<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<id>tag:old.nabble.com,2006:forum-41</id>
	<title>Nabble - Debian Security</title>
	<updated>2009-11-09T10:03:05Z</updated>
	<link rel="self" type="application/atom+xml" href="http://old.nabble.com/Debian-Security-f41.xml" />
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-Security-f41.html" />
	<subtitle type="html"></subtitle>
	
<entry>
	<id>tag:old.nabble.com,2006:post-26270949</id>
	<title>Please test gnutls13 update for etch</title>
	<published>2009-11-09T10:03:05Z</published>
	<updated>2009-11-09T10:03:05Z</updated>
	<author>
		<name>Giuseppe Iuculano-3</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;I've prepared updated packages for gnutls13 in etch fixing CVE-2009-2730 and
&lt;br&gt;CVE-2009-2409.
&lt;br&gt;It would be helpful, if people could install these packages and check whether
&lt;br&gt;they notice any regressions.
&lt;br&gt;&lt;br&gt;Packages are available at &lt;a href=&quot;http://people.debian.org/~iuculano/gnutls13/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://people.debian.org/~iuculano/gnutls13/&lt;/a&gt;&lt;br&gt;Please send feedback to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26270949&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;iuculano@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;Giuseppe.
&lt;br&gt;&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;signature.asc&lt;/strong&gt; (205 bytes) &lt;a href=&quot;http://old.nabble.com/attachment/26270949/0/signature.asc&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Please-test-gnutls13-update-for-etch-tp26270949p26270949.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26266428</id>
	<title>Re: problem with security mirror?</title>
	<published>2009-11-09T05:30:04Z</published>
	<updated>2009-11-09T05:30:04Z</updated>
	<author>
		<name>Yves-Alexis Perez-2</name>
	</author>
	<content type="html">Thijs Kinkhorst a écrit :
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; On Sun, November 8, 2009 13:34, Yves-Alexis Perez wrote:
&lt;br&gt;&amp;gt;&amp;gt; Hey,
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; apt-get update on my lenny box gives the following warning:
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; W: GPG error: &lt;a href=&quot;http://security.debian.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org&lt;/a&gt;&amp;nbsp;lenny/updates Release: The
&lt;br&gt;&amp;gt;&amp;gt; following signatures were invalid: BADSIG 9AA38DCD55BE302B Debian
&lt;br&gt;&amp;gt;&amp;gt; Archive Automatic Signing Key (5.0/lenny) &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26266428&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ftpmaster@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Do we have some info about that?
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; I don't have that problem here. Which specific mirror (IP-address) is this?
&lt;br&gt;&amp;gt; 
&lt;/div&gt;&lt;br&gt;Hmhm, sorry for not updating, the problems has been fixed yesterday
&lt;br&gt;after asking on irc (not exactly sure what was the problem but Ganneff
&lt;br&gt;said it was ok and the problem indeed disappeared :) )
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Yves-Alexis
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26266428&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26266428&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/problem-with-security-mirror--tp26253358p26266428.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26263912</id>
	<title>Re: [DSA-1929-1] linux-2.6 -- privilege escalation/denial of service Error while Upgrading Kernel</title>
	<published>2009-11-09T01:57:00Z</published>
	<updated>2009-11-09T01:57:00Z</updated>
	<author>
		<name>Werner Detter-2</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;Problem solved - somebody just deleted /usr/share/initramfs-tools *doh*
&lt;br&gt;&lt;br&gt;:-)
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263912&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263912&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-DSA-1916-1--New-kdelibs-packages-tp26204998p26263912.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26263501</id>
	<title>Re: problem with security mirror?</title>
	<published>2009-11-09T01:39:56Z</published>
	<updated>2009-11-09T01:39:56Z</updated>
	<author>
		<name>Thijs Kinkhorst-4</name>
	</author>
	<content type="html">On Sun, November 8, 2009 13:34, Yves-Alexis Perez wrote:
&lt;br&gt;&amp;gt; Hey,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; apt-get update on my lenny box gives the following warning:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; W: GPG error: &lt;a href=&quot;http://security.debian.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org&lt;/a&gt;&amp;nbsp;lenny/updates Release: The
&lt;br&gt;&amp;gt; following signatures were invalid: BADSIG 9AA38DCD55BE302B Debian
&lt;br&gt;&amp;gt; Archive Automatic Signing Key (5.0/lenny) &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263501&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ftpmaster@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Do we have some info about that?
&lt;br&gt;&lt;br&gt;I don't have that problem here. Which specific mirror (IP-address) is this?
&lt;br&gt;&lt;br&gt;&lt;br&gt;Thijs
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263501&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263501&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/problem-with-security-mirror--tp26253358p26263501.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26263394</id>
	<title>[DSA-1929-1] linux-2.6 -- privilege escalation/denial of service Error while Upgrading Kernel</title>
	<published>2009-11-09T01:04:13Z</published>
	<updated>2009-11-09T01:04:13Z</updated>
	<author>
		<name>Werner Detter-2</name>
	</author>
	<content type="html">Hi everybody,
&lt;br&gt;&lt;br&gt;did anybody run into the same problems on AMD-architecture?
&lt;br&gt;&lt;br&gt;&amp;lt;- *snip* -&amp;gt;
&lt;br&gt;server:/usr/local/apache2/conf/extra# apt-get upgrade
&lt;br&gt;Reading package lists... Done
&lt;br&gt;Building dependency tree... Done
&lt;br&gt;0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded.
&lt;br&gt;1 not fully installed or removed.
&lt;br&gt;Need to get 0B of archives.
&lt;br&gt;After unpacking 0B of additional disk space will be used.
&lt;br&gt;Do you want to continue [Y/n]? y
&lt;br&gt;Setting up linux-image-2.6.18-6-amd64 (2.6.18.dfsg.1-26etch1) ...
&lt;br&gt;&lt;br&gt;VERSION 2.0
&lt;br&gt;&lt;br&gt;CAPB backup
&lt;br&gt;&lt;br&gt;Running depmod.
&lt;br&gt;&lt;br&gt;Finding valid ramdisk creators.
&lt;br&gt;Using mkinitramfs-kpkg to build the ramdisk.
&lt;br&gt;/usr/sbin/mkinitramfs: line 80: /usr/share/initramfs-tools/scripts/functions: No such file or directory
&lt;br&gt;mkinitramfs-kpkg failed to create initrd image.
&lt;br&gt;Failed to create initrd image.
&lt;br&gt;dpkg: error processing linux-image-2.6.18-6-amd64 (--configure):
&lt;br&gt;&amp;nbsp;subprocess post-installation script returned error exit status 9
&lt;br&gt;Errors were encountered while processing:
&lt;br&gt;&amp;nbsp;linux-image-2.6.18-6-amd64
&lt;br&gt;E: Sub-process /usr/bin/dpkg returned an error code (1)
&lt;br&gt;&lt;br&gt;&amp;lt;- *snap* -&amp;gt;
&lt;br&gt;&lt;br&gt;Thanks,
&lt;br&gt;Werner
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263394&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263394&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263394&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26263394&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-DSA-1916-1--New-kdelibs-packages-tp26204998p26263394.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26253358</id>
	<title>problem with security mirror?</title>
	<published>2009-11-08T04:34:34Z</published>
	<updated>2009-11-08T04:34:34Z</updated>
	<author>
		<name>Yves-Alexis Perez-2</name>
	</author>
	<content type="html">Hey,
&lt;br&gt;&lt;br&gt;apt-get update on my lenny box gives the following warning:
&lt;br&gt;&lt;br&gt;W: GPG error: &lt;a href=&quot;http://security.debian.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org&lt;/a&gt;&amp;nbsp;lenny/updates Release: The
&lt;br&gt;following signatures were invalid: BADSIG 9AA38DCD55BE302B Debian
&lt;br&gt;Archive Automatic Signing Key (5.0/lenny) &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26253358&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ftpmaster@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&lt;br&gt;Do we have some info about that?
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;-- 
&lt;br&gt;Yves-Alexis
&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;signature.asc&lt;/strong&gt; (205 bytes) &lt;a href=&quot;http://old.nabble.com/attachment/26253358/0/signature.asc&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/problem-with-security-mirror--tp26253358p26253358.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26237160</id>
	<title>Re: [DSA 1916-1] New kdelibs packages</title>
	<published>2009-11-06T11:06:18Z</published>
	<updated>2009-11-06T11:06:18Z</updated>
	<author>
		<name>Thilo Six</name>
	</author>
	<content type="html">Steffen Joeris wrote the following on 06.11.2009 05:23
&lt;br&gt;&lt;br&gt;&amp;lt;- *snip* -&amp;gt;
&lt;br&gt;&lt;br&gt;&amp;gt; I have installed them into the archive just now, the security mirrors are 
&lt;br&gt;&amp;gt; still syncing, so it should be available within the day.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Cheers
&lt;br&gt;&amp;gt; Steffen
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;lt;- *snip* -&amp;gt;
&lt;br&gt;The following packages will be upgraded:
&lt;br&gt;&amp;nbsp; &amp;nbsp;kdelibs (3.5.10.dfsg.1-0lenny2 =&amp;gt; 3.5.10.dfsg.1-0lenny3)
&lt;br&gt;.
&lt;br&gt;.
&lt;br&gt;&lt;br&gt;&amp;lt;- *snip* -&amp;gt;
&lt;br&gt;&lt;br&gt;Thanks a lot.
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;bye Thilo
&lt;br&gt;&lt;br&gt;4096R/0xC70B1A8F
&lt;br&gt;721B 1BA0 095C 1ABA 3FC6 &amp;nbsp;7C18 89A4 A2A0 C70B 1A8F
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26237160&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26237160&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-DSA-1916-1--New-kdelibs-packages-tp26204998p26237160.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26237374</id>
	<title>Re: Please test pidgin update</title>
	<published>2009-11-06T10:47:19Z</published>
	<updated>2009-11-06T10:47:19Z</updated>
	<author>
		<name>Moritz Muehlenhoff</name>
	</author>
	<content type="html">On Fri, Nov 06, 2009 at 03:58:55PM +0100, Julien Cristau wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; On Mon, Nov &amp;nbsp;2, 2009 at 20:08:15 +0100, Moritz Muehlenhoff wrote:
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; &amp;gt; I've prepared updated packages for pidgin fixing CVE-2009-3615.
&lt;br&gt;&amp;gt; &amp;gt; However, I need testers who actually use ICQ. Packages are available
&lt;br&gt;&amp;gt; &amp;gt; at &lt;a href=&quot;http://people.debian.org/~jmm/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://people.debian.org/~jmm/&lt;/a&gt;&amp;nbsp;for amd64 and i386. Please send
&lt;br&gt;&amp;gt; &amp;gt; feedback directly to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26237374&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;jmm@...&lt;/a&gt;
&lt;br&gt;&amp;gt; &amp;gt; 
&lt;br&gt;&amp;gt; Hi Moritz,
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; libpurple0 seems to be missing, and the pidgin package depends on it, so
&lt;br&gt;&amp;gt; these packages are not installable. &amp;nbsp;Forgot to copy it?
&lt;/div&gt;&lt;br&gt;Doh, fixed.
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Moritz
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26237374&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26237374&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Please-test-pidgin-update-tp26169131p26237374.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26233373</id>
	<title>Re: Please test pidgin update</title>
	<published>2009-11-06T06:58:55Z</published>
	<updated>2009-11-06T06:58:55Z</updated>
	<author>
		<name>Julien Cristau-6</name>
	</author>
	<content type="html">On Mon, Nov &amp;nbsp;2, 2009 at 20:08:15 +0100, Moritz Muehlenhoff wrote:
&lt;br&gt;&lt;br&gt;&amp;gt; I've prepared updated packages for pidgin fixing CVE-2009-3615.
