Accepted nagios-plugins 1.4.5-2ubuntu0.1 (source)
Ubuntu Installer
archive at ubuntu.com
Mon Oct 22 18:55:59 BST 2007
Accepted:
OK: nagios-plugins_1.4.5.orig.tar.gz
OK: nagios-plugins_1.4.5-2ubuntu0.1.diff.gz
OK: nagios-plugins_1.4.5-2ubuntu0.1.dsc
-> Component: universe Section: net
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Wed, 17 Oct 2007 15:26:20 -0400
Source: nagios-plugins
Binary: nagios-plugins nagios-plugins-basic nagios-plugins-standard
Architecture: source
Version: 1.4.5-2ubuntu0.1
Distribution: feisty-security
Urgency: low
Maintainer: Jamie Strandboge <jamie at ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
nagios-plugins - Plugins for the nagios network monitoring and management system
nagios-plugins-basic - Plugins for the nagios network monitoring and management system
nagios-plugins-standard - Plugins for the nagios network monitoring and management system
Launchpad-Bugs-Fixed: 152624 153697 153703
Changes:
nagios-plugins (1.4.5-2ubuntu0.1) feisty-security; urgency=low
.
* SECURITY UPDATE: denial of service via multiple HTTPS redirects
* debian/patches/28_SECURITY_LP153697.dpatch: set SSL context and SSL
connection to NULL in np_net_ssl_cleanup()
* SECURITY UPDATE: denial of service via multiple redirects
* debian/patches/29_SECURITY_LP153703.dpatch: fix off-by-one error to
re-allocate the proper amount of memory in redir()
* SECURITY UPDATE: denial of service and possible arbitrary code execution
as the user in check_http.c via crafted Location Header
* debian/patches/30_SECURITY_CVE-2007-5198.dpatch: properly validate
Location header in redir(). Thanks to Luca Falavigna for preliminary
patches.
* References
LP: #153697
LP: #153703
CVE-2007-5198
LP: #152624
* Modify Maintainer value to match the DebianMaintainerField
specification.
Files:
969174864e147fc08ac16c110705e9f7 1116 net extra nagios-plugins_1.4.5-2ubuntu0.1.dsc
944db37aa5bb13fa0aac39537103a505 24074 net extra nagios-plugins_1.4.5-2ubuntu0.1.diff.gz
Original-Maintainer: Debian Nagios Maintainer Group <pkg-nagios-devel at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHF8RPH/9LqRcGPm0RAiDQAJwNyCeoNRKUujP8UIV4vGtilWDD3QCglUoy
k3b4CueiniJMzSqnO50RP+g=
=Ecot
-----END PGP SIGNATURE-----
More information about the feisty-changes
mailing list