lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <874oqn7iu9.fsf@mid.deneb.enyo.de>
Date: Mon, 28 Sep 2009 05:13:02 +0000
From: Florian Weimer <fw@...eb.enyo.de>
To: debian-security-announce@...ts.debian.org
Subject: [SECURITY] [DSA 1896-1] New Shibboleth 1.x
	packages fix potential code execution

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
Debian Security Advisory DSA-1896-1                  security@...ian.org
http://www.debian.org/security/                           Florian Weimer
September 28, 2009                    http://www.debian.org/security/faq
- ------------------------------------------------------------------------

Package        : opensaml, shibboleth-sp
Vulnerability  : several
Problem type   : remote
Debian-specific: no

Several vulnerabilities have been discovered in the opensaml and
shibboleth-sp packages, as used by Shibboleth 1.x:

Chris Ries discovered that decoding a crafted URL leads to a crash
(and potentially, arbitrary code execution).

Ian Young discovered that embedded NUL characters in certificate names
were not correctly handled, exposing configurations using PKIX trust
validation to impersonation attacks.

Incorrect processing of SAML metadata ignored key usage constraints.

For the old stable distribution (etch), these problems have been fixed
in version 1.3f.dfsg1-2+etch1 of the shibboleth-sp packages, and
version 1.1a-2+etch1 of the opensaml packages.

For the stable distribution (lenny), these problems have been fixed in
version 1.3.1.dfsg1-3+lenny1 of the shibboleth-sp packages, and
version 1.1.1-2+lenny1 of the opensaml packages.

The unstable distribution (sid) does not contain Shibboleth 1.x
packages.

This update requires restarting the affected services (mainly Apache)
to become effective.

We recommend that you upgrade your Shibboleth 1.x packages.

Upgrade instructions
- --------------------

wget url
        will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
        will update the internal database
apt-get upgrade
        will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 4.0 alias etch
- -------------------------------

Source archives:

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/shibboleth-sp_1.3f.dfsg1.orig.tar.gz
    Size/MD5 checksum:   731365 7aba8f84ff20013dea55a4a34306791a
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/shibboleth-sp_1.3f.dfsg1-2+etch1.diff.gz
    Size/MD5 checksum:    33253 3bd951730a7e805ef8b436f785f3cd0f
  http://security.debian.org/pool/updates/main/o/opensaml/opensaml_1.1a.orig.tar.gz
    Size/MD5 checksum:   431727 e50f19dc742bdb6669f823f76f9ced12
  http://security.debian.org/pool/updates/main/o/opensaml/opensaml_1.1a-2+etch1.dsc
    Size/MD5 checksum:      774 22bd6bcc0595e9ae32b141121bbc10f7
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/shibboleth-sp_1.3f.dfsg1-2+etch1.dsc
    Size/MD5 checksum:      956 dc51ee8bc956d49960ec5c9566cba5c4
  http://security.debian.org/pool/updates/main/o/opensaml/opensaml_1.1a-2+etch1.diff.gz
    Size/MD5 checksum:    11333 485ae33e08081e21c2b882f2052a86be

Architecture independent packages:

  http://security.debian.org/pool/updates/main/o/opensaml/opensaml-schemas_1.1a-2+etch1_all.deb
    Size/MD5 checksum:    18224 7c7bfa1ccfb3546ca93dd5d9d5c4e063

alpha architecture (DEC Alpha)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_alpha.deb
    Size/MD5 checksum:  4213748 163d12435a9d2aeb6ab04881505e2516
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_alpha.deb
    Size/MD5 checksum:    81534 f7edfe0e99da4333235ba81a985fb8bf
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_alpha.deb
    Size/MD5 checksum:   696796 dbb83c6cc8940ea882d8607a36ade762
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_alpha.deb
    Size/MD5 checksum:   598238 cb8f286ce0602a99dcc5fa3458bf327f
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_alpha.deb
    Size/MD5 checksum:   266878 a87d8d1658c82a1896b31f8e1df7b42c
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_alpha.deb
    Size/MD5 checksum:   216822 262f2ab64eea644f32080482aca89011

amd64 architecture (AMD x86_64 (AMD64))