&lt;br&gt;&amp;gt; However, I need testers who actually use ICQ. Packages are available
&lt;br&gt;&amp;gt; at &lt;a href=&quot;http://people.debian.org/~jmm/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://people.debian.org/~jmm/&lt;/a&gt;&amp;nbsp;for amd64 and i386. Please send
&lt;br&gt;&amp;gt; feedback directly to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26233373&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;jmm@...&lt;/a&gt;
&lt;br&gt;&amp;gt; 
&lt;br&gt;Hi Moritz,
&lt;br&gt;&lt;br&gt;libpurple0 seems to be missing, and the pidgin package depends on it, so
&lt;br&gt;these packages are not installable. &amp;nbsp;Forgot to copy it?
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;Julien
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26233373&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26233373&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Please-test-pidgin-update-tp26169131p26233373.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26226759</id>
	<title>Re: [DSA 1916-1] New kdelibs packages</title>
	<published>2009-11-05T20:23:46Z</published>
	<updated>2009-11-05T20:23:46Z</updated>
	<author>
		<name>Steffen Joeris</name>
	</author>
	<content type="html">On Thu, 5 Nov 2009 08:25:23 am Thilo Six wrote:
&lt;div class='shrinkable-quote'&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hello security members
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; DSA 1916-1 has been announced on 23rd of october but still there are no
&lt;br&gt;&amp;gt; packages available on the mirrors.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; The DSA said:
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; &amp;lt;- *snip* -&amp;gt;
&lt;br&gt;&amp;gt; Due to a bug in the archive system, the fix for the stable distribution
&lt;br&gt;&amp;gt; (lenny), will be released as version 4:3.5.10.dfsg.1-0lenny3 once it is
&lt;br&gt;&amp;gt; available.
&lt;br&gt;&amp;gt; &amp;lt;- *snip* -&amp;gt;
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Is there a possibility for a user to know the progress of this?
&lt;br&gt;&amp;gt; Should i post to debian-devel-kde instead?
&lt;/div&gt;I have installed them into the archive just now, the security mirrors are 
&lt;/div&gt;still syncing, so it should be available within the day.
&lt;br&gt;&lt;br&gt;Cheers
&lt;br&gt;Steffen
&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;signature.asc&lt;/strong&gt; (205 bytes) &lt;a href=&quot;http://old.nabble.com/attachment/26226759/0/signature.asc&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-DSA-1916-1--New-kdelibs-packages-tp26204998p26226759.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26222606</id>
	<title>Re: [SECURITY] [DSA 1927-1] New Linux 2.6.26 packages fix several  vulnerabilities</title>
	<published>2009-11-05T13:32:46Z</published>
	<updated>2009-11-05T13:32:46Z</updated>
	<author>
		<name>john -3</name>
	</author>
	<content type="html">Hi all,
&lt;br&gt;&lt;br&gt;&amp;gt;&amp;gt; Additional information about this change, including instructions for
&lt;br&gt;&amp;gt;&amp;gt; making this change locally in advance of 5.0.4 (recommended), can be
&lt;br&gt;&amp;gt;&amp;gt; found at:
&lt;br&gt;&amp;gt;&amp;gt;  &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&lt;br&gt;The wiki entry only shows mitigations for 5.x versions of Debian. It
&lt;br&gt;would be helpful if it also mentioned that
&lt;br&gt;the mitigation steps for etch (e.g. none so far as I know) and etchnhalf.
&lt;br&gt;&lt;br&gt;Thanks for considering this.
&lt;br&gt;&lt;br&gt;John
&lt;br&gt;&lt;br&gt;&lt;br&gt;--
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26222606&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26222606&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A--SECURITY---DSA-1927-1--New-Linux-2.6.26-packages-fix-several--vulnerabilities-tp26220234p26222606.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26220234</id>
	<title>Re: [SECURITY] [DSA 1927-1] New Linux 2.6.26 packages fix several  vulnerabilities</title>
	<published>2009-11-05T10:31:03Z</published>
	<updated>2009-11-05T10:31:03Z</updated>
	<author>
		<name>Leonardo Couto Chueri</name>
	</author>
	<content type="html">Atualizar kernel seja qual for tua distribuição. Da uma olhadela no null pointer dereference acima. Mes retrasado houve um problema similar em drivers de protocolo de rede.&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;div class=&quot;gmail_quote&quot;&gt;2009/11/5 dann frazier &lt;span dir=&quot;ltr&quot;&gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26220234&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;dannf@...&lt;/a&gt;&amp;gt;&lt;/span&gt;&lt;br&gt;
&lt;blockquote class=&quot;gmail_quote&quot; style=&quot;border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;&quot;&gt;-----BEGIN PGP SIGNED MESSAGE-----&lt;br&gt;
Hash: SHA1&lt;br&gt;
&lt;br&gt;
- ----------------------------------------------------------------------&lt;br&gt;
Debian Security Advisory DSA-1927-1                &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26220234&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;&lt;br&gt;
&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;                           dann frazier&lt;br&gt;
November 5, 2009                    &lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;
- ----------------------------------------------------------------------&lt;br&gt;
&lt;br&gt;
Package        : linux-2.6&lt;br&gt;
Vulnerability  : privilege escalation/denial of service/sensitive memory leak&lt;br&gt;
Problem type   : local&lt;br&gt;
Debian-specific: no&lt;br&gt;
CVE Id(s)      : CVE-2009-3228 CVE-2009-3238 CVE-2009-3547 CVE-2009-3612&lt;br&gt;
                 CVE-2009-3620 CVE-2009-3621 CVE-2009-3638&lt;br&gt;
&lt;br&gt;
Notice: Debian 5.0.4, the next point release of Debian &amp;#39;lenny&amp;#39;, will&lt;br&gt;
include a new default value for the mmap_min_addr tunable.  This&lt;br&gt;
change will add an additional safeguard against a class of security&lt;br&gt;
vulnerabilities known as &amp;quot;NULL pointer dereference&amp;quot; vulnerabilities,&lt;br&gt;
but it will need to be overridden when using certain applications.&lt;br&gt;
Additional information about this change, including instructions for&lt;br&gt;
making this change locally in advance of 5.0.4 (recommended), can be&lt;br&gt;
found at:&lt;br&gt;
  &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
Several vulnerabilities have been discovered in the Linux kernel that&lt;br&gt;
may lead to a denial of service, sensitive memory leak or privilege&lt;br&gt;
escalation.  The Common Vulnerabilities and Exposures project&lt;br&gt;
identifies the following problems:&lt;br&gt;
&lt;br&gt;
CVE-2009-3228&lt;br&gt;
&lt;br&gt;
    Eric Dumazet reported an instance of uninitialized kernel memory&lt;br&gt;
    in the network packet scheduler. Local users may be able to&lt;br&gt;
    exploit this issue to read the contents of sensitive kernel&lt;br&gt;
    memory.&lt;br&gt;
&lt;br&gt;
CVE-2009-3238&lt;br&gt;
&lt;br&gt;
    Linus Torvalds provided a change to the get_random_int() function&lt;br&gt;
    to increase its randomness.&lt;br&gt;
&lt;br&gt;
CVE-2009-3547&lt;br&gt;
&lt;br&gt;
    Earl Chew discovered a NULL pointer dereference issue in the&lt;br&gt;
    pipe_rdwr_open function which can be used by local users to gain&lt;br&gt;
    elevated privileges.&lt;br&gt;
&lt;br&gt;
CVE-2009-3612&lt;br&gt;
&lt;br&gt;
    Jiri Pirko discovered a typo in the initialization of a structure&lt;br&gt;
    in the netlink subsystem that may allow local users to gain access&lt;br&gt;
    to sensitive kernel memory.&lt;br&gt;
&lt;br&gt;
CVE-2009-3620&lt;br&gt;
&lt;br&gt;
    Ben Hutchings discovered an issue in the DRM manager for ATI Rage&lt;br&gt;
    128 graphics adapters. Local users may be able to exploit this&lt;br&gt;
    vulnerability to cause a denial of service (NULL pointer&lt;br&gt;
    dereference).&lt;br&gt;
&lt;br&gt;
CVE-2009-3621&lt;br&gt;
&lt;br&gt;
    Tomoki Sekiyama discovered a deadlock condition in the UNIX domain&lt;br&gt;
    socket implementation. Local users can exploit this vulnerability&lt;br&gt;
    to cause a denial of service (system hang).&lt;br&gt;
&lt;br&gt;
CVE-2009-3638&lt;br&gt;
&lt;br&gt;
    David Wagner reported an overflow in the KVM subsystem on i386&lt;br&gt;
    systems. This issue is exploitable by local users with access to&lt;br&gt;
    the /dev/kvm device file.&lt;br&gt;
&lt;br&gt;
For the stable distribution (lenny), this problem has been fixed in&lt;br&gt;
version 2.6.26-19lenny2.&lt;br&gt;
&lt;br&gt;
For the oldstable distribution (etch), these problems, where&lt;br&gt;
applicable, will be fixed in updates to linux-2.6 and linux-2.6.24.&lt;br&gt;
&lt;br&gt;
We recommend that you upgrade your linux-2.6 and user-mode-linux&lt;br&gt;
packages.&lt;br&gt;
&lt;br&gt;
Note: Debian carefully tracks all known security issues across every&lt;br&gt;
linux kernel package in all releases under active security support.&lt;br&gt;
However, given the high frequency at which low-severity security&lt;br&gt;
issues are discovered in the kernel and the resource requirements of&lt;br&gt;
doing an update, updates for lower priority issues will normally not&lt;br&gt;
be released for all kernels at the same time. Rather, they will be&lt;br&gt;
released in a staggered or &amp;quot;leap-frog&amp;quot; fashion.&lt;br&gt;
&lt;br&gt;
The following matrix lists additional source packages that were&lt;br&gt;
rebuilt for compatibility with or to take advantage of this update:&lt;br&gt;
&lt;br&gt;
                                             Debian 5.0 (lenny)&lt;br&gt;
     user-mode-linux                         2.6.26-1um-2+19lenny2&lt;br&gt;
&lt;br&gt;
Upgrade instructions&lt;br&gt;
- --------------------&lt;br&gt;
&lt;br&gt;
wget url&lt;br&gt;
        will fetch the file for you&lt;br&gt;
dpkg -i file.deb&lt;br&gt;
        will install the referenced file.&lt;br&gt;
&lt;br&gt;
If you are using the apt-get package manager, use the line for&lt;br&gt;
sources.list as given below:&lt;br&gt;
&lt;br&gt;
apt-get update&lt;br&gt;
        will update the internal database&lt;br&gt;
apt-get upgrade&lt;br&gt;
        will install corrected packages&lt;br&gt;
&lt;br&gt;
You may use an automated update by adding the resources from the&lt;br&gt;
footer to the proper configuration.&lt;br&gt;
&lt;br&gt;
Debian GNU/Linux 5.0 alias lenny&lt;br&gt;
- --------------------------------&lt;br&gt;
&lt;br&gt;
Stable updates are available for alpha, amd64, armel, hppa, i386,&lt;br&gt;
ia64, and powerpc. Updates for other architectures will be released&lt;br&gt;
as they become available.&lt;br&gt;
&lt;br&gt;
Source archives:&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-2.6_2.6.26-19lenny2.dsc&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-2.6_2.6.26-19lenny2.dsc&lt;/a&gt;&lt;br&gt;
    Size/MD5 checksum:     5778 8ea6c47c6f227f855a41deea57d988d8&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-2.6_2.6.26-19lenny2.diff.gz&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-2.6_2.6.26-19lenny2.diff.gz&lt;/a&gt;&lt;br&gt;
    Size/MD5 checksum:  7651053 5cf749f9817436c544df97bc0217f125&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-2.6_2.6.26.orig.tar.gz&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-2.6_2.6.26.orig.tar.gz&lt;/a&gt;&lt;br&gt;
    Size/MD5 checksum: 61818969 85e039c2588d5bf3cb781d1c9218bbcb&lt;br&gt;
&lt;br&gt;
Architecture independent packages:&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-tree-2.6.26_2.6.26-19lenny2_all.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-tree-2.6.26_2.6.26-19lenny2_all.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106866 d25eeb65132ec68406d8fdf7ea340274&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-doc-2.6.26_2.6.26-19lenny2_all.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-doc-2.6.26_2.6.26-19lenny2_all.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  4627374 196ffe954d4e906638c7eb2bd22e310d&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-patch-debian-2.6.26_2.6.26-19lenny2_all.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-patch-debian-2.6.26_2.6.26-19lenny2_all.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  2565284 0682418bd83f755a17a71435e535f91a&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-source-2.6.26_2.6.26-19lenny2_all.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-source-2.6.26_2.6.26-19lenny2_all.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 48672074 5aa4d0110919b100a772509455b22757&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-manual-2.6.26_2.6.26-19lenny2_all.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-manual-2.6.26_2.6.26-19lenny2_all.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  1768032 cb95ea5101339c35d425ac1ba2f0ff02&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-support-2.6.26-2_2.6.26-19lenny2_all.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-support-2.6.26-2_2.6.26-19lenny2_all.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   122160 0d3dd77a86989aa6e6bdfbbf548d22a6&lt;br&gt;
&lt;br&gt;
alpha architecture (DEC Alpha)&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-alpha_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-alpha_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106376 891beea699175e77b6f4cdb1dbbd2377&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-alpha-generic_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-alpha-generic_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   363880 278fefb639e7029af6d5017dedefb500&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-alpha-generic_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-alpha-generic_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 28487296 beb21f0f222b507898406b051d161c25&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106358 b4c10db49252b22e7019746743624712&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   741234 b08b288693ab9d0d3fa1e8141ba4f038&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-alpha-legacy_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-alpha-legacy_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 28471478 f412fb78f0dfac51f6e39a035538fe91&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-alpha-smp_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-alpha-smp_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   365312 9147bf190b4dce64fb4783b0c0aba8be&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-alpha-legacy_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-alpha-legacy_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   364408 66cd6736f72c0eedabbad596baac8888&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-alpha-smp_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-alpha-smp_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 29177668 abb9bcc21a5fcb0a7352a30fb7209ca1&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_alpha.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_alpha.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3543732 d84be29426f1d706617a6ad91d3b6109&lt;br&gt;
&lt;br&gt;
amd64 architecture (AMD x86_64 (AMD64))&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   389134 2ac60b6aaece8351c023cecbb4bd41ee&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   749556 c994eeb54dd967b5255448e80fa4911c&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   389740 8b6b5b10fe023670ca8cf9326d46ccd0&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-openvz-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-openvz-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   394262 8398b2d9ce752ffa39ac55b8f55fa1b7&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3719144 1fa20cc556fbfecdf0c2335a3c9edeee&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106352 edb758613531f5c655c8451f1136b62a&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106378 dd749481c75a66f517551c6b21b3bbbb&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-modules-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-modules-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 19274410 21621e01b880d1f222007e3101d255c6&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-openvz-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-openvz-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 21053742 015990eedbce234dfa4facdf02f6ad60&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-xen_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-xen_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3851500 355a9cc7757195196006160929313e78&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20902812 3af1d1431ff5674b7aeaf41c784d3ba6&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3751848 f5289bf2c22a6112d13a9af6d4291226&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  1804900 8ea5afa2f5e29175e92975ef93144b9a&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/xen-linux-system-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/xen-linux-system-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106334 2620974dbbc17bbab4aefe183584a6da&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-openvz_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-openvz_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3774804 8fa1254acec879820c17dd8e2e4eee56&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20886016 71a1f29b66ee30cf7a63b77cddc71ec7&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-xen-amd64_2.6.26-19lenny2_amd64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   383280 0d0cad637c14a594b3ae424abf824608&lt;br&gt;
&lt;br&gt;
