[ubuntu/karmic] fetchmail 6.3.9~rc2-4ubuntu3 (Accepted)
Kees Cook
kees at ubuntu.com
Thu Aug 13 23:00:18 BST 2009
fetchmail (6.3.9~rc2-4ubuntu3) karmic; urgency=low
* SECURITY UPDATE: SSL cert validation bypass via NULL bytes.
- add 06_cert_0_byte.patch, thanks to Nico Golde.
- CVE-2009-2666
Date: Thu, 13 Aug 2009 14:38:00 -0700
Changed-By: Kees Cook <kees at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/karmic/+source/fetchmail/6.3.9~rc2-4ubuntu3
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Thu, 13 Aug 2009 14:38:00 -0700
Source: fetchmail
Binary: fetchmail fetchmailconf
Architecture: source
Version: 6.3.9~rc2-4ubuntu3
Distribution: karmic
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Kees Cook <kees at ubuntu.com>
Description:
fetchmail - SSL enabled POP3, APOP, IMAP mail gatherer/forwarder
fetchmailconf - fetchmail configurator
Changes:
fetchmail (6.3.9~rc2-4ubuntu3) karmic; urgency=low
.
* SECURITY UPDATE: SSL cert validation bypass via NULL bytes.
- add 06_cert_0_byte.patch, thanks to Nico Golde.
- CVE-2009-2666
Checksums-Sha1:
c00ca3cf1eef1ccf8bdf19b3010c47cf81116a39 1497 fetchmail_6.3.9~rc2-4ubuntu3.dsc
e63ddd6a17f46d405c311f167a5d0bfd0596d95e 49654 fetchmail_6.3.9~rc2-4ubuntu3.diff.gz
Checksums-Sha256:
3ccb7de670b46d882628e43933977fa0a72cc71e8f7e19c7186efe7fbdb0b5fb 1497 fetchmail_6.3.9~rc2-4ubuntu3.dsc
a41828d26db0c7f1e656bcf3f1d319d7d0d1abe755bbffae8da7f64dd93ab231 49654 fetchmail_6.3.9~rc2-4ubuntu3.diff.gz
Files:
d8cc7b58021f7453f82ec89f7db5d1b7 1497 mail optional fetchmail_6.3.9~rc2-4ubuntu3.dsc
8fa3e30cddc2ce5a96a2c69abaab2770 49654 mail optional fetchmail_6.3.9~rc2-4ubuntu3.diff.gz
Original-Maintainer: Fetchmail Maintainers <pkg-fetchmail-maint at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Kees Cook <kees at outflux.net>
iEYEARECAAYFAkqEiwEACgkQH/9LqRcGPm3F1gCfdpcark8K1qTFctiQuy5YTR9Z
DYIAn3f4bl7KyGeYozC9IbT7EbTCs7H4
=drAt
-----END PGP SIGNATURE-----
More information about the Karmic-changes
mailing list