383a3245a517e7275cdf54434d8
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-amd64-k8-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 13228944 9979df016583c651084a316b3e60229c
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-em64t-p4_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 13227554 b31733336fad578c66ef2c5ee9809da1
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-amd64/kernel-image-2.6.8-12-em64t-p4-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 13203760 55665ff1ef5f7d19152b0ab55932d55b
http://security.debian.org/pool/updates/main/f/fai-kernels/fai-kernels_1.9.1sarge5_i386.deb
Size/MD5 checksum: 12002364 a235fc98f68f558e5ecc1ec7b42dd57e
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-headers-2.6.8-3_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 2781060 f1541ee9b97a523d3ec3a9718326e599
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-headers-2.6.8-3-386_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 260032 7b8f626d8a9f4461fa4c0514f88d1030
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-headers-2.6.8-3-686_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 258208 643338f6374486ca34800bd55f66743a
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-headers-2.6.8-3-686-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 255130 7f56f0182538f628f7ae6a03500b7aa9
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-headers-2.6.8-3-k7_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 258046 12e637c2a82bc35395ec0d5eb09218a7
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-headers-2.6.8-3-k7-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 255482 e47c34d5ea1c446dcb46018b655e4d5e
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-3-386_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 14067514 9e25ec9a77d23f6111a096c22133704d
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-3-686_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 15550508 2ccf7a2cfcb0b1629a8502bc9ea894bb
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-3-686-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 15384328 8413949fb631cba0c41162f9973f448c
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-3-k7_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 15273574 a4615f36347ba4101f0316d860b0a999
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-i386/kernel-image-2.6.8-3-k7-smp_2.6.8-16sarge6_i386.deb
Size/MD5 checksum: 15165006 ded0d2ddc82edb483927736d0945a26f
HP Precision architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-headers-2.6.8-3_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 2802706 e66daaf1ddef2c2d2d85c884487e94e1
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-headers-2.6.8-3-32_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 213308 4f856b7eb46570f2ff63872c76370557
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-headers-2.6.8-3-32-smp_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 212830 8b7c179ad04d28d4351ef0335a71f846
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-headers-2.6.8-3-64_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 212172 964f4250b6228da3ffb42506831f952d
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-headers-2.6.8-3-64-smp_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 211598 0c3a2b31ce52efdd3d25892bc8dbe4a7
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-image-2.6.8-3-32_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 16038152 f4f0f9265fbe9759a8226791494c3d87
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-image-2.6.8-3-32-smp_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 16945098 7f48536252a7f397d4c3ccaa5c27acd1
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-image-2.6.8-3-64_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 17488884 be22fbe687ccbdc74e46d82a50aa67e8
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-hppa/kernel-image-2.6.8-3-64-smp_2.6.8-6sarge6_hppa.deb
Size/MD5 checksum: 18323104 bc84726f1d311731839a482470eac180
Intel IA-64 architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6-itanium_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8328 437a9e1f12ef5c44488123133be693f9
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6-itanium-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8392 f350a2c8648dba4b9131bb6727f62a3c
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6-mckinley_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8354 4c2ac89127aca46b3c7caa94627cb790
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6-mckinley-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8422 90d9c28d0597fd071783627dfeb5a47d
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6.8-3_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 3100586 fe42f8372f9bd4e7aede89524752b258
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6.8-3-itanium_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 202016 f39ab5662025051f1a5f4071f98b8326
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6.8-3-itanium-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 201574 02242af3e14a45afbce321f9da26c4c3
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6.8-3-mckinley_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 201736 6266254168512c6844bfc36c7c99baf1
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-headers-2.6.8-3-mckinley-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 201358 0cf4e051888b2f2b447784ee95bd16bf
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6-itanium_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8322 a4ef844e4a9a825b6d4e8458124b4c70
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6-itanium-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8392 00f9abeb1db174321d20e5195476bf4d
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6-mckinley_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8350 4cda64538a8aded969f0737e8841bb8f
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6-mckinley-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 8420 8fdcb1a497de06056e444fe666cd7eb3
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6.8-3-itanium_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 21492518 9ebc1de753630b3e7bc1375cebe40baf
