[ubuntu/raring-proposed] squid3 3.1.20-1ubuntu3 (Accepted)

Jamie Strandboge jamie at ubuntu.com
Wed Feb 6 22:10:20 UTC 2013


squid3 (3.1.20-1ubuntu3) raring-proposed; urgency=low

  * fix FTBFS with newer glibc (LP: #1117517)

squid3 (3.1.20-1ubuntu2) raring-proposed; urgency=low

  [ Seth Arnold ]
  * SECURITY UPDATE: denial of service via cachemgr.cgi insufficient input
    validation
    - debian/patches/98-CVE-2012-5643.patch: modify cachemgr.cc to properly
      free memory and handle input in chunks
    - Based on
      http://www.squid-cache.org/Versions/v3/3.1/changesets/SQUID-2012_1.patch
    - CVE-2012-5643
    - CVE-2013-0189

Date: Wed, 06 Feb 2013 11:37:29 -0600
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/raring/+source/squid3/3.1.20-1ubuntu3
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Wed, 06 Feb 2013 11:37:29 -0600
Source: squid3
Binary: squid3 squid3-dbg squid3-common squidclient squid-cgi squid squid-common
Architecture: source
Version: 3.1.20-1ubuntu3
Distribution: raring-proposed
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description: 
 squid      - dummy transitional package from squid to squid3
 squid-cgi  - Full featured Web Proxy cache (HTTP proxy) - control CGI
 squid-common - dummy transitional package from squid-common to squid3-common
 squid3     - Full featured Web Proxy cache (HTTP proxy)
 squid3-common - Full featured Web Proxy cache (HTTP proxy) - common files
 squid3-dbg - Full featured Web Proxy cache (HTTP proxy) - Debug symbols
 squidclient - Full featured Web Proxy cache (HTTP proxy) - control utility
Launchpad-Bugs-Fixed: 1117517
Changes: 
 squid3 (3.1.20-1ubuntu3) raring-proposed; urgency=low
 .
   * fix FTBFS with newer glibc (LP: #1117517)
 .
 squid3 (3.1.20-1ubuntu2) raring-proposed; urgency=low
 .
   [ Seth Arnold ]
   * SECURITY UPDATE: denial of service via cachemgr.cgi insufficient input
     validation
     - debian/patches/98-CVE-2012-5643.patch: modify cachemgr.cc to properly
       free memory and handle input in chunks
     - Based on
       http://www.squid-cache.org/Versions/v3/3.1/changesets/SQUID-2012_1.patch
     - CVE-2012-5643
     - CVE-2013-0189
Checksums-Sha1: 
 7f6ac700a7d11c86bf64f4ec67fd0b1bcbab1d82 2251 squid3_3.1.20-1ubuntu3.dsc
 b286554f54691a385b4c9fd8f6313408f4450830 27606 squid3_3.1.20-1ubuntu3.debian.tar.gz
Checksums-Sha256: 
 981cdce306a4fe24839fa70fb25a7b90ae870401089f8f05c130f938946bb543 2251 squid3_3.1.20-1ubuntu3.dsc
 1506a7396f55b84564fe3e44d1258696e25bff589eb1125e0be560e701c6ee8b 27606 squid3_3.1.20-1ubuntu3.debian.tar.gz
Files: 
 6c8c9380f8d0550712eb17a3ef91bff7 2251 web optional squid3_3.1.20-1ubuntu3.dsc
 a41f6461bdc63c11cf4408241d7b2f48 27606 web optional squid3_3.1.20-1ubuntu3.debian.tar.gz
Original-Maintainer: Luigi Gangitano <luigi at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
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=qXhi
-----END PGP SIGNATURE-----


More information about the Raring-changes mailing list