armel architecture (ARM EABI)&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-iop32x_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-iop32x_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   365550 f97d5bcae3c5c5957781e6507d730780&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-iop32x_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-iop32x_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 12396344 04df2ffe832cba3ea1e299701069ca96&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-versatile_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-versatile_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   335184 ff1387cae5afb9c7b2d8b20ab546293f&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  4136850 e7e7742e3ead70e194f540432bf93ba6&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   747792 89242eec0e6f453f37b228ddb49e4e26&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-ixp4xx_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-ixp4xx_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 11680082 d9133e003cd603924930f1db870c6d46&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106354 fce271c39eaa874f6a570b9298a13836&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-versatile_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-versatile_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  9575158 d8c6ec6842339c8d8391916c7b4a25c2&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-orion5x_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-orion5x_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 11371016 edc9b10b99e73302ef1853db546ed6bb&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-ixp4xx_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-ixp4xx_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   363118 ca61af313ac3687b042c82e4c56bd078&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-armel_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-armel_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106390 d14317d669c70ea8458b0138105be3e0&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-orion5x_2.6.26-19lenny2_armel.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-orion5x_2.6.26-19lenny2_armel.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   360844 1c7437e1e4de9358f7975feae74501f0&lt;br&gt;
&lt;br&gt;
hppa architecture (HP PA RISC)&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc64_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc64_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 17070158 92d872205303ea622d1419d074b54737&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   296434 df3ddd0a0dbfa712201ff031bfc109c0&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc-smp_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc-smp_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 16323830 9998a4deead3033e07f28a1cd0816136&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc64_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc64_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   297894 8cace7fc519c562d4b8657c75d230815&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3594236 8d621635c43fb9540d4a68ef6d891a57&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106356 f967499d62622f5f0833539c9eaf2359&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-hppa_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-hppa_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106380 f518c1de9ce8dd272db1afa30e38999a&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 15731364 d50829b0556bc7fef6e8c505db959ee2&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   759840 faab7849f3cef86fbebc037cbd00fd76&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc64-smp_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-parisc64-smp_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 17614856 6311929870350217721f7f194b6ff585&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc64-smp_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc64-smp_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   299160 57fd97b01842bbe74e37f443e346d695&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc-smp_2.6.26-19lenny2_hppa.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-parisc-smp_2.6.26-19lenny2_hppa.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   298110 631076db8957d15ab8b0161a60e31734&lt;br&gt;
&lt;br&gt;
i386 architecture (Intel ia32)&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-486_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-486_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   398182 6f93bf37534bcfb9162b9985b83ee38f&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-openvz-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-openvz-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20502134 d39255c90c67fddda4c3cb49ce6c93e1&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20235868 99b3ed110df3b6b2bb6b06feb9d30b72&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106354 835280ec5ad990b0bcebb988953bd5d9&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-686-bigmem_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-686-bigmem_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20326344 9192cd01f84e7192159aefec2c4f8fb9&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20208578 c118b5d6fc4f5007728d1ab804624cd8&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   398052 88be8c6ce0726c87f3127e1ea8b1a382&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-486_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-486_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20175038 ee7bf2ce4d4557f9fdfb53790627ebac&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3719206 0d8393bd6245aa3d23ef8938477d5f63&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-686-bigmem_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-686-bigmem_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20353680 67f48fcd0835fd230e8583cf2676cf09&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-686-bigmem_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-686-bigmem_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   398494 bf4ef1c3e9f35ec4dc0bfaeda1ee5516&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-xen_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-xen_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3851592 94a16944e91f5594a6fa02115b680434&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-686-bigmem_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-686-bigmem_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   400332 d734fb2f035f0a6a041d13f5a3d95c6c&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   749582 26580da1f40ffeeb17146765bbe241f8&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/xen-linux-system-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/xen-linux-system-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106348 b76709d63441fcc3e285d2a6dc999890&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-amd64_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-amd64_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 20864938 cc5255ece9764242c63b522abfd8a517&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   399328 c929aa19b40e7eea5ea885148c645a17&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3751908 3b936dbeaf13b730ab8dd56e5ab726f9&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-amd64_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-amd64_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   387338 03fd54819fb7176a176eeb4c2ff0209c&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-openvz-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-openvz-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   403790 efa7179643f2f709cace01bb3f4a5580&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-openvz_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-openvz_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3774936 088f38a8e9c79bb4ddc67e200ebee754&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  1591850 93ad5d17c9e8ac22c3544c8a9ad9eabd&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   384698 5cc9137a10772a48628b0014e0dbbc15&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-i386_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-i386_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106404 04d07f928e22a2150a2bb9188c6f1257&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-modules-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-modules-2.6.26-2-xen-686_2.6.26-19lenny2_i386.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 18035618 641b34424aad0e9291713bd9e2bf96e5&lt;br&gt;
&lt;br&gt;
ia64 architecture (Intel ia64)&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-itanium_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-itanium_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   355640 2bce0c1faefc019460e3eebca333a5fc&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3654768 d8fb31f9660b7c0ab42c77e89bf82f1f&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-itanium_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-itanium_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   355064 cfb3eee78e3860b2e650716d5032bf5d&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3687386 2980814479dbd08d39bd9f92d3005838&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-mckinley_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-mckinley_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   355046 62fc734ea7fe9bc4bef1f8d8b65cc027&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-mckinley_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-mckinley_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 34349456 5cfb3ccf034f0ce13a5861507c4cb758&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-itanium_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-itanium_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 34103026 3cee486177d22e2fcd816b536d7ac3d3&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106350 6265837dd3c0105bcba9d40c5b6966f9&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-mckinley_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-mckinley_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   355698 27152c116ad66c7862f3890d36ac80ab&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-mckinley_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-mckinley_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 34288678 1540b7be96fbb68e4cc01d858c5ef5a4&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-ia64_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-ia64_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106384 bfb7eeaec3d89587561c56afec1816e9&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-itanium_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-itanium_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 34165098 7a4fbe457d07807a74e9950a47975d49&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_ia64.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_ia64.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   748220 03f583157c7eef60269042b9a5a6d0bc&lt;br&gt;
&lt;br&gt;
powerpc architecture (PowerPC)&lt;br&gt;
&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106358 5431bb9d2abe49fc1b186f44bf440cba&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-libc-dev_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   756032 fb287119a4cf07ef9d6d633ad30f7236&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-powerpc64_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-powerpc64_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   372504 9c0501a81bf32b1d0b8c939830d9789b&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-powerpc_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-powerpc_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 23650232 ece0b68e6c9baa2e0f964d2bc7da21a2&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3856256 5a6eb8c2fe7930456cf5f3a1c257fed1&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-powerpc64_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-vserver-powerpc64_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 23514630 0aa445df9e479dc6e266a97658c5c675&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-powerpc64_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-powerpc64_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 23453120 7fdf0e57cb3324433e8f5d3e71c5cb7c&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-powerpc-smp_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-powerpc-smp_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 23619598 7eb565a76c6ab3318d32c134f7da26b0&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-powerpc-smp_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-powerpc-smp_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   366586 3e8f8e0d8d9dc83a3e009bbdcca04d21&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-common-vserver_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:  3890668 a75da89a00e2b5118869888ea03580ae&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-powerpc64_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-powerpc64_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   373766 78d152d9edb14f5d179dde50a0131ea7&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-powerpc_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-vserver-powerpc_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   366686 4b13a456e727a9259685b74132c5b730&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-powerpc_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-all-powerpc_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   106396 33f493756428189d3acc36bde21631ed&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-powerpc_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-headers-2.6.26-2-powerpc_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum:   365950 4149c4f9e6f3e0dc0fbb639a2f962cf8&lt;br&gt;
  &lt;a href=&quot;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-powerpc_2.6.26-19lenny2_powerpc.deb&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/l/linux-2.6/linux-image-2.6.26-2-powerpc_2.6.26-19lenny2_powerpc.deb&lt;/a&gt;&lt;br&gt;

    Size/MD5 checksum: 23216978 b0034a3be5877f2edebf6ec71c70a83e&lt;br&gt;
&lt;br&gt;
  These files will probably be moved into the stable distribution on&lt;br&gt;
  its next update.&lt;br&gt;
&lt;br&gt;
- ---------------------------------------------------------------------------------&lt;br&gt;
For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt; stable/updates main&lt;br&gt;
For dpkg-ftp: &lt;a href=&quot;ftp://security.debian.org/debian-security&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;ftp://security.debian.org/debian-security&lt;/a&gt; dists/stable/updates/main&lt;br&gt;
Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26220234&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;&lt;br&gt;
Package info: `apt-cache show &amp;lt;pkg&amp;gt;&amp;#39; and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_blank&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;&lt;br&gt;
-----BEGIN PGP SIGNATURE-----&lt;br&gt;
Version: GnuPG v1.4.10 (GNU/Linux)&lt;br&gt;
&lt;br&gt;
iD8DBQFK8vsShuANDBmkLRkRAuztAKCAAmojb32U5ekaEbI3lWTPLYayHQCfQwhe&lt;br&gt;
vHrSbR3EZNHJzNEAXPK0XqY=&lt;br&gt;
=Synp&lt;br&gt;
-----END PGP SIGNATURE-----&lt;br&gt;
&lt;font color=&quot;#888888&quot;&gt;&lt;br&gt;
&lt;br&gt;
--&lt;br&gt;
To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26220234&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce-REQUEST@...&lt;/a&gt;&lt;br&gt;
with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26220234&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
&lt;/font&gt;&lt;/blockquote&gt;&lt;/div&gt;&lt;br&gt;&lt;br clear=&quot;all&quot;&gt;&lt;br&gt;-- &lt;br&gt; _&lt;br&gt;(0-    Leonardo Couto Chueri    :    &lt;a href=&quot;http://lcchueri.esperanto.eti.br/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://lcchueri.esperanto.eti.br/&lt;/a&gt;&lt;br&gt;//\&lt;br&gt;V_/_   &lt;a href=&quot;http://www.esperanto.net/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.esperanto.net/&lt;/a&gt;     &lt;a href=&quot;http://www.esperanto.org.br/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.esperanto.org.br/&lt;/a&gt;&lt;br&gt;
_______________________________________________________________________________&lt;br&gt;Mi apogas la uzadon de Libera Softvaro, Linux-o kaj Esperanto.&lt;br&gt;Esperanto, criado para o propósito de ser a segunda língua de cada povo.&lt;br&gt;

</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A--SECURITY---DSA-1927-1--New-Linux-2.6.26-packages-fix-several--vulnerabilities-tp26220234p26220234.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26211019</id>
	<title>Re: to:  Henri Salvo</title>
	<published>2009-11-05T00:29:58Z</published>
	<updated>2009-11-05T00:29:58Z</updated>
	<author>
		<name>Vladislav Kurz</name>
	</author>
	<content type="html">On Wednesday 04 of November 2009, Bernie Dolan wrote:
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I tried to send a copy of the file to you but got the following error:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26211019&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;henri@...&lt;/a&gt;
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; SMTP error from remote mail server after RCPT TO:&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26211019&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;henri@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; host kiwai.nerv.fi [213.157.65.70]: 554 5.7.1 Service unavailable;
&lt;br&gt;&amp;gt; Client host [64.222.186.12] blocked using dnsbl.dronebl.org
&lt;br&gt;&lt;br&gt;It seems that the bot already got you on blacklist. You should clean up your 
&lt;br&gt;computer, and make sure that bruteforece bot does not run any more.