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6.8-3-itanium-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 22143884 c8e8efe7d0e8e8bd5c7d9848c238da39
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6.8-3-mckinley_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 21414040 436463ce77158481c193d7a393081525
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-ia64/kernel-image-2.6.8-3-mckinley-smp_2.6.8-14sarge6_ia64.deb
Size/MD5 checksum: 22159592 e78bd1c46d232ac6fbca8359e0b17217
Motorola 680x0 architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-amiga_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 3307308 19f3b7edc060d43e53340d9089d75f85
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-atari_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 3105070 c71f6661668cc4b7d24a74d05c61ec0f
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-bvme6000_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 3017094 038b505e49d176ff9c6c2c29008c81b6
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-hp_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 2990546 fd8a9013b726c7cdd3af0ffc788ed464
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-mac_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 3176400 4f07b7599c4bf68fce66dc1b3d50027e
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-mvme147_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 2981206 74ac4e38ff78db512904f6fde1942d7d
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-mvme16x_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 3050512 290c886ef124a7e8e0081c787dac1e02
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-q40_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 3111864 bed2bdc831f4aceb2cdab00dc6c9ff74
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-m68k/kernel-image-2.6.8-sun3_2.6.8-4sarge6_m68k.deb
Size/MD5 checksum: 2996748 072ad661017bb265f727971d64d22713
IBM S/390 architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-headers-2.6.8-3_2.6.8-5sarge6_s390.deb
Size/MD5 checksum: 5088210 67913b4030c03602ab7b995e18a61ff0
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-image-2.6.8-3-s390_2.6.8-5sarge6_s390.deb
Size/MD5 checksum: 2983156 f075548343f44a55fa86950ab1acfd4e
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-image-2.6.8-3-s390-tape_2.6.8-5sarge6_s390.deb
Size/MD5 checksum: 1145348 c985c3054acf6d23de65e2b1e8abceb1
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-s390/kernel-image-2.6.8-3-s390x_2.6.8-5sarge6_s390.deb
Size/MD5 checksum: 3190572 3761b55bbeebbb0f95ead41ed1c63645
Sun Sparc architecture:
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-build-2.6.8-3_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 6914 80f27150809880437b8eea7cdacf86aa
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-headers-2.6.8-3_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 2892460 fe5a212dc746cb2cd3b6f89cd3ec0910
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-headers-2.6.8-3-sparc32_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 111930 47217a4688947b3541b160442c67c4e3
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-headers-2.6.8-3-sparc64_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 146746 f7175f6a595c089d70cdcbc53da66741
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-headers-2.6.8-3-sparc64-smp_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 147416 3ba6d4524ee7f978629105f03a6cb888
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-image-2.6.8-3-sparc32_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 4556682 2e8d6bb2402f6eae4ca1c7d84fc038e5
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-image-2.6.8-3-sparc64_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 7436722 ad82ebcd955994cf9ba0a888665f7bc3
http://security.debian.org/pool/updates/main/k/kernel-image-2.6.8-sparc/kernel-image-2.6.8-3-sparc64-smp_2.6.8-15sarge6_sparc.deb
Size/MD5 checksum: 7638170 97ea4b531b25d0184afe15bcf048dd61
PowerPC architecture:
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-build-2.6.8-3-power3_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 408362 b1e56a6aa08127744684207cc77a5b18
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-build-2.6.8-3-power3-smp_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 408258 9795e94f5386b04d96c1ed51b358152e
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-build-2.6.8-3-power4_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 408940 a7062df43f196e20ac34142bcb63094c
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-build-2.6.8-3-power4-smp_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 408246 3039aa321500765dd3a90fdd02cabaf5
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-build-2.6.8-3-powerpc_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 408556 2730f0ac614407f07d4e3b89168ed1d0
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-build-2.6.8-3-powerpc-smp_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 408344 0548e0547f8956e0b78154be37604c42
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-headers-2.6.8-3_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 5149586 138c219551722913760971e091ee01fa
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-image-2.6.8-3-power3_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 13587372 0eccec26ecc77a85a92882d85cd4dee7
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-image-2.6.8-3-power3-smp_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 13940646 0d090a94b0d5d0087d03336eec38aafb
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-image-2.6.8-3-power4_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 13573608 1bf18727501cba237540f89661536a5d
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-image-2.6.8-3-power4-smp_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 13928674 3364e627dcce97aceecb1f3d2993237f
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-image-2.6.8-3-powerpc_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 13605310 6f5cf3c2d1db6cc19247d16d7d6ffdab
http://security.debian.org/pool/updates/main/k/kernel-patch-powerpc-2.6.8/kernel-image-2.6.8-3-powerpc-smp_2.6.8-12sarge6_powerpc.deb
Size/MD5 checksum: 13860206 3d8bb4b7c4bdc8b34c7a840c3e9e894b
These files will probably be moved into the stable distribution on
its next update.