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_amd64.deb
    Size/MD5 checksum:   254730 540965288e3c18644b73581a7d038836
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_amd64.deb
    Size/MD5 checksum:   457632 33e4e01a715453122313f4933e8aae91
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_amd64.deb
    Size/MD5 checksum:   199936 e94b92835ce264bdca4e54f82bb76ff7
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_amd64.deb
    Size/MD5 checksum:  4010366 b59b88fcb41352ce912c7f44955f775b
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_amd64.deb
    Size/MD5 checksum:    78030 e7e69e0033e89524cbf8ba25634023ae
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_amd64.deb
    Size/MD5 checksum:   532752 894ac4d6adf5703e943e3cb1b1072b92

arm architecture (ARM)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_arm.deb
    Size/MD5 checksum:  3777528 9989b00c8326f222256f8f46a65c74b8
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_arm.deb
    Size/MD5 checksum:    77196 60c2bc0ab8b4f5034abb6c21e33c7aaa
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_arm.deb
    Size/MD5 checksum:   223042 d33d8562da6ae3720d1d6aa02a1823c9
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_arm.deb
    Size/MD5 checksum:   514478 95f2761ef51692c6a1d6b2c519ffba91
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_arm.deb
    Size/MD5 checksum:   463620 879e3626c904d7198f03049234d46946
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_arm.deb
    Size/MD5 checksum:   273508 4a9d1b5430978e71aa4583ec21f96c3f

hppa architecture (HP PA RISC)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_hppa.deb
    Size/MD5 checksum:  4679424 db915e52c2c823fae20484394ba521cb
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_hppa.deb
    Size/MD5 checksum:   522396 247db63ef43d6d1048e6c4dedbfaba73
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_hppa.deb
    Size/MD5 checksum:    91184 1709973026fc93ff503deddbef41dd89
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_hppa.deb
    Size/MD5 checksum:   596584 9f22cc623b1ab1c3e3eb2de2522dfd42
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_hppa.deb
    Size/MD5 checksum:   301744 09985e9a8c6b223b56b888d1b32b398f
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_hppa.deb
    Size/MD5 checksum:   235542 1f371f8e56344a62d00a69aa91c36576

i386 architecture (Intel ia32)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_i386.deb
    Size/MD5 checksum:   248282 0bd1e63846ba5902f12ee31fbca528bf
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_i386.deb
    Size/MD5 checksum:   200024 0b5a97fd1caaa56b0384a1a069ce158d
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_i386.deb
    Size/MD5 checksum:   463948 fea42fa963a77abddff862f40b31e342
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_i386.deb
    Size/MD5 checksum:    76496 6c34f34e98ae20f0a420060066a34e03
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_i386.deb
    Size/MD5 checksum:   432572 27fff2e9abffa2b6529ff76a6dc11b27
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_i386.deb
    Size/MD5 checksum:  3712852 598dac6ecb406b14898e5fc96704d179

ia64 architecture (Intel ia64)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_ia64.deb
    Size/MD5 checksum:   328990 f2ff30853842e1eab5d139bef0c01406
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_ia64.deb
    Size/MD5 checksum:  4277884 8675194a6a212b929b1544d7e755fc89
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_ia64.deb
    Size/MD5 checksum:   604906 b3dd35a5c261e46b4688f522a2b7f02c
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_ia64.deb
    Size/MD5 checksum:   724736 7e5fa1e19454bfc9822552bb5154e6c3
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_ia64.deb
    Size/MD5 checksum:   259222 15ccae6b22309ec0a91e4ef36068c78b
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_ia64.deb
    Size/MD5 checksum:    93472 e283dc8e7a5bcb87426fcac730958e94

mips architecture (MIPS (Big Endian))