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;Vladislav Kurz
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26211019&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26211019&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/to%3A--Henri-Salvo-tp26199763p26211019.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26204998</id>
	<title>[DSA 1916-1] New kdelibs packages</title>
	<published>2009-11-04T13:25:23Z</published>
	<updated>2009-11-04T13:25:23Z</updated>
	<author>
		<name>Thilo Six</name>
	</author>
	<content type="html">Hello security members
&lt;br&gt;&lt;br&gt;DSA 1916-1 has been announced on 23rd of october but still there are no
&lt;br&gt;packages available on the mirrors.
&lt;br&gt;&lt;br&gt;The DSA said:
&lt;br&gt;&lt;br&gt;&amp;lt;- *snip* -&amp;gt;
&lt;br&gt;Due to a bug in the archive system, the fix for the stable distribution
&lt;br&gt;(lenny), will be released as version 4:3.5.10.dfsg.1-0lenny3 once it is
&lt;br&gt;available.
&lt;br&gt;&amp;lt;- *snip* -&amp;gt;
&lt;br&gt;&lt;br&gt;Is there a possibility for a user to know the progress of this?
&lt;br&gt;Should i post to debian-devel-kde instead?
&lt;br&gt;&lt;br&gt;Thanks for your patience.
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;bye Thilo
&lt;br&gt;&lt;br&gt;4096R/0xC70B1A8F
&lt;br&gt;721B 1BA0 095C 1ABA 3FC6 &amp;nbsp;7C18 89A4 A2A0 C70B 1A8F
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26204998&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26204998&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/-DSA-1916-1--New-kdelibs-packages-tp26204998p26204998.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26201276</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:47:58Z</published>
	<updated>2009-11-04T09:47:58Z</updated>
	<author>
		<name>john -3</name>
	</author>
	<content type="html">&lt;div class='shrinkable-quote'&gt;&amp;gt;
&lt;br&gt;&amp;gt; presumably you mean
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; vm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; not
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; echvm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; micah
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;Hi Micah,
&lt;br&gt;&lt;br&gt;Yes sorry about that. &amp;nbsp;I meant to write vm.mmap_min_addr
&lt;br&gt;but I quoted from the Debian wiki which showed
&lt;br&gt;how to change the value for echvm.mmap_min_addr
&lt;br&gt;&lt;br&gt;I am a noob and haven't had experience with sysctl tuning so my head is sort of
&lt;br&gt;spinning here.
&lt;br&gt;&lt;br&gt;Thanks!
&lt;br&gt;&lt;br&gt;John
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201276&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201276&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26201276.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26201416</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:38:01Z</published>
	<updated>2009-11-04T09:38:01Z</updated>
	<author>
		<name>jmdh</name>
	</author>
	<content type="html">On Wed, Nov 04, 2009 at 09:24:55AM -0800, john wrote:
&lt;br&gt;&amp;gt; On Wed, Nov 4, 2009 at 9:15 AM, Dominic Hargreaves &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201416&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;dom@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&lt;br&gt;&amp;gt; &amp;gt; The mmap_min_addr tuneabout was not introduced until after 2.6.18,
&lt;br&gt;&amp;gt; &amp;gt; which is the default etch kernel. I am using the 'etchnhalf' kernel
&lt;br&gt;&amp;gt; &amp;gt; (linux-image-2.6.24-etchnhalf*) on an etch machine, partly since it
&lt;br&gt;&amp;gt; &amp;gt; offers this protection.
&lt;br&gt;&lt;br&gt;&amp;gt; So would
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; sudo apt-get install linux-image-2.6.24-etchnhalf.1-686
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; be the right approach here?
&lt;br&gt;&lt;br&gt;Assuming you would normally run a 686 flavour kernel, yes.
&lt;br&gt;&lt;br&gt;Note that you would have to check that your hardware was compatible
&lt;br&gt;with 2.6.24.
&lt;br&gt;&lt;br&gt;See &lt;a href=&quot;http://www.debian.org/releases/etch/etchnhalf&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/releases/etch/etchnhalf&lt;/a&gt;&lt;br&gt;&lt;br&gt;for more details and limitations of this approach.
&lt;br&gt;&lt;br&gt;Note also that as with any security-related advice, don't just trust
&lt;br&gt;what I say; do some independent research to validate my claims. I
&lt;br&gt;take no responsibilty for the security of your system by offering this
&lt;br&gt;advice.
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;Dominic.
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Dominic Hargreaves | &lt;a href=&quot;http://www.larted.org.uk/~dom/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.larted.org.uk/~dom/&lt;/a&gt;&lt;br&gt;PGP key 5178E2A5 from the.earth.li (keyserver,web,email)
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201416&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201416&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26201416.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26201391</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:36:19Z</published>
	<updated>2009-11-04T09:36:19Z</updated>
	<author>
		<name>dann frazier</name>
	</author>
	<content type="html">On Wed, Nov 04, 2009 at 09:24:55AM -0800, john wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; On Wed, Nov 4, 2009 at 9:15 AM, Dominic Hargreaves &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201391&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;dom@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt; &amp;gt; On Wed, Nov 04, 2009 at 09:05:20AM -0800, john wrote:
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; I see that there is another null pointer dereference flaw being talked about.
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; &lt;a href=&quot;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; It looks like we can take step in Debian 5.0 to mitigate this threat by setting
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; echvm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; per &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; I am running some servers running Debian 4.0. I doesn't look like
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; there is a /etc/sysctl.d/mmap_min_addr.conf to edit. Where are these
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; values stored
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; under Debian 4.0.
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;gt;&amp;gt; What is the right way to proceed? Should I be looking at upgrading my servers?
&lt;br&gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt; &amp;gt; The mmap_min_addr tuneabout was not introduced until after 2.6.18,
&lt;br&gt;&amp;gt; &amp;gt; which is the default etch kernel. I am using the 'etchnhalf' kernel
&lt;br&gt;&amp;gt; &amp;gt; (linux-image-2.6.24-etchnhalf*) on an etch machine, partly since it
&lt;br&gt;&amp;gt; &amp;gt; offers this protection.
&lt;br&gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt; Thanks Dominic,
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; So would
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; sudo apt-get install linux-image-2.6.24-etchnhalf.1-686
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; be the right approach here?
&lt;/div&gt;&lt;br&gt;A combination of that and the mmap_min_addr.conf file would do the trick.
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;dann frazier
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201391&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201391&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26201391.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26201597</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:31:36Z</published>
	<updated>2009-11-04T09:31:36Z</updated>
	<author>
		<name>Rick Moen</name>
	</author>
	<content type="html">Quoting john (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201597&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;lists.john@...&lt;/a&gt;):
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; I see that there is another null pointer dereference flaw being talked about.
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&lt;/a&gt;&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; It looks like we can take step in Debian 5.0 to mitigate this threat by setting
&lt;br&gt;&amp;gt; echvm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; per &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; I am running some servers running Debian 4.0. I doesn't look like
&lt;br&gt;&amp;gt; there is a /etc/sysctl.d/mmap_min_addr.conf to edit. Where are these
&lt;br&gt;&amp;gt; values stored
&lt;br&gt;&amp;gt; under Debian 4.0.
&lt;/div&gt;&lt;br&gt;John, I believe you can/should just put 
&lt;br&gt;&lt;br&gt;&amp;nbsp; vm.mmap_min_addr = 4096
&lt;br&gt;&lt;br&gt;at the bottom of /etc/sysctl.conf, and then re-run (as root) &amp;quot;sysctl -p&amp;quot;
&lt;br&gt;to load values from that file. &amp;nbsp;You can verify that the appropriate
&lt;br&gt;/proc value has been set by doing
&lt;br&gt;&lt;br&gt;&amp;nbsp; cat /proc/sys/vm/mmap_min_addr
&lt;br&gt;&lt;br&gt;Should now be &amp;quot;4096&amp;quot;, rather than the distro default of &amp;quot;0&amp;quot;.
&lt;br&gt;&lt;br&gt;As you know, BitBake, dosemu (run by non-root users), WINE (if running
&lt;br&gt;Win16 apps), and qemu are the applications thus far identified that need
&lt;br&gt;to be able to mmap to low memory addresses, necessitating low
&lt;br&gt;vm.mmap_min_addr AKA /proc/sys/vm/mmap_min_addr values.
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201597&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201597&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26201597.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26200748</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:24:55Z</published>
	<updated>2009-11-04T09:24:55Z</updated>
	<author>
		<name>john -3</name>
	</author>
	<content type="html">On Wed, Nov 4, 2009 at 9:15 AM, Dominic Hargreaves &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26200748&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;dom@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; On Wed, Nov 04, 2009 at 09:05:20AM -0800, john wrote:
&lt;br&gt;&amp;gt;&amp;gt; I see that there is another null pointer dereference flaw being talked about.