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
Gentoo Linux
Gentoo Linux Security Advisory GLSA 200612-02
http://security.gentoo.org/
Severity: Normal
Title: xine-lib: Buffer overflow
Date: December 09, 2006
Bugs: #156645
ID: 200612-02
xine-lib is vulnerable to a buffer overflow in the Real Media input
plugin, which could lead to the execution of arbitrary code.
xine is a portable and reusable multimedia playback engine. xine-lib is
xine's core engine.
Package / Vulnerable / Unaffected
1 media-libs/xine-lib < 1.1.2-r3 >= 1.1.2-r3
A possible buffer overflow has been reported in the Real Media input
plugin.
An attacker could exploit this vulnerability by enticing a user into
loading a specially crafted stream with xine or an application using
xine-lib. This can lead to a Denial of Service and possibly the
execution of arbitrary code with the rights of the user running the
application.
There is no known workaround at this time.
All xine-lib users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=media-libs/xine-lib-1.1.2-r3"
[ 1 ] CVE-2006-6172
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6172
This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:
http://security.gentoo.org/glsa/glsa-200612-02.xml
Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users machines is of utmost
importance to us. Any security concerns should be addressed to
security@gentoo.org or alternatively, you may file a bug at
http://bugs.gentoo.org .
Copyright 2006 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).
The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.
http://creativecommons.org/licenses/by-sa/2.5
Trustix Secure Linux
Trustix Secure Linux Security Advisory #2006-0070
Package names: gnupg, proftpd
Summary: Multiple vulnerabilities
Date: 2006-12-08
Affected versions: Trustix Secure Linux 2.2
Trustix Secure Linux 3.0
Trustix Operating System - Enterprise Server 2
Package description:
gnupg
GnuPG is a complete and free replacement for PGP. Because it does not
use IDEA it can be used without any restrictions. GnuPG is in
compliance with the OpenPGP specification (RFC2440 ).
proftpd
ProFTPd is an enhanced FTP server with a focus toward simplicity,
security, and ease of configuration. It features a very Apache-like
configuration syntax, and a highly customizable server infrastructure,
including support for multiple 'virtual' FTP servers, anonymous FTP,
and permission-based directory visibility.
Problem description:
gnupg < TSL 3.0 > < TSL 2.2 > < TSEL 2 >
New Upstream.
SECURITY Fix: Tavis Ormandy has reported a vulnerability in GnuPG,
caused due to an error within the decryption of malformed OpenPGP
messages. This can be exploited to corrupt memory when decrypting
a specially crafted OpenPGP message.
The Common Vulnerabilities and Exposures project (cve.mitre.org /)
has assigned the name CVE-2006-6235 to this issue.
proftpd < TSL 3.0 > < TSL 2.2 > < TSEL 2 >
New upstream.
SECURITY Fix: Stack-based buffer overflow in the sreplace function
allows remote attackers to cause a denial of service, as
demonstrated by vd_proftpd.pm, a "ProFTPD remote exploit."
The Common Vulnerabilities and Exposures project (cve.mitre.org /)
has assigned the name CVE-2006-5815 to this issue.
NOTE: In November 2006, the role of CommandBufferSize was originally
associated with CVE-2006-5815, but this was an error stemming from
an initial vague disclosure. Correct CVE: CVE-2006-6171.
Action:
We recommend that all systems with this package installed be upgraded.
Please note that if you do not need the functionality provided by this
package, you may want to remove it from your system.
Location:
All Trustix Secure Linux updates are available from
<URI:http://http.trustix.org/pub/trustix/updates/ >
<URI:ftp://ftp.trustix.org/pub/trustix/updates/ >
About Trustix Secure Linux:
Trustix Secure Linux is a small Linux distribution for servers. With focus
on security and stability, the system is painlessly kept safe and up to
date from day one using swup, the automated software updater.
Automatic updates:
Users of the SWUP tool can enjoy having updates automatically
installed using 'swup --upgrade'.
Questions?
Check out our mailing lists:
<URI:http://www.trustix.org/support/ >
Verification:
This advisory along with all Trustix packages are signed with the
TSL sign key.