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_mips.deb
    Size/MD5 checksum:  4016362 10dd91a43e5a5fd468c6f102c0973767
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_mips.deb
    Size/MD5 checksum:   536580 a0bdaafe6366433c84a4508b29e41c9c
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_mips.deb
    Size/MD5 checksum:   224574 9e67d353f4cc0a4d619c363b0e3d9967
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_mips.deb
    Size/MD5 checksum:   476104 3c432dca117c2e577612c51b2b7ac0c7
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_mips.deb
    Size/MD5 checksum:   188328 73efedea837c29707b744c7aab101c1a
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_mips.deb
    Size/MD5 checksum:    75240 12b61da1869ac5c318b2a9bb97a22ef8

mipsel architecture (MIPS (Little Endian))

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_mipsel.deb
    Size/MD5 checksum:   472096 0ed513bf4d7568d035e24a246bd50694
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_mipsel.deb
    Size/MD5 checksum:    74370 ed002c8a0c40727e221d715c2ac1e033
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_mipsel.deb
    Size/MD5 checksum:   221462 5a24cdd32b716e744db626ad17aa3fa0
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_mipsel.deb
    Size/MD5 checksum:   186504 e039d61e2a453113410a1cae8594ed21
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_mipsel.deb
    Size/MD5 checksum:  3732306 0c85f2c5473418b265bb9755af197290
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_mipsel.deb
    Size/MD5 checksum:   534528 ef9c9f0d70e00f276832f23a46ef0eca

powerpc architecture (PowerPC)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_powerpc.deb
    Size/MD5 checksum:   255062 99f99c1b8f79a79d175ab1966e7387a6
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_powerpc.deb
    Size/MD5 checksum:   202260 4bb195d368a5d1f6a2af992dfa241384
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_powerpc.deb
    Size/MD5 checksum:   469792 dcb85747b2105e5849a90386784c9dde
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_powerpc.deb
    Size/MD5 checksum:    80684 dd696fbee223be128076cef55a3450b2
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_powerpc.deb
    Size/MD5 checksum:  4642136 560be601670db786ca6986a4c5b11fc2
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_powerpc.deb
    Size/MD5 checksum:   534858 0581265e630c65e1fa31cb25f244f08a

s390 architecture (IBM S/390)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_s390.deb
    Size/MD5 checksum:   430412 d9bfabdbcf80fafb6c5629f8446c0d56
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_s390.deb
    Size/MD5 checksum:    78328 1fef35291a3f48748596cbeb1cdff8d6
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_s390.deb
    Size/MD5 checksum:   483636 4e4357c7403c2ba50ac9cd19f4fe4676
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_s390.deb
    Size/MD5 checksum:   200666 06c4d8186e6e89483953ac8fbdd03cb8
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_s390.deb
    Size/MD5 checksum:   249148 9127403b1eca88b3f2f6820bb77bb80f
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_s390.deb
    Size/MD5 checksum:  4877224 5984d72266a363ae9413faee6fd8b8e8

sparc architecture (Sun SPARC/UltraSPARC)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1a-2+etch1_sparc.deb
    Size/MD5 checksum:   449890 6210e0f8cd956af7bab6be45662b99f2
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3f.dfsg1-2+etch1_sparc.deb
    Size/MD5 checksum:    78194 2ca8c956f7f5117bf3443daa91b473de
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3f.dfsg1-2+etch1_sparc.deb
    Size/MD5 checksum:   207732 15a1502934774b07a575434ea426e6d7
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3f.dfsg1-2+etch1_sparc.deb
    Size/MD5 checksum:  4009972 b2d57a4c676a9d010b03a289c22a7244
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3f.dfsg1-2+etch1_sparc.deb
    Size/MD5 checksum:   415430 9393fa4bc9c516b7310561f94f41a492
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1a-2+etch1_sparc.deb
    Size/MD5 checksum:   266926 4f11952953848794a26667f39267ee7f