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; It looks like we can take step in Debian 5.0 to mitigate this threat by setting
&lt;br&gt;&amp;gt;&amp;gt; echvm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; per &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; I am running some servers running Debian 4.0. I doesn't look like
&lt;br&gt;&amp;gt;&amp;gt; there is a /etc/sysctl.d/mmap_min_addr.conf to edit. Where are these
&lt;br&gt;&amp;gt;&amp;gt; values stored
&lt;br&gt;&amp;gt;&amp;gt; under Debian 4.0.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; What is the right way to proceed? Should I be looking at upgrading my servers?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; The mmap_min_addr tuneabout was not introduced until after 2.6.18,
&lt;br&gt;&amp;gt; which is the default etch kernel. I am using the 'etchnhalf' kernel
&lt;br&gt;&amp;gt; (linux-image-2.6.24-etchnhalf*) on an etch machine, partly since it
&lt;br&gt;&amp;gt; offers this protection.
&lt;br&gt;&amp;gt;
&lt;/div&gt;Thanks Dominic,
&lt;br&gt;&lt;br&gt;So would
&lt;br&gt;&lt;br&gt;sudo apt-get install linux-image-2.6.24-etchnhalf.1-686
&lt;br&gt;&lt;br&gt;be the right approach here?
&lt;br&gt;&lt;br&gt;John
&lt;br&gt;&amp;gt; --
&lt;br&gt;&amp;gt; Dominic Hargreaves | &lt;a href=&quot;http://www.larted.org.uk/~dom/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.larted.org.uk/~dom/&lt;/a&gt;&lt;br&gt;&amp;gt; PGP key 5178E2A5 from the.earth.li (keyserver,web,email)
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26200748&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26200748&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26200748.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26201120</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:23:23Z</published>
	<updated>2009-11-04T09:23:23Z</updated>
	<author>
		<name>dann frazier</name>
	</author>
	<content type="html">On Wed, Nov 04, 2009 at 09:05:20AM -0800, john wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hello all,
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; I see that there is another null pointer dereference flaw being talked about.
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&lt;/a&gt;&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; It looks like we can take step in Debian 5.0 to mitigate this threat by setting
&lt;br&gt;&amp;gt; echvm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; per &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; I am running some servers running Debian 4.0. I doesn't look like
&lt;br&gt;&amp;gt; there is a /etc/sysctl.d/mmap_min_addr.conf to edit. Where are these
&lt;br&gt;&amp;gt; values stored
&lt;br&gt;&amp;gt; under Debian 4.0.
&lt;/div&gt;&lt;br&gt;There isn't a pre-existing mmap_min_addr.conf, you need to create it.
&lt;br&gt;You can view the current value in /proc:
&lt;br&gt;&lt;br&gt;&amp;nbsp;# cat /proc/sys/vm/mmap_min_addr
&lt;br&gt;&lt;br&gt;&amp;gt; What is the right way to proceed? Should I be looking at upgrading my servers?
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Thanks!
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; John
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;dann frazier
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201120&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201120&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26201120.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26201014</id>
	<title>Re: Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:15:35Z</published>
	<updated>2009-11-04T09:15:35Z</updated>
	<author>
		<name>jmdh</name>
	</author>
	<content type="html">On Wed, Nov 04, 2009 at 09:05:20AM -0800, john wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; I see that there is another null pointer dereference flaw being talked about.
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&lt;/a&gt;&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; It looks like we can take step in Debian 5.0 to mitigate this threat by setting
&lt;br&gt;&amp;gt; echvm.mmap_min_addr = 4096
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; per &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; I am running some servers running Debian 4.0. I doesn't look like
&lt;br&gt;&amp;gt; there is a /etc/sysctl.d/mmap_min_addr.conf to edit. Where are these
&lt;br&gt;&amp;gt; values stored
&lt;br&gt;&amp;gt; under Debian 4.0.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; What is the right way to proceed? Should I be looking at upgrading my servers?
&lt;/div&gt;&lt;br&gt;The mmap_min_addr tuneabout was not introduced until after 2.6.18,
&lt;br&gt;which is the default etch kernel. I am using the 'etchnhalf' kernel
&lt;br&gt;(linux-image-2.6.24-etchnhalf*) on an etch machine, partly since it
&lt;br&gt;offers this protection.
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Dominic Hargreaves | &lt;a href=&quot;http://www.larted.org.uk/~dom/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.larted.org.uk/~dom/&lt;/a&gt;&lt;br&gt;PGP key 5178E2A5 from the.earth.li (keyserver,web,email)
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201014&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26201014&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26201014.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26200321</id>
	<title>Debian 4.0 and mmap_min_addr null pointer dereference flaw</title>
	<published>2009-11-04T09:05:20Z</published>
	<updated>2009-11-04T09:05:20Z</updated>
	<author>
		<name>john -3</name>
	</author>
	<content type="html">Hello all,
&lt;br&gt;&lt;br&gt;I see that there is another null pointer dereference flaw being talked about.
&lt;br&gt;&lt;a href=&quot;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.theregister.co.uk/2009/11/03/linux_kernel_vulnerability/&lt;/a&gt;&lt;br&gt;&lt;br&gt;It looks like we can take step in Debian 5.0 to mitigate this threat by setting
&lt;br&gt;echvm.mmap_min_addr = 4096
&lt;br&gt;&lt;br&gt;per &lt;a href=&quot;http://wiki.debian.org/mmap_min_addr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://wiki.debian.org/mmap_min_addr&lt;/a&gt;&lt;br&gt;&lt;br&gt;I am running some servers running Debian 4.0. I doesn't look like
&lt;br&gt;there is a /etc/sysctl.d/mmap_min_addr.conf to edit. Where are these
&lt;br&gt;values stored
&lt;br&gt;under Debian 4.0.
&lt;br&gt;&lt;br&gt;What is the right way to proceed? Should I be looking at upgrading my servers?
&lt;br&gt;&lt;br&gt;Thanks!
&lt;br&gt;&lt;br&gt;John
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26200321&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26200321&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Debian-4.0-and-mmap_min_addr-null-pointer-dereference-flaw-tp26200321p26200321.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26199763</id>
	<title>to:  Henri Salvo</title>
	<published>2009-11-04T08:34:11Z</published>
	<updated>2009-11-04T08:34:11Z</updated>
	<author>
		<name>Bernie Dolan-3</name>
	</author>
	<content type="html">&lt;!DOCTYPE HTML PUBLIC &quot;-//W3C//DTD HTML 4.0 TRANSITIONAL//EN&quot;&gt;
&lt;HTML&gt;
&lt;HEAD&gt;
  &lt;META HTTP-EQUIV=&quot;Content-Type&quot; CONTENT=&quot;text/html; CHARSET=UTF-8&quot;&gt;
  &lt;META NAME=&quot;GENERATOR&quot; CONTENT=&quot;GtkHTML/3.18.3&quot;&gt;
&lt;/HEAD&gt;
&lt;BODY&gt;
Hi,&lt;BR&gt;
&lt;BR&gt;
I tried to send a copy of the file to you but got the following error:&lt;BR&gt;
&lt;BR&gt;
 &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26199763&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;henri@...&lt;/a&gt;&lt;BR&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp; SMTP error from remote mail server after RCPT TO:&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26199763&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;henri@...&lt;/a&gt;&amp;gt;:&lt;BR&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp; host kiwai.nerv.fi [213.157.65.70]: 554 5.7.1 Service unavailable; Client host [64.222.186.12] blocked using dnsbl.dronebl.org&lt;BR&gt;
&lt;BR&gt;
&lt;BR&gt;
&lt;TABLE CELLSPACING=&quot;0&quot; CELLPADDING=&quot;0&quot; WIDTH=&quot;100%&quot;&gt;
&lt;TR&gt;
&lt;TD&gt;
&lt;PRE&gt;
-  
When a machine begins to run without human aid, it is time to scrap it -
whether it be a factory or a government.&amp;nbsp; ~Alexander Chase
&lt;/PRE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TABLE&gt;
&lt;BR&gt;
&lt;/BODY&gt;
&lt;/HTML&gt;
</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/to%3A--Henri-Salvo-tp26199763p26199763.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26198806</id>
	<title>Re: dt_ssh5</title>
	<published>2009-11-04T07:24:43Z</published>
	<updated>2009-11-04T07:24:43Z</updated>
	<author>
		<name>Henri Salo-5</name>
	</author>
	<content type="html">On Wed, 04 Nov 2009 09:30:35 -0500
&lt;br&gt;Bernie Dolan &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26198806&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;bd3@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt; I recently became aware of the executable:
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; dt_ssh5
&lt;br&gt;&amp;gt; in my /tmp subdirectory.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Seems this is a botnet that is trying brute force attacks from my
&lt;br&gt;&amp;gt; server. &amp;nbsp;Has anybody else seen this?
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Thanks for the prompt response.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; - &amp;nbsp;
&lt;br&gt;&amp;gt; When a machine begins to run without human aid, it is time to scrap
&lt;br&gt;&amp;gt; it - whether it be a factory or a government. &amp;nbsp;~Alexander Chase
&lt;/div&gt;&lt;br&gt;Yes, for example grumpy bsd guy as you can see from:
&lt;br&gt;&amp;lt;&lt;a href=&quot;http://bsdly.blogspot.com/2009/10/third-time-uncharmed.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://bsdly.blogspot.com/2009/10/third-time-uncharmed.html&lt;/a&gt;&amp;gt;. Could
&lt;br&gt;you email me the file, thanks?
&lt;br&gt;&lt;br&gt;---
&lt;br&gt;Henri Salo
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26198806&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26198806&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/dt_ssh5-tp26197639p26198806.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26197639</id>
	<title>dt_ssh5</title>
	<published>2009-11-04T06:30:35Z</published>
	<updated>2009-11-04T06:30:35Z</updated>
	<author>
		<name>Bernie Dolan-3</name>
	</author>
	<content type="html">&lt;!DOCTYPE HTML PUBLIC &quot;-//W3C//DTD HTML 4.0 TRANSITIONAL//EN&quot;&gt;
&lt;HTML&gt;
&lt;HEAD&gt;
  &lt;META HTTP-EQUIV=&quot;Content-Type&quot; CONTENT=&quot;text/html; CHARSET=UTF-8&quot;&gt;
  &lt;META NAME=&quot;GENERATOR&quot; CONTENT=&quot;GtkHTML/3.18.3&quot;&gt;
&lt;/HEAD&gt;
&lt;BODY&gt;
Hi,&lt;BR&gt;
I recently became aware of the executable:&lt;BR&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp; dt_ssh5&lt;BR&gt;
in my /tmp subdirectory.&lt;BR&gt;
&lt;BR&gt;
Seems this is a botnet that is trying brute force attacks from my server.&amp;nbsp; Has anybody else seen this?&lt;BR&gt;
&lt;BR&gt;
Thanks for the prompt response.&lt;BR&gt;
&lt;BR&gt;
&lt;BR&gt;
&lt;TABLE CELLSPACING=&quot;0&quot; CELLPADDING=&quot;0&quot; WIDTH=&quot;100%&quot;&gt;
&lt;TR&gt;
&lt;TD&gt;
&lt;PRE&gt;
-  
When a machine begins to run without human aid, it is time to scrap it -
whether it be a factory or a government.&amp;nbsp; ~Alexander Chase
&lt;/PRE&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TABLE&gt;
&lt;BR&gt;
&lt;/BODY&gt;
&lt;/HTML&gt;
</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/dt_ssh5-tp26197639p26197639.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26169131</id>
	<title>Please test pidgin update</title>
	<published>2009-11-02T11:08:15Z</published>
	<updated>2009-11-02T11:08:15Z</updated>
	<author>
		<name>Moritz Muehlenhoff</name>
	</author>
	<content type="html">I've prepared updated packages for pidgin fixing CVE-2009-3615.