This key is available from:
<URI:http://www.trustix.org/TSL-SIGN-KEY >
The advisory itself is available from the errata pages at
<URI:http://www.trustix.org/errata/trustix-2.2/ > and
<URI:http://www.trustix.org/errata/trustix-3.0/ >
or directly at
<URI:http://www.trustix.org/errata/2006/0070/ >
MD5sums of the packages:
ee2eef6713179355672262613d3403da 3.0/rpms/gnupg-1.4.6-1tr.i586.rpm
23d7fab414ea6fa3845a64769d4d2a32 3.0/rpms/gnupg-utils-1.4.6-1tr.i586.rpm
9df93256a549caaea20d633f94e58b7a 3.0/rpms/proftpd-1.3.0a-1tr.i586.rpm
502a38c702fc23c6276881cc94e58c25 2.2/rpms/gnupg-1.2.6-6tr.i586.rpm
889af38ab3db8e0108c7182741dad2ef 2.2/rpms/gnupg-utils-1.2.6-6tr.i586.rpm
05d9558463b738c5afb827d33e349b22 2.2/rpms/proftpd-1.2.10-12tr.i586.rpm
Trustix Security Team
Ubuntu
Ubuntu Security Notice USN-393-2 December 07, 2006
gnupg2 vulnerabilities
CVE-2006-6169, CVE-2006-6235
A security issue affects the following Ubuntu releases:
Ubuntu 6.10
This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.
The problem can be corrected by upgrading your system to the
following package versions:
Ubuntu 6.10:
gnupg2 1.9.21-0ubuntu5.2
In general, a standard system upgrade is sufficient to effect the
necessary changes.
Details follow:
USN-389-1 and USN-393-1 fixed vulnerabilities in gnupg. This update
provides the corresponding updates for gnupg2.
Original advisory details:
A buffer overflow was discovered in GnuPG. By tricking a user into
running gpg interactively on a specially crafted message, an attacker
could execute arbitrary code with the user's privileges. This
vulnerability is not exposed when running gpg in batch mode.
(CVE-2006-6169)
Tavis Ormandy discovered that gnupg was incorrectly using the stack.
If a user were tricked into processing a specially crafted message, an
attacker could execute arbitrary code with the user's privileges.
(CVE-2006-6235)
Updated packages for Ubuntu 6.10:
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gnupg2_1.9.21-0ubuntu5.2.diff.gz
Size/MD5: 39057 24885457e44f2061c1a2ef98047357d4
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gnupg2_1.9.21-0ubuntu5.2.dsc
Size/MD5: 839 5786619a42c6768da183ec2c39d70541
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gnupg2_1.9.21.orig.tar.gz
Size/MD5: 2290952 5a609db8ecc661fb299c0dccd84ad503
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg-agent_1.9.21-0ubuntu5.2_amd64.deb
Size/MD5: 193748 57618f27a79f42a3e9f66705ed0ab151
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg2_1.9.21-0ubuntu5.2_amd64.deb
Size/MD5: 787166 9641af8af591a9d61c3d9d77144aa320
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gpgsm_1.9.21-0ubuntu5.2_amd64.deb
Size/MD5: 333002 a6d5f35e4fc7dc4c6a837862b269ddc1
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg-agent_1.9.21-0ubuntu5.2_i386.deb
Size/MD5: 176170 3dc1e0b862fbf76905b61b20132812de
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg2_1.9.21-0ubuntu5.2_i386.deb
Size/MD5: 737818 ab6d004d7fbf1b0850e6f6f4f09771d4
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gpgsm_1.9.21-0ubuntu5.2_i386.deb
Size/MD5: 304798 1d6b309f0690685ffa95d219750033dc
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg-agent_1.9.21-0ubuntu5.2_powerpc.deb
Size/MD5: 190614 16cd71ed4d92b1203806ba50e638e9e0
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg2_1.9.21-0ubuntu5.2_powerpc.deb
Size/MD5: 773762 56903ee4d39929254b3a4ac06a56a2c5
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gpgsm_1.9.21-0ubuntu5.2_powerpc.deb
Size/MD5: 324332 6b9152bd5753f974161c298d6fd6f894
sparc architecture (Sun SPARC/UltraSPARC)
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg-agent_1.9.21-0ubuntu5.2_sparc.deb
Size/MD5: 174144 2e5e21144005113345e3abeef2b50496
http://security.ubuntu.com/ubuntu/pool/universe/g/gnupg2/gnupg2_1.9.21-0ubuntu5.2_sparc.deb
Size/MD5: 726244 5dc2d8b804a2a5276344b151a46e1346
http://security.ubuntu.com/ubuntu/pool/main/g/gnupg2/gpgsm_1.9.21-0ubuntu5.2_sparc.deb
Size/MD5: 297640 5c27421fb28c63abac748419a05220bb
Ubuntu Security Notice USN-394-1 December 08, 2006
ruby1.8 vulnerability
CVE-2006-6303
A security issue affects the following Ubuntu releases:
Ubuntu 5.10
Ubuntu 6.06 LTS
Ubuntu 6.10
This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.