Debian GNU/Linux 5.0 alias lenny
- --------------------------------

Source archives:

  http://security.debian.org/pool/updates/main/o/opensaml/opensaml_1.1.1-2+lenny1.dsc
    Size/MD5 checksum:     1366 b86467a26869776e722ce30440e1d819
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/shibboleth-sp_1.3.1.dfsg1-3+lenny1.diff.gz
    Size/MD5 checksum:    30356 b055345581eadf17a1f169e9ac31f474
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/shibboleth-sp_1.3.1.dfsg1-3+lenny1.dsc
    Size/MD5 checksum:     1591 957e199b8371dd0b00b354b6b6464fba
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/shibboleth-sp_1.3.1.dfsg1.orig.tar.gz
    Size/MD5 checksum:   761686 996ac4370cd8cb91528169c1e2c337b6
  http://security.debian.org/pool/updates/main/o/opensaml/opensaml_1.1.1-2+lenny1.diff.gz
    Size/MD5 checksum:     7389 7b5379a66508b144e270885bd1e9d92f
  http://security.debian.org/pool/updates/main/o/opensaml/opensaml_1.1.1.orig.tar.gz
    Size/MD5 checksum:   438888 ee41f4e9df56dcbf11cfbd331ccb3c33

Architecture independent packages:

  http://security.debian.org/pool/updates/main/o/opensaml/opensaml-schemas_1.1.1-2+lenny1_all.deb
    Size/MD5 checksum:    16584 5f3aec473fa8e096cb356f9531a51944

alpha architecture (DEC Alpha)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_alpha.deb
    Size/MD5 checksum:   570478 0064c40f6cfbeed3d7cd1e8dce82ef2c
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_alpha.deb
    Size/MD5 checksum:   264642 ded9741b64ad2d5d94cc748e039c2cbb
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_alpha.deb
    Size/MD5 checksum:  4114894 1b671b7de7c7032e7cf0b15af87aff80
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_alpha.deb
    Size/MD5 checksum:    84068 ce2e3265f0868be0caf5af135bf8aece
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_alpha.deb
    Size/MD5 checksum:   671004 58941edb21bc372f78ce0984ead885eb
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_alpha.deb
    Size/MD5 checksum:   215870 fdd2820f7a7b560f5d79b9e96e82028c

amd64 architecture (AMD x86_64 (AMD64))

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_amd64.deb
    Size/MD5 checksum:   529752 6dddff7985f8a09f3a73f8ca58b0f81e
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_amd64.deb
    Size/MD5 checksum:  3828070 4a26133a6061d7373f6ee2ffc783e72d
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_amd64.deb
    Size/MD5 checksum:    81566 657781abb0aaa17b4ed4b4f9a42d7d1f
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_amd64.deb
    Size/MD5 checksum:   453062 1ed51567695f1e4afeac10877a391868
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_amd64.deb
    Size/MD5 checksum:   199726 64a85330c7106407f1ce285f54a26c14
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_amd64.deb
    Size/MD5 checksum:   245838 685c691550d0473c731daab44442cc53

arm architecture (ARM)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_arm.deb
    Size/MD5 checksum:   260572 26ce4b9bbe5aea67b6105b51c77ee9cc
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_arm.deb
    Size/MD5 checksum:    77308 85dd2bb8175dced5338ac8c9d080a386
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_arm.deb
    Size/MD5 checksum:   212394 762687e60e85bec2674d3b41c37b9adb
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_arm.deb
    Size/MD5 checksum:   452956 ae19402868d98f8705016f2fe7210c48
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_arm.deb
    Size/MD5 checksum:  3574656 e17e9a7abc47543dc52606685ddb219a
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_arm.deb
    Size/MD5 checksum:   521856 b7ffdbc397309b45715373e3416e646f