&lt;br&gt;However, I need testers who actually use ICQ. Packages are available
&lt;br&gt;at &lt;a href=&quot;http://people.debian.org/~jmm/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://people.debian.org/~jmm/&lt;/a&gt;&amp;nbsp;for amd64 and i386. Please send
&lt;br&gt;feedback directly to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26169131&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;jmm@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;Cheers,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Moritz
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26169131&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26169131&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Please-test-pidgin-update-tp26169131p26169131.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26146818</id>
	<title>Venha participar de Pequenos Empreendedores &amp; Grandes Negócios!</title>
	<published>2009-10-31T15:50:06Z</published>
	<updated>2009-10-31T15:50:06Z</updated>
	<author>
		<name>paulo zambroza</name>
	</author>
	<content type="html">&lt;!DOCTYPE html PUBLIC &quot;-//W3C//DTD HTML 4.01 Transitional//EN&quot; &quot;http://www.w3.org/TR/html4/loose.dtd&quot;&gt;
&lt;html&gt;
&lt;head&gt;
	&lt;meta http-equiv=&quot;Content-Type&quot; content=&quot;text/html; charset=utf-8&quot;&gt;
	&lt;title&gt;Network Email&lt;/title&gt;
&lt;/head&gt;
&lt;body style=&quot;padding:0; margin:16px; font-size:12px; font-family:'lucida grande', tahoma, helvetica, arial, sans-serif;&quot;&gt;

&lt;table cellpadding=&quot;0&quot; cellspacing=&quot;0&quot; border=&quot;0&quot; width=&quot;98%&quot; style=&quot;height: 98%&quot;&gt;
	&lt;tr&gt;
	&lt;td valign=&quot;top&quot; style=&quot;font:12px 'lucida grande', tahoma, helvetica, arial, sans-serif; padding: 10px;&quot;&gt;
		&lt;table width=&quot;1&quot; cellpadding=&quot;0&quot; cellspacing=&quot;0&quot; border=&quot;0&quot; style=&quot;border:3px solid #ccc&quot;&gt;
		  &lt;tr&gt;
			&lt;td bgcolor=&quot;#FEF200&quot; style=&quot;padding:4px 12px; color:#5A8627;&quot;&gt;
	
			  &lt;div style=&quot;font-size:18px;&quot;&gt;
				Entre em &lt;b&gt;Pequenos Empreendedores &amp;amp; Grandes Neg&amp;oacute;cios&lt;/b&gt;			  &lt;/div&gt;
			  &lt;div style=&quot;font-size:12px;&quot;&gt;Aqui o pequeno empreendedor tem vez! Acesse www.aprumar.webs.com e conhe&amp;ccedil;a!&lt;/div&gt;
			&lt;/td&gt;
		  &lt;/tr&gt;
		  &lt;tr&gt;
			&lt;td bgcolor=&quot;#ffffff&quot; width=&quot;*&quot; style=&quot;font-size:12px;padding: 10px;&quot; valign=&quot;top&quot;&gt;
			  &lt;table cellspacing=&quot;0&quot; cellpadding=&quot;0&quot; width=&quot;100%&quot;&gt;
			    &lt;tr&gt;
				  			      &lt;td width=&quot;96&quot; valign=&quot;top&quot; style=&quot;font-size: 12px; padding-right: 10px;&quot;&gt;
									        &lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;96&quot; width=&quot;96&quot; border=&quot;0&quot; alt=&quot;paulo zambroza&quot; src=&quot;http://api.ning.com/files/YKCdssEAPiqxr3NmB5LE5M6iSEWdc97T7eP*6BRGlm8_/64396078.bin?width=96&amp;amp;height=96&amp;amp;crop=1%3A1&amp;amp;xn_auth=no&quot;&gt;&lt;/a&gt;
				        &lt;div style=&quot;padding:6px 0;&quot;&gt;&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; style=&quot;text-decoration:none&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;paulo zambroza&lt;/a&gt; tem:&lt;/a&gt;&lt;/div&gt;
				        &lt;span style=&quot;font-size:11px;white-space:nowrap&quot;&gt;12 amigos&lt;br /&gt;14 fotos &lt;br /&gt;1 evento&lt;br /&gt;11 videos&lt;br /&gt;3 tópicos&lt;br /&gt;1 postagem no blog&lt;/span&gt;
								      &lt;/td&gt;
				  			      &lt;td valign=&quot;top&quot; style=&quot;font-size: 12px;&quot;&gt;
					&lt;div style=&quot;font-size:13px; padding:8px 16px 16px;&quot;&gt;
						Entre e conhe&amp;ccedil;a essa oportunidade!					&lt;/div&gt;
					&lt;div align=&quot;center&quot;&gt;
			        &lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; class=&quot;xg_button&quot; style=&quot;display:block; text-decoration:none; background:#ffff99; color:#432; border:1px solid; border-color:#fc0 #ca0 #ca0 #fc0; font-size:18px; font-weight:bold; text-align:center; width:220px; line-height:37px; margin:12px auto;&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Clique para Entrar&lt;/a&gt;&lt;br /&gt;
					&lt;/div&gt;
			        					  Membros em Pequenos Empreendedores &amp;amp; Grandes Neg&amp;oacute;cios:                    					&lt;table style=&quot;margin-top:6px&quot; width=&quot;360&quot; cellpadding=&quot;0&quot; cellspacing=&quot;0&quot; border=&quot;0&quot;&gt;
                      						&lt;tr&gt;
												  &lt;td style=&quot;text-align:center; padding-right:10px; padding-bottom: 10px&quot; valign=&quot;top&quot;&gt;
						  	&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;64&quot; width=&quot;64&quot; border=&quot;0&quot; alt=&quot;MARA MACIEL&quot; src=&quot;http://api.ning.com/files/N4*SCSiFfBeTiQG6fEfwoG*TGGfHu9Ozl2roCx8Rb*I_/134062094.bin?width=64&amp;amp;height=64&amp;amp;crop=1%3A1&amp;amp;xn_auth=no&quot;&gt;&lt;/a&gt;
							&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; style=&quot;font-size:11px; text-decoration:none;display:block;&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;MARA MACIEL&lt;/a&gt;
						  &lt;/td&gt;
												  &lt;td style=&quot;text-align:center; padding-right:10px; padding-bottom: 10px&quot; valign=&quot;top&quot;&gt;
						  	&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;64&quot; width=&quot;64&quot; border=&quot;0&quot; alt=&quot;Antonio Car...&quot; src=&quot;http://api.ning.com/files/L6vjMqLJvYhero1Ai*eVmGLdH*mOUQcAmsjWSeK4d8g_/570625864.bin?width=64&amp;amp;height=64&amp;amp;crop=1%3A1&amp;amp;xn_auth=no&quot;&gt;&lt;/a&gt;
							&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; style=&quot;font-size:11px; text-decoration:none;display:block;&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Antonio Carlos Arruda Oliveira&lt;/a&gt;
						  &lt;/td&gt;
												  &lt;td style=&quot;text-align:center; padding-right:10px; padding-bottom: 10px&quot; valign=&quot;top&quot;&gt;
						  	&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;64&quot; width=&quot;64&quot; border=&quot;0&quot; alt=&quot;Zeka Albuqu...&quot; src=&quot;http://api.ning.com/files/rs0GZmC60vlggXWyyByX-l-tqC93G8tuO57p2L6q70M_/crisecrie.JPG?width=64&amp;amp;height=64&amp;amp;crop=1%3A1&amp;amp;xn_auth=no&quot;&gt;&lt;/a&gt;
							&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; style=&quot;font-size:11px; text-decoration:none;display:block;&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Zeka Albuquerque&lt;/a&gt;
						  &lt;/td&gt;
												  &lt;td style=&quot;text-align:center; padding-right:10px; padding-bottom: 10px&quot; valign=&quot;top&quot;&gt;
						  	&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;64&quot; width=&quot;64&quot; border=&quot;0&quot; alt=&quot;CESAR COSTA&quot; src=&quot;http://api.ning.com/files/iwxaUhfJoDWqGLTw8EwwFDcrxcdnbI*AFSuD0WDX*-k_/Imagem1.png?width=64&amp;amp;height=64&amp;amp;crop=1%3A1&amp;amp;xn_auth=no&quot;&gt;&lt;/a&gt;
							&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; style=&quot;font-size:11px; text-decoration:none;display:block;&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;CESAR COSTA&lt;/a&gt;
						  &lt;/td&gt;
												  &lt;td style=&quot;text-align:center; padding-right:10px; padding-bottom: 10px&quot; valign=&quot;top&quot;&gt;
						  	&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;64&quot; width=&quot;64&quot; border=&quot;0&quot; alt=&quot;Eliana&quot; src=&quot;http://api.ning.com/files/ltFrgTnEEg45L0lWlla1tZs9Ok8Mft-DVqxQG9ZfyqE_/453116485.bin?width=64&amp;amp;height=64&amp;amp;crop=1%3A1&amp;amp;xn_auth=no&quot;&gt;&lt;/a&gt;
							&lt;a href=&quot;http://pemgnes.ning.com/?xgi=1RQ9d1p7ZOCwB1&quot; style=&quot;font-size:11px; text-decoration:none;display:block;&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Eliana&lt;/a&gt;
						  &lt;/td&gt;
												&lt;/tr&gt;
                      				    &lt;/table&gt;
					  
					      &lt;div style=&quot;font-weight:bold; padding:8px 0;border-top:1px solid #aaa;&quot;&gt;Sobre Pequenos Empreendedores &amp;amp; Grandes Neg&amp;oacute;cios&lt;/div&gt;
              &lt;div style=&quot;padding-bottom:12px&quot;&gt;N&amp;atilde;o lemos pequenas empresas &amp;amp; grandes negocios mas fazemos bons negocios! Acesse www.aprumar.webs.com e saiba mais!&lt;/div&gt;
                    &lt;table width=&quot;100%&quot; cellpadding=&quot;0&quot; cellspacing=&quot;0&quot; border=&quot;0&quot;&gt;
          &lt;tr&gt;
                                &lt;td width=&quot;74&quot; style=&quot;padding-right:10px; font-size: 12px;&quot; valign=&quot;top&quot;&gt;
                    &lt;a href=&quot;http://pemgnes.ning.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;&lt;img height=&quot;64&quot; width=&quot;64&quot; border=&quot;0&quot; alt=&quot;Pequenos Empreendedores &amp;amp; Grandes Neg&amp;oacute;cios&quot; src=&quot;http://api.ning.com/icons/appatar/4185187?default=4185187&amp;amp;width=96&amp;amp;height=96&quot;&gt;&lt;/a&gt;
                &lt;/td&gt;
                                &lt;td style=&quot;padding-right:10px; font-size: 12px;&quot; valign=&quot;top&quot;&gt;
                                                            16 membros &lt;br /&gt;15 fotos &lt;br /&gt;&lt;/td&gt;&lt;td style=&quot;padding-right:10px; font-size: 12px;&quot; valign=&quot;top&quot;&gt;11 videos&lt;br /&gt;                                                    &lt;/td&gt;
            &lt;/tr&gt;
        &lt;/table&gt;
    			      &lt;/td&gt;
			    &lt;/tr&gt;
			  &lt;/table&gt;


	
			  &lt;div style=&quot;border-bottom:1px solid #aaa; height:10px;&quot;&gt;&amp;nbsp;&lt;/div&gt;
			  &lt;div style=&quot;color:#777777; font-size:11px; padding-top: 5px;&quot;&gt;
    Para controlar os emails que você receberá em Pequenos Empreendedores &amp;amp; Grandes Neg&amp;oacute;cios, &lt;a href=&quot;http://pemgnes.ning.com/?xgo=t547/XYyAD3Yj5S/Nt586m3ktuyqSDIDWWghwLPxlBz1kzZoS/1UIVaoMtY3ZEWW8QSCrfkDw0I&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;clique aqui&lt;/a&gt;&lt;/div&gt;
		  &lt;/td&gt;
		&lt;/tr&gt;
	  &lt;/table&gt;
	&lt;/td&gt;
	&lt;/tr&gt;
&lt;/table&gt;


&lt;img src=&quot;http://pemgnes.ning.com/xn_resources/widgets/index/gfx/spacer.gif?msgtype=invitation&quot; width=&quot;1&quot; height=&quot;1&quot; alt=&quot;&quot;&gt;
&lt;/body&gt;
&lt;/html&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Venha-participar-de-Pequenos-Empreendedores---Grandes-Neg%C3%B3cios%21-tp26146818p26146818.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26125770</id>
	<title>RE: [SECURITY] [DSA 1923-1] New libhtml-parser-perl packages fix denial of service</title>
	<published>2009-10-29T23:37:11Z</published>
	<updated>2009-10-29T23:37:11Z</updated>
	<author>
		<name>Kim Vahl</name>
	</author>
	<content type="html">&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: Nico Golde &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;nion@...&lt;/a&gt;&amp;gt;
&lt;br&gt;Sent: vrijdag 30 oktober 2009 2:17
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;&amp;gt;
&lt;br&gt;Subject: [SECURITY] [DSA 1923-1] New libhtml-parser-perl packages fix denial of service
&lt;br&gt;&lt;br&gt;&lt;br&gt;-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;- --------------------------------------------------------------------------
&lt;br&gt;Debian Security Advisory DSA-1923-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Nico Golde
&lt;br&gt;October 27th, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;- --------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: libhtml-parser-perl
&lt;br&gt;Vulnerability &amp;nbsp;: denial of service
&lt;br&gt;Problem type &amp;nbsp; : remote
&lt;br&gt;Debian-specific: no
&lt;br&gt;Debian bug &amp;nbsp; &amp;nbsp; : #552531
&lt;br&gt;CVE ID &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : CVE-2009-3627
&lt;br&gt;&lt;br&gt;A denial of service vulnerability has been found in libhtml-parser-perl,
&lt;br&gt;a collection of modules to parse HTML in text documents which is used by
&lt;br&gt;several other projects like e.g. SpamAssassin.