The problem can be corrected by upgrading your system to the
following package versions:
Ubuntu 5.10:
libruby1.8 1.8.2-9ubuntu1.4
Ubuntu 6.06 LTS:
libruby1.8 1.8.4-1ubuntu1.3
Ubuntu 6.10:
libruby1.8 1.8.4-5ubuntu1.2
In general, a standard system upgrade is sufficient to effect the
necessary changes.
Details follow:
An error was found in Ruby's CGI library that did not correctly quote
the boundary of multipart MIME requests. Using a crafted HTTP request,
a remote user could cause a denial of service, where Ruby CGI
applications would end up in a loop, monopolizing a CPU.
Updated packages for Ubuntu 5.10:
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.2-9ubuntu1.4.diff.gz
Size/MD5: 895120 147af555104a6a38cd084bb2d6829b43
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.2-9ubuntu1.4.dsc
Size/MD5: 1030 f29857c00e806eb5e998893728594634
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.2.orig.tar.gz
Size/MD5: 3623780 4bc5254bec262d18cf1ceef03aae8bdf
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/irb1.8_1.8.2-9ubuntu1.4_all.deb
Size/MD5: 179094 52c8adf6c346b23e5f29486541dac125
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/rdoc1.8_1.8.2-9ubuntu1.4_all.deb
Size/MD5: 244146 8767914c75697629e39e84359d19e16a
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ri1.8_1.8.2-9ubuntu1.4_all.deb
Size/MD5: 719294 94aa64e938b6b5ac37b08880a5eaa427
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ruby1.8-elisp_1.8.2-9ubuntu1.4_all.deb
Size/MD5: 154454 0bb00f14f9fead6309e1662b25233d06
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ruby1.8-examples_1.8.2-9ubuntu1.4_all.deb
Size/MD5: 189130 a527d4eb777f700072ec1f5ca978f483
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 141964 715e26d77a5ac1b8a2286e81d5ae28df
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 143194 d6b06ad20e1f932d5724afb0c3d393f6
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 245094 4ee7e8f89795511daba6e7abf6f35dfb
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 142596 fe56369a390a1dc644d0bd6ea80784e6
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 1005748 0ca73c064ea3dc48b8d33c270777a1a2
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 1448452 c4c925f0ad3848743a7bdb7dcf6659f5
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 1463364 cc051c6da544bf6c654a4bc3159044ff
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 687028 c9d0897e1249cc17f481f0a657737125
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.2-9ubuntu1.4_amd64.deb
Size/MD5: 161362 35d03ad6dcbcaac8104f4d462d61430c
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 141240 01acf2174c9045824810659cc725364c
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 141800 f4c1eb2a4ac0485bbbd655e51558ea21
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 230876 72958e174746250419c045491ddfa25e
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 141596 a5e349fbcfe8511cd32e951dd53bb6ac
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 837602 b45bc82e59627a2bd2ec7792a6b1d119
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 1365798 bd4dd677dc077846372e6b2ff769a2ab
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 1453190 9b80503f3f102327e029bc5d5cb6ba92
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 632806 0bbb7061492ffaf1495db674882f45d3
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.2-9ubuntu1.4_i386.deb
Size/MD5: 161160 21b59072c75e22c7a1a388612c7b89d9
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 143510 2ff1f073efb10b901b90d02bcdf88dd1
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 144000 776066ba70a8cc8ea895728c835dab2a
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 236360 24b7e12b7f29543149c9e12a3bbfb1cf
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 143702 ce4de64fa81946bdc02d1bbb870d848b
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 995878 acf350e4f1c280c66f7c2bdeaa48590d
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 1451092 e564260c45f8245fd41f091e7736836c
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 1462726 7f1202201547e1dc256ec2596cb4f98e
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 649916 cb81db640c8a0404ca97572eaa7c16dd
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.2-9ubuntu1.4_powerpc.deb
Size/MD5: 163096 79cfbf95636e767e7e46f1a450b95d78
Updated packages for Ubuntu 6.06 LTS:
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-1ubuntu1.3.diff.gz
Size/MD5: 35494 2e06d61a3ae071ce6e33436787a62f36
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-1ubuntu1.3.dsc
Size/MD5: 1029 beb1bf46093b4892c71fb79b30e9e369
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4.orig.tar.gz
Size/MD5: 4308915 2994203e0815ea978965de34287c5ea2
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/irb1.8_1.8.4-1ubuntu1.3_all.deb