armel architecture (ARM EABI)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_armel.deb
    Size/MD5 checksum:   537604 cca076e6deaf6abb981b0e62bf103de2
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_armel.deb
    Size/MD5 checksum:    69568 006f332e71d77a7e8ce5edc117585e19
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_armel.deb
    Size/MD5 checksum:   212206 a9a73402fb64e0dae0fd861c8a8d7174
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_armel.deb
    Size/MD5 checksum:  3545260 9cc30eaf07a6c0fbaecabd195da1ad8d
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_armel.deb
    Size/MD5 checksum:   183948 6d308d06e6268db6cc2891f091259264
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_armel.deb
    Size/MD5 checksum:   474536 fe33c0e4d47b181a3f6f6b12de2601b6

hppa architecture (HP PA RISC)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_hppa.deb
    Size/MD5 checksum:   534844 66c2df80346c00df3dac9c04ad2ef21d
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_hppa.deb
    Size/MD5 checksum:   231562 e526ac2599014ac0e49606091185f6b6
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_hppa.deb
    Size/MD5 checksum:    88534 b579c1a7a2bf5a2e1c4feb67ad3f89f8
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_hppa.deb
    Size/MD5 checksum:  4481416 67d1b53bca5cf5378c1ad20121dffacd
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_hppa.deb
    Size/MD5 checksum:   609964 6eae1e35593291a27838add21b56a97f
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_hppa.deb
    Size/MD5 checksum:   277922 ebc3841acf010ddbe4706ba18dd108c4

i386 architecture (Intel ia32)

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_i386.deb
    Size/MD5 checksum:   235018 4183ca2b34313e89756a07126504149b
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_i386.deb
    Size/MD5 checksum:   461486 b718ffd86a246a59ff866ba0d5ab110b
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_i386.deb
    Size/MD5 checksum:    78522 02ee34906281e3e4b7a361b95ac92756
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_i386.deb
    Size/MD5 checksum:   421360 e4c83085f5a4f14156d24aff2b4b48f2
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_i386.deb
    Size/MD5 checksum:  3512518 5824ef05fb06f828505c2d31fcc6dae3
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_i386.deb
    Size/MD5 checksum:   197712 3b688248585cdb7f4d80496a84898585

ia64 architecture (Intel ia64)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_ia64.deb
    Size/MD5 checksum:  4079512 ed21b29411e791cb2499a5ef3c03d179
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_ia64.deb
    Size/MD5 checksum:   254988 b2985627a91bfe5bb2ab0d2463984beb
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_ia64.deb
    Size/MD5 checksum:    95494 0c12ad763edaa9b6787868b4a9b17335
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_ia64.deb
    Size/MD5 checksum:   614000 d21c74bc9476d10864a58db749b9faf7
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_ia64.deb
    Size/MD5 checksum:   312272 ca906b0cb6daa2192559acbb9d4be723
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_ia64.deb
    Size/MD5 checksum:   740808 e015a0f990e940fa2f4b33e9bac2f0ee

mips architecture (MIPS (Big Endian))

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_mips.deb
    Size/MD5 checksum:    73472 5820b96b6b055a0353800b5a167c2490
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_mips.deb
    Size/MD5 checksum:  3843674 f9bd03f91b39af48b90937c954865cfc
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_mips.deb
    Size/MD5 checksum:   182712 a27a07605f2a374d4625734b5f52fb31
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_mips.deb
    Size/MD5 checksum:   468592 cd39a6952d24c676f08eafd6e9a54879
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_mips.deb
    Size/MD5 checksum:   206454 c18307158579c4d3b7121934ad4de128
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_mips.deb
    Size/MD5 checksum:   529544 14966b3fa637b536972467e3dda07e2d

mipsel architecture (MIPS (Little Endian))