&lt;br&gt;&lt;br&gt;Mark Martinec discovered that the decode_entities() function will get stuck
&lt;br&gt;in an infinite loop when parsing certain HTML entities with invalid UTF-8
&lt;br&gt;characters. &amp;nbsp;An attacker can use this to perform denial of service attacks
&lt;br&gt;by submitting crafted HTML to an application using this functionality.
&lt;br&gt;&lt;br&gt;&lt;br&gt;For the oldstable distribution (etch), this problem has been fixed in
&lt;br&gt;version 3.55-1+etch1.
&lt;br&gt;&lt;br&gt;For the stable distribution (lenny), this problem has been fixed in
&lt;br&gt;version 3.56-1+lenny1.
&lt;br&gt;&lt;br&gt;For the testing (squeeze) and unstable (sid) distribution, this problem
&lt;br&gt;will be fixed soon.
&lt;br&gt;&lt;br&gt;&lt;br&gt;We recommend that you upgrade your libhtml-parser-perl packages.
&lt;br&gt;&lt;br&gt;Upgrade instructions
&lt;br&gt;- --------------------
&lt;br&gt;&lt;br&gt;wget url
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will fetch the file for you
&lt;br&gt;dpkg -i file.deb
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install the referenced file.
&lt;br&gt;&lt;br&gt;If you are using the apt-get package manager, use the line for
&lt;br&gt;sources.list as given below:
&lt;br&gt;&lt;br&gt;apt-get update
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will update the internal database
&lt;br&gt;apt-get upgrade
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; will install corrected packages
&lt;br&gt;&lt;br&gt;You may use an automated update by adding the resources from the
&lt;br&gt;footer to the proper configuration.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 4.0 alias etch
&lt;br&gt;- -------------------------------
&lt;br&gt;&lt;br&gt;Debian (oldstable)
&lt;br&gt;- ------------------
&lt;br&gt;&lt;br&gt;Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;84746 75eb683f1fb7aa7c0ffa46ded4564b54
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 6136 8c713a84e3df953ae77d83d9f2cff5bc
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; &amp;nbsp;882 0f38d699bda26190ea4764aa74eac2c8
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 108540 a6d69a440e25b3d3b4e9c5057f6b6908
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 108168 ddafcee82387004c4d55a39a8ca54eb6
&lt;br&gt;&lt;br&gt;arm architecture (ARM)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 106962 9842d5bc00c6b308d01fae6d20676e9e
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 109602 2d4a2d3ff134cfdd70135e71caf9043a
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 108032 b542502d5b1d4fff66c2d730e8c02790
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 117524 ce065d8d05996cdc4c436104b578ed0a
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 106518 25feabc68e1aa4aff02b6aff00a2a9df
&lt;br&gt;&lt;br&gt;mipsel architecture (MIPS (Little Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 105742 17a4f0fafa183a3794fad636e4e26ce4
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 106504 beb784e9d723ba717d207c6e9c58414b
&lt;br&gt;&lt;br&gt;s390 architecture (IBM S/390)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 106630 1de105f77b55dd920dbfccb7712e3dc1
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.55-1+etch1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 106222 bd1cd736644c4f2dceb76cc5192f18d0
&lt;br&gt;&lt;br&gt;&lt;br&gt;Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;- --------------------------------
&lt;br&gt;&lt;br&gt;Debian (stable)
&lt;br&gt;- ---------------
&lt;br&gt;&lt;br&gt;Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.
&lt;br&gt;&lt;br&gt;Source archives:
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1.diff.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 6147 18b2407d8b26d6225b82a880b16a0e05
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1.dsc&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1316 5a923d6089e2ffddf050ea5b017a7956
&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; &amp;nbsp;86040 bddc432e5ed9df4d4153a62234f04fc2
&lt;br&gt;&lt;br&gt;alpha architecture (DEC Alpha)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_alpha.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_alpha.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 111160 928145a65d633d76bf3db6a42bcf9173
&lt;br&gt;&lt;br&gt;amd64 architecture (AMD x86_64 (AMD64))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_amd64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_amd64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 111614 9152d47982c212aa1ee9ec8d6293c97e
&lt;br&gt;&lt;br&gt;arm architecture (ARM)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_arm.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_arm.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 109442 e559abada6a045e2a8d51b1c54a89655
&lt;br&gt;&lt;br&gt;armel architecture (ARM EABI)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_armel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_armel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 109388 47e0480a189e752018d27ffb4b19d9e1
&lt;br&gt;&lt;br&gt;hppa architecture (HP PA RISC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_hppa.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_hppa.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112026 52d258a94e332f7f1c527ae0c47d77d6
&lt;br&gt;&lt;br&gt;i386 architecture (Intel ia32)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_i386.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_i386.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 109680 da9426f29d77127b954a77263a5b7665
&lt;br&gt;&lt;br&gt;ia64 architecture (Intel ia64)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_ia64.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_ia64.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 121744 90933c7e204254b4c308424af76917b2
&lt;br&gt;&lt;br&gt;mips architecture (MIPS (Big Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_mips.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_mips.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 109378 f46f9971f7d22fe40a1d15cc224cdc70
&lt;br&gt;&lt;br&gt;mipsel architecture (MIPS (Little Endian))
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_mipsel.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_mipsel.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 109870 af19cea178841be6c1fc658cac4c468d
&lt;br&gt;&lt;br&gt;powerpc architecture (PowerPC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_powerpc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_powerpc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 112450 1a2d490c6120185ec0cbddc2bb73e792
&lt;br&gt;&lt;br&gt;s390 architecture (IBM S/390)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_s390.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_s390.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 110958 2f21853d729b141554b39132ecf21f5c
&lt;br&gt;&lt;br&gt;sparc architecture (Sun SPARC/UltraSPARC)
&lt;br&gt;&lt;br&gt;&amp;nbsp; &lt;a href=&quot;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_sparc.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/libh/libhtml-parser-perl/libhtml-parser-perl_3.56-1+lenny1_sparc.deb&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; Size/MD5 checksum: &amp;nbsp; 108682 a1831a4919f5c7b30eab0def292928b5
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;nbsp; its next update.
&lt;br&gt;&lt;br&gt;- ---------------------------------------------------------------------------------
&lt;br&gt;For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
&lt;br&gt;Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;lt;pkg&amp;gt;
&lt;br&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;&lt;br&gt;iEYEARECAAYFAkrqO5QACgkQHYflSXNkfP8jYACgkATgE0BJ4ndT4SUaOhI8Qg0w
&lt;br&gt;gpkAnAzu0Jnb9nHUe/46Ggi7CdwAoApn
&lt;br&gt;=q4EB
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;&lt;br&gt;--
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;&lt;br&gt;--
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26125770&amp;i=8&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/RE%3A--SECURITY---DSA-1923-1--New-libhtml-parser-perl-packages-fix-denial-of-service-tp26125770p26125770.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26123763</id>
	<title>Re: [#17089802] [SECURITY] [DSA 1923-1] New libhtml-parser-perl packages fix denial of service</title>
	<published>2009-10-29T18:20:54Z</published>
	<updated>2009-10-29T18:20:54Z</updated>
	<author>
		<name>Joel Pihlajamaa</name>
	</author>
	<content type="html">Hei!
&lt;br&gt;&lt;br&gt;Olen parhaillaan syyslomalla ja luen seuraavan kerran sähköpostejani 9.11.2009. Kiireellisissä asioissa voit olla yhteydessä Juha-Pekka Järvenpäähän, &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26123763&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;juha-pekka.jarvenpaa@...&lt;/a&gt; / 09-6829 3012.
&lt;br&gt;&lt;br&gt;&lt;br&gt;--
&lt;br&gt;&lt;br&gt;Ystävällisin terveisin,
&lt;br&gt;Joel Pihlajamaa
&lt;br&gt;&lt;br&gt;--
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26123763&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26123763&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A---17089802---SECURITY---DSA-1923-1--New-libhtml-parser-perl-packages-fix-denial-of-service-tp26123763p26123763.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26119662</id>
	<title>Re: [SECURITY] [DSA 1921-1] New expat packages fix denial of service</title>
	<published>2009-10-29T12:36:34Z</published>
	<updated>2009-10-29T12:36:34Z</updated>
	<author>
		<name>Zdenek Kaspar</name>
	</author>
	<content type="html">Steffen Joeris napsal(a):
&lt;br&gt;&amp;gt; On Thu, 29 Oct 2009 04:21:43 am Zdenek Kaspar wrote:
&lt;br&gt;&amp;gt;&amp;gt; Hi, why is this update missing on amd64/lenny ?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt; Because it was not yet available by the time of the release and will be made 
&lt;br&gt;&amp;gt; available as soon as possible.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Cheers
&lt;br&gt;&amp;gt; Steffen
&lt;br&gt;&lt;br&gt;OK, just noticed it's there now.
&lt;br&gt;&lt;br&gt;Get package files.
&lt;br&gt;[ 47%] Getting:
&lt;br&gt;pool/updates/main/e/expat/expat_2.0.1-4+lenny1_amd64.deb... ok
&lt;br&gt;[ 50%] Getting:
&lt;br&gt;pool/updates/main/e/expat/libexpat1-dev_2.0.1-4+lenny1_amd64.deb... ok
&lt;br&gt;[ 81%] Getting:
&lt;br&gt;pool/updates/main/e/expat/libexpat1_2.0.1-4+lenny1_amd64.deb... ok
&lt;br&gt;Downloaded 708 kiB in 7s at 101.21 kiB/s.
&lt;br&gt;&lt;br&gt;Thanks Z.
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26119662&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26119662&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A--SECURITY---DSA-1921-1--New-expat-packages-fix-denial-of-service-tp26098927p26119662.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26111570</id>
	<title>To run several daemons under normal users.</title>
	<published>2009-10-29T04:29:34Z</published>
	<updated>2009-10-29T04:29:34Z</updated>
	<author>
		<name>Sthu Deus</name>
	</author>
	<content type="html">Good day.