Size/MD5: 206754 d2b52d840e85942ff2494ada612c568e
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/rdoc1.8_1.8.4-1ubuntu1.3_all.deb
Size/MD5: 271610 b3141dd6c1722563b416356938dde094
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ri1.8_1.8.4-1ubuntu1.3_all.deb
Size/MD5: 756860 250551599ed94711c7630a20fe8e307a
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ruby1.8-elisp_1.8.4-1ubuntu1.3_all.deb
Size/MD5: 181510 bf91eb56a1c9b9c44c7780fabb9fd9d7
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ruby1.8-examples_1.8.4-1ubuntu1.3_all.deb
Size/MD5: 213762 f89016c3be6ed194a15be84a84ab6412
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 169188 c5bafdaf33b39e1732b3e68168a087e5
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 170370 48d78390619f61f23d1ba0f86485666a
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 273812 79d6ebcf20cb22d0886678c52cbb7f17
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 169824 093698e69b0f7f889db96bfb93b74d16
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 1041342 52706266727f798a11c04cd7d075a9cb
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 1506186 627bc3084f4737bd18f7358170a800c7
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 1797798 7f81fddf80ae18d35e5a9dada2f5c1f7
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 717388 c4650fbbd872d7726ca92fccf6aef7e2
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-1ubuntu1.3_amd64.deb
Size/MD5: 188750 cae616d7892a76190ed645d286252075
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 168362 f4b3a29bbccc2913c1379d58a3eb6a68
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 168950 0cb15b65a1f8df545756d5bfbdd7d5ef
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 258244 9db34679b517d9a121886f7368614cd5
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 168810 d3a49720119bdf144f56e06f2d66c593
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 870758 2ffd9092d83ce43a8ea12d561a5aa54f
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 1419924 65be41d4e34d042fa2c6230faf6dccb4
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 1789620 40a21760387b4f567c7a17b442975599
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 662342 2c77db7ebd7e427ddf4e9cbee9b3147d
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-1ubuntu1.3_i386.deb
Size/MD5: 188518 9bcdaec0ea9931f4755823ca6164dbd1
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 170626 93ec1afd0c86ebb82d614b7593db849c
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 171148 0a12b95ebfc2e2a5c5e94d3c7cefa010
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 264182 eeddb336317506f6603b835a79f1a11f
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 170916 cac9769a58b6342f8c3899be511c3ed5
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 1030968 c07e36a6d9ad82df253498429af90194
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 1507974 024b6a75642d9c980099fe5122db3926
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 1797652 f866baf3e948e8c0cb82f8bc42164a22
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 681354 6332169e99a1b8854f1fa49e222bbc39
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-1ubuntu1.3_powerpc.deb
Size/MD5: 190534 0c3eec195c2af1ae11622349013f1b02
sparc architecture (Sun SPARC/UltraSPARC)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 168468 2feee2e23f42bc51196a34dfe887534a
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 169308 065fbfef595dc1e71b7deb087112a9d3
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 266540 856186fcac41e884293be044dc3b11b9
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 169088 4123bcc0f25fe4176511d2a7cf49f753
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 914846 c1db94b7243763c8f7f81d6157d15f5d
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 1461434 b8b4a22294aa02db43d37d6236190cf3
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 1793722 0ebc01fbaa7c26d1ac92cf456352e1de
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 703112 d2de581e42b7924edc18d08738a60e43
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-1ubuntu1.3_sparc.deb
Size/MD5: 188756 563ae96a873592e356b9af469185c0d0
Updated packages for Ubuntu 6.10:
Source archives:
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-5ubuntu1.2.diff.gz
Size/MD5: 78132 d1054615aea1e6d8f5ce85a5aeca7a20
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-5ubuntu1.2.dsc
Size/MD5: 1056 1c9ecef57d6a54500e4c44eb54c4ab4b
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4.orig.tar.gz
Size/MD5: 4308915 2994203e0815ea978965de34287c5ea2
Architecture independent packages:
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/irb1.8_1.8.4-5ubuntu1.2_all.deb
Size/MD5: 209356 940cfd4f5adfebb97ebe6566d487b74d