  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_mipsel.deb
    Size/MD5 checksum:   527452 cccb1f72008327e55ba06d71d3abfbd0
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_mipsel.deb
    Size/MD5 checksum:   464518 4d38eec34aa0bbf2f229a177889ea208
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_mipsel.deb
    Size/MD5 checksum:   204272 8808ee52b375c97ba05dc289bafbaf9f
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_mipsel.deb
    Size/MD5 checksum:    72474 cb6617564612fcbd674cd70219044bb5
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_mipsel.deb
    Size/MD5 checksum:  3552676 73f9280e8fca47c4debd7b99296933d8
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_mipsel.deb
    Size/MD5 checksum:   181236 3e2dcc75c96bde32048d366755857884

powerpc architecture (PowerPC)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_powerpc.deb
    Size/MD5 checksum:   459630 6890a51ea1bc393bda3f22ae025ac2d7
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_powerpc.deb
    Size/MD5 checksum:   256724 dc151e4520c7e767e1ba3448934c9940
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_powerpc.deb
    Size/MD5 checksum:  4442856 59059d2ada4109a7c6ec23fb5088976e
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_powerpc.deb
    Size/MD5 checksum:    86896 6d4e2857d901c94ffc042e5aab57eca6
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_powerpc.deb
    Size/MD5 checksum:   527128 575747eb33674254e708f44183ec8324
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_powerpc.deb
    Size/MD5 checksum:   202502 e1945a601c88a2f763704901668136b8

s390 architecture (IBM S/390)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_s390.deb
    Size/MD5 checksum:   426924 b2feb6bb4c9fd4512554505eb4b1aec7
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_s390.deb
    Size/MD5 checksum:  4713254 47a7835d86f851394756996b1ba26f88
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_s390.deb
    Size/MD5 checksum:   196564 43596f19224ab8b1059a9fdf977485b2
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_s390.deb
    Size/MD5 checksum:   237512 a25c0215766d2cc5b886cb0a85c7efce
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_s390.deb
    Size/MD5 checksum:    80530 303148b4589923b884ef7b05a2bb24d7
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_s390.deb
    Size/MD5 checksum:   487858 aa308546e71beb4d2e159194ef234d8d

sparc architecture (Sun SPARC/UltraSPARC)

  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-dev_1.3.1.dfsg1-3+lenny1_sparc.deb
    Size/MD5 checksum:   405956 7aaab378031ac0aaf5014258d97fb2fb
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml-dev_1.1.1-2+lenny1_sparc.deb
    Size/MD5 checksum:   446804 0bef4d16dd18591a5e21ceec41e22fd5
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libapache2-mod-shib_1.3.1.dfsg1-3+lenny1_sparc.deb
    Size/MD5 checksum:  3808046 7a6ddb5bc6f2df5bbcde728910eb5c06
  http://security.debian.org/pool/updates/main/o/opensaml/libsaml5_1.1.1-2+lenny1_sparc.deb
    Size/MD5 checksum:   256040 6caccdaead0f751d8b68220832c80316
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib-target5_1.3.1.dfsg1-3+lenny1_sparc.deb
    Size/MD5 checksum:   205298 7b87815fa4ac49308063ab2bef905ea0
  http://security.debian.org/pool/updates/main/s/shibboleth-sp/libshib6_1.3.1.dfsg1-3+lenny1_sparc.deb
    Size/MD5 checksum:    80204 984ff2e7357ed789e28456e9e9bbb5e6


  These files will probably be moved into the stable distribution on
  its next update.

- ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@...ts.debian.org
Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iQEcBAEBAgAGBQJKwEaQAAoJEL97/wQC1SS+/SkH/jsssFNSmXescYE8XvT8VUEZ
4mdK5Bk/t5YIWtixPPKVbxYOGA7Q58hNOoMrGYrlzdmgT5CshNdaebHZ5x04xw1P
DVK3RBIv1G2uDoX4DZ5prZ6Uw+6QdQyEU7MkXJPE7IobULQGsa4f8PczabGP0SQo
MejrvFFt182zGgwhPSaxNSgd+BhEZmSr+SOZCUZqgK13TdwOn0sTo3c4aU5YHNIm
b0mC67EfLjJIzJOUrSrvkyttu8wrouZ9h397j4MUQAxbPAQ8gPW6t/eOd/bc5aae
83XASMnwxIXrliWV+B+78a7zxuDHE/YYx7qJg2VVfR8aZ/YbqK0elqsSsfS+kVw=
=8SAx
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