&lt;br&gt;&lt;br&gt;I want to run the following list of daemons under normal user - for security
&lt;br&gt;reasons:
&lt;br&gt;&lt;br&gt;saslauthd, couriertcpd, courierpop3login, authdaemond, spamd, logger
&lt;br&gt;&lt;br&gt;could You please share Your opinion on how I can do that - as it is not clear
&lt;br&gt;from its running scripts where to specify it?
&lt;br&gt;&lt;br&gt;&lt;br&gt;Thank You for Your time.
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26111570&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26111570&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/To-run-several-daemons-under-normal-users.-tp26111570p26111570.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26107919</id>
	<title>Re: [SECURITY] [DSA 1919-1] New smarty packages fix several vulnerabilities</title>
	<published>2009-10-29T00:00:27Z</published>
	<updated>2009-10-29T00:00:27Z</updated>
	<author>
		<name>Axel Ahrens</name>
	</author>
	<content type="html">SHIT
&lt;br&gt;&lt;br&gt;Am 25.10.2009 um 17:24 schrieb Thijs Kinkhorst:
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; -----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;&amp;gt; Hash: SHA1
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; - &amp;nbsp;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; Debian Security Advisory DSA-1919-1 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security@...&lt;/a&gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.debian.org/security/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/&lt;/a&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Thijs &amp;nbsp;
&lt;br&gt;&amp;gt; Kinkhorst
&lt;br&gt;&amp;gt; October 25, 2009 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://www.debian.org/security/faq&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.debian.org/security/faq&lt;/a&gt;&lt;br&gt;&amp;gt; - &amp;nbsp;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Package &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: smarty
&lt;br&gt;&amp;gt; Vulnerability &amp;nbsp;: several
&lt;br&gt;&amp;gt; Problem type &amp;nbsp; : remote
&lt;br&gt;&amp;gt; Debian-specific: no
&lt;br&gt;&amp;gt; CVE Id(s) &amp;nbsp; &amp;nbsp; &amp;nbsp;: CVE-2008-4810 CVE-2009-1669
&lt;br&gt;&amp;gt; Debian Bug &amp;nbsp; &amp;nbsp; : 504328 529810
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Several remote vulnerabilities have been discovered in Smarty, a PHP
&lt;br&gt;&amp;gt; templating engine. The Common Vulnerabilities and Exposures project
&lt;br&gt;&amp;gt; identifies the following problems:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; CVE-2008-4810
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;The _expand_quoted_text function allows for certain restrictions in
&lt;br&gt;&amp;gt; &amp;nbsp;templates, like function calling and PHP execution, to be bypassed.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; CVE-2009-1669
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;The smarty_function_math function allows context-dependent attackers
&lt;br&gt;&amp;gt; &amp;nbsp;to execute arbitrary commands via shell metacharacters in the &amp;nbsp;
&lt;br&gt;&amp;gt; equation
&lt;br&gt;&amp;gt; &amp;nbsp;attribute of the math function.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; For the old stable distribution (etch), these problems have been fixed
&lt;br&gt;&amp;gt; in version 2.6.14-1etch2.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; For the stable distribution (lenny), these problems have been fixed in
&lt;br&gt;&amp;gt; version 2.6.20-1.2.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; For the unstable distribution (sid), these problems will be fixed &amp;nbsp;
&lt;br&gt;&amp;gt; soon.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; We recommend that you upgrade your smarty package.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Upgrade instructions
&lt;br&gt;&amp;gt; - --------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; wget url
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;will fetch the file for you
&lt;br&gt;&amp;gt; dpkg -i file.deb
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;will install the referenced file.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; If you are using the apt-get package manager, use the line for
&lt;br&gt;&amp;gt; sources.list as given below:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; apt-get update
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;will update the internal database
&lt;br&gt;&amp;gt; apt-get upgrade
&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;will install corrected packages
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; You may use an automated update by adding the resources from the
&lt;br&gt;&amp;gt; footer to the proper configuration.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Debian GNU/Linux 4.0 alias etch
&lt;br&gt;&amp;gt; - -------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Source archives:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14-1etch2.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14-1etch2.dsc&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; &amp;nbsp; &amp;nbsp;958 f061c466cef93df89e677aeb72101910
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; 144986 9186796ddbc29191306338dea9d632a0
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14-1etch2.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14-1etch2.diff.gz&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 4290 0ef9a669c127818f5ff084e2829738e9
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Architecture independent packages:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14-1etch2_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.14-1etch2_all.deb&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; 183300 d0ac954aad344f20b5933b09593b2968
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Debian GNU/Linux 5.0 alias lenny
&lt;br&gt;&amp;gt; - --------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Source archives:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20-1.2.dsc&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20-1.2.dsc&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 1409 f280e2733ef52ff621891f99b26386f3
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20-1.2.diff.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20-1.2.diff.gz&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; &amp;nbsp; 4876 4d729d18d7efe68e1ce3023149436c01
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20.orig.tar.gz&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20.orig.tar.gz&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; 158091 35f405b2418a26a895302a2ce5bf89d2
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Architecture independent packages:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;&lt;a href=&quot;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20-1.2_all.deb&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/pool/updates/main/s/smarty/smarty_2.6.20-1.2_all.deb&lt;/a&gt;&lt;br&gt;&amp;gt; &amp;nbsp; &amp;nbsp;Size/MD5 checksum: &amp;nbsp; 204412 1e8e85b298b97176359dd15731e0dc88
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp;These files will probably be moved into the stable distribution on
&lt;br&gt;&amp;gt; &amp;nbsp;its next update.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; - &amp;nbsp;
&lt;br&gt;&amp;gt; ---------------------------------------------------------------------------------
&lt;br&gt;&amp;gt; For apt-get: deb &lt;a href=&quot;http://security.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://security.debian.org/&lt;/a&gt;&amp;nbsp;stable/updates main
&lt;br&gt;&amp;gt; For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/ 
&lt;br&gt;&amp;gt; updates/main
&lt;br&gt;&amp;gt; Mailing list: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce@...&lt;/a&gt;
&lt;br&gt;&amp;gt; Package info: `apt-cache show &amp;lt;pkg&amp;gt;' and &lt;a href=&quot;http://packages.debian.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://packages.debian.org/&lt;/a&gt;&amp;nbsp;
&lt;br&gt;&amp;gt; &amp;lt;pkg&amp;gt;
&lt;br&gt;&amp;gt; -----BEGIN PGP SIGNATURE-----
&lt;br&gt;&amp;gt; Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; iQEcBAEBAgAGBQJK5HuJAAoJECIIoQCMVaAc41oH/iXgblL5cfzH4wujl26DrEmd
&lt;br&gt;&amp;gt; 8ivwmMDdRzd6zio60VtRgbLFfDa1nvByavfJYbJSgjkphbf4qXMxNVVRxp0z9laT
&lt;br&gt;&amp;gt; fg7gkytG9KXXiqvhxz8NrzCGg7v0jmOorATYCamFEUgKg9d+sXy2/bIpO3xN1txU
&lt;br&gt;&amp;gt; Wvub7/q3n8DUg3go7kPMCC5euzaB0Fs0fq6zzWuRcKW640bMiOyNq6n/kvTICv3x
&lt;br&gt;&amp;gt; 4Yv+PIj1KbXgz/R45+QtyQGibJzj3XWTL5DpRNe1fH8uUQ4sqKCyKDsaayrOXa0w
&lt;br&gt;&amp;gt; Y0wkZ3IEmbOpe1UmUB57kAVSzfRAicFOGRJmXunni/tBs2ivBL27P7F/dMKYAQg=
&lt;br&gt;&amp;gt; =EBks
&lt;br&gt;&amp;gt; -----END PGP SIGNATURE-----
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; -- 
&lt;br&gt;&amp;gt; To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-announce-REQUEST@...&lt;/a&gt;
&lt;br&gt;&amp;gt; with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;--
&lt;br&gt;&amp;lt;e&amp;gt;werk, Gesellschaft für neue Medien mbH
&lt;br&gt;Langenstr. 75, D-28195 Bremen
&lt;br&gt;Registergericht Bremen - HRB 18561
&lt;br&gt;Geschäftsführung: Dipl.-Ing. Jens Zippel
&lt;br&gt;Phone: +49 (0)421 33513-60
&lt;br&gt;Fax: +49 (0)421 33513-65
&lt;br&gt;e-mail: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;office@...&lt;/a&gt;
&lt;br&gt;&lt;a href=&quot;http://www.ewerk.de&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.ewerk.de&lt;/a&gt;&lt;br&gt;&lt;br&gt;Axel Ahrens, e-mail: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ahrens@...&lt;/a&gt;
&lt;br&gt;Phone: +49 (0)421 33513-82
&lt;br&gt;&lt;br&gt;&lt;br&gt;--
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26107919&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A--SECURITY---DSA-1919-1--New-smarty-packages-fix-several-vulnerabilities-tp26107919p26107919.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26102583</id>
	<title>Re: [SECURITY] [DSA 1921-1] New expat packages fix denial of service</title>
	<published>2009-10-28T14:35:41Z</published>
	<updated>2009-10-28T14:35:41Z</updated>
	<author>
		<name>Steffen Joeris</name>
	</author>
	<content type="html">On Thu, 29 Oct 2009 04:21:43 am Zdenek Kaspar wrote:
&lt;br&gt;&amp;gt; Hi, why is this update missing on amd64/lenny ?
&lt;br&gt;&amp;gt; 
&lt;br&gt;Because it was not yet available by the time of the release and will be made 
&lt;br&gt;available as soon as possible.
&lt;br&gt;&lt;br&gt;Cheers
&lt;br&gt;Steffen
&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;signature.asc&lt;/strong&gt; (205 bytes) &lt;a href=&quot;http://old.nabble.com/attachment/26102583/0/signature.asc&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A--SECURITY---DSA-1921-1--New-expat-packages-fix-denial-of-service-tp26098927p26102583.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26098927</id>
	<title>Re: [SECURITY] [DSA 1921-1] New expat packages fix denial of service</title>
	<published>2009-10-28T10:21:43Z</published>
	<updated>2009-10-28T10:21:43Z</updated>
	<author>
		<name>Zdenek Kaspar</name>
	</author>
	<content type="html">Hi, why is this update missing on amd64/lenny ?
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26098927&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26098927&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A--SECURITY---DSA-1921-1--New-expat-packages-fix-denial-of-service-tp26098927p26098927.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26092259</id>
	<title>Re: [#54324561] [SECURITY] [DSA 1921-1] New expat packages fix denial of service</title>
	<published>2009-10-28T02:52:26Z</published>
	<updated>2009-10-28T02:52:26Z</updated>
	<author>
		<name>Joel Pihlajamaa</name>
	</author>
	<content type="html">Hei!
&lt;br&gt;&lt;br&gt;Olen parhaillaan syyslomalla ja luen seuraavan kerran sähköpostejani 9.11.2009. Kiireellisissä asioissa voit olla yhteydessä Juha-Pekka Järvenpäähän, &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26092259&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;juha-pekka.jarvenpaa@...&lt;/a&gt; / 09-6829 3012.
&lt;br&gt;&lt;br&gt;&lt;br&gt;--
&lt;br&gt;&lt;br&gt;Ystävällisin terveisin,
&lt;br&gt;Joel Pihlajamaa
&lt;br&gt;&lt;br&gt;--
&lt;br&gt;To UNSUBSCRIBE, email to &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26092259&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;debian-security-REQUEST@...&lt;/a&gt;
&lt;br&gt;with a subject of &amp;quot;unsubscribe&amp;quot;. Trouble? Contact &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26092259&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listmaster@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A---54324561---SECURITY---DSA-1921-1--New-expat-packages-fix-denial-of-service-tp26092259p26092259.html" />
</entry>

</feed>