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/rdoc1.8_1.8.4-5ubuntu1.2_all.deb
Size/MD5: 274256 97aacd569287256140ecb1f0baedeb7d
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ri1.8_1.8.4-5ubuntu1.2_all.deb
Size/MD5: 776630 53fcad620ec4804d6c1bdaab0e84d369
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ruby1.8-elisp_1.8.4-5ubuntu1.2_all.deb
Size/MD5: 184108 9176d3556a58a0ef1267bd4e7f194872
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/ruby1.8-examples_1.8.4-5ubuntu1.2_all.deb
Size/MD5: 216396 6e16e795deebf7c996a6cc486092c5b1
amd64 architecture (Athlon64, Opteron, EM64T Xeon)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 171788 7a1b57221e6d15bdf641d30140166e3e
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 172912 88e25578e336442ab5bc2dcb492b6773
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 276190 934eacca56349c916d8bffeebcde7440
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 172408 3fb4b79dbfe2a59b032556b6a09bddb3
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 1031924 04c179ab948ea9482edf29c83c4ec24e
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 1513768 c39e5b9efa1dbf2f6db5bae881e498c6
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 1799864 5cb8f2961b780786712e71ba524dab4a
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 720830 6a57f20eba15da71bcbc7291b213debf
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-5ubuntu1.2_amd64.deb
Size/MD5: 191360 f12ec94efca32e1f5d2e071741d4b50b
i386 architecture (x86 compatible Intel/AMD)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 171182 fe3ee1a862bc36bee2d2ac1d358a7d4b
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 171774 d19aabd75d984b4ce0e7a6827e7a48e9
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 263464 035daa12b3a422e75c476ecdd0aa8a8c
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 171544 b6a7e4a12be94ceac0fe32fb6465d20e
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 959940 207404c443999aa6f600b70506a39430
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 1450948 ab350df20b70a1d8bfe39abb6c1d6c25
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 1793708 3b1b202266d6f6c4802551b3865d4d48
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 682612 a328c822974314a358d324032efa7dbf
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-5ubuntu1.2_i386.deb
Size/MD5: 191132 52a0cc45a6c914d8266fc5edd0bf6648
powerpc architecture (Apple Macintosh G3/G4/G5)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 173318 f926720946b2df30c66c62f7a66aaba8
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 173864 04b680e0347869403a09cf9f630c9a55
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 267234 17a196d0c1b485cd571c42adfc77689d
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 173520 2dd8d2f8ce3c53c39fa820eaa2a9a0e0
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 1069614 2280c70cdf9d1c98f659b4a58ccca045
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 1520688 29af64f8ac3edc9a22c3d41df27ad5c7
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 1800718 4bdef6264f711486ae09988fd8871282
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 689070 42cebb7853832c61cc99ee7b4b9c02d8
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-5ubuntu1.2_powerpc.deb
Size/MD5: 193214 12971cfc5aea7409c5c380b53446c547
sparc architecture (Sun SPARC/UltraSPARC)
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libdbm-ruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 170924 6e57c642a819e0dc9b00a71585477865
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libgdbm-ruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 171704 476e1774fadd13553c6d64b21e27fd8c
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libopenssl-ruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 269338 139cd674bce5d4ed9d459741067ca5d4
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libreadline-ruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 171648 3c0e1b84f467a5e2694a274f6fc6a366
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8-dbg_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 923638 619c17b5ce815a73b947f1bd86226528
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/libruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 1472008 92f5af5dd58bcd09fc78325cadad002c
http://security.ubuntu.com/ubuntu/pool/universe/r/ruby1.8/libtcltk-ruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 1796578 eb84364062c5628ef87b1751bf3ad238
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8-dev_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 711580 3a6932c9f94dae9b94cca8fd06643b3b
http://security.ubuntu.com/ubuntu/pool/main/r/ruby1.8/ruby1.8_1.8.4-5ubuntu1.2_sparc.deb
Size/MD5: 191302 065b6e5984291cedcedcbb6ab8244f47