From: Russ Allbery Date: Fri, 1 Mar 2013 22:10:57 +0000 (-0800) Subject: Add CVEs and finalize changes for 1.4.12.1+dfsg-4+squeeze1 X-Git-Tag: debian/1.4.12.1+dfsg-4+squeeze1^0 X-Git-Url: https://git.michaelhowe.org/gitweb/?a=commitdiff_plain;h=69a91176a94a8fe0f50ab46a6de0596c145975c4;p=packages%2Fo%2Fopenafs.git Add CVEs and finalize changes for 1.4.12.1+dfsg-4+squeeze1 --- diff --git a/debian/changelog b/debian/changelog index 30e617062..e355e74a1 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,13 +1,13 @@ -openafs (1.4.12.1+dfsg-4+squeeze1) UNRELEASED; urgency=high +openafs (1.4.12.1+dfsg-4+squeeze1) stable-security; urgency=high * Apply upstream security patches: - OPENAFS-SA-2013-001: Fix fileserver buffer overflow when parsing client-supplied ACL entries and protect against client parsing of - bad ACL entries. + bad ACL entries. (CVE-2013-1794) - OPENAFS-SA-2013-002: Fix ptserver buffer overflow via integer - overflow in the IdToName RPC. + overflow in the IdToName RPC. (CVE-2013-1795) - -- Russ Allbery Sun, 24 Feb 2013 15:07:45 -0800 + -- Russ Allbery Fri, 01 Mar 2013 14:10:52 -0800 openafs (1.4.12.1+dfsg-4) stable-security; urgency=high