Accepted xmltooling 1.2.2-1 (source i386 all)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Thu, 27 Aug 2009 11:31:37 -0700
Source: xmltooling
Binary: libxmltooling3 libxmltooling-dev xmltooling-schemas libxmltooling-doc
Architecture: source i386 all
Version: 1.2.2-1
Distribution: unstable
Urgency: high
Maintainer: Debian Shib Team <pkg-shibboleth-devel@lists.alioth.debian.org>
Changed-By: Russ Allbery <rra@debian.org>
Description:
libxmltooling-dev - C++ XML parsing library with encryption support (development)
libxmltooling-doc - C++ XML parsing library with encryption support (API docs)
libxmltooling3 - C++ XML parsing library with encryption support (runtime)
xmltooling-schemas - XML schemas for XMLTooling
Changes:
xmltooling (1.2.2-1) unstable; urgency=high
.
* Urgency set to high for security fix.
* New upstream release.
- SECURITY: Fix potential buffer overflows and reuses of freed objects
in error handling code paths with invalid XML or with malformed
URLs. See the upstream security advisory at
http://shibboleth.internet2.edu/secadv/secadv_20090826.txt
- Fix other validation issues with malformed objects.
- Fix for accessing the resolution context, which affects the ability
of callers to restrict keys based on use attributes.
- Fix encoding of backup metadata.
* Update debhelper compatibility level to V7.
- Use dh_prep instead of dh_clean -k.
* Update standards version to 3.8.3 (no changes required).
Checksums-Sha1:
997cea79df1e333a30c5dfdae181467bf83e6a9d 1442 xmltooling_1.2.2-1.dsc
a7e6c0c0c398a74a178c8fc36548433062c55f6e 573383 xmltooling_1.2.2.orig.tar.gz
39c18135d301c1654335323d0f1479e2aaf10137 6526 xmltooling_1.2.2-1.diff.gz
05898f1e1e43f8ce515568d54c7845c0f3fbbbf8 704544 libxmltooling3_1.2.2-1_i386.deb
dfb16edf89464beafa2f6cdd316cc4cb5a26bbed 78514 libxmltooling-dev_1.2.2-1_i386.deb
dc17bf4b3ad656b9ce68254fa0340993c8c24b9b 12348 xmltooling-schemas_1.2.2-1_all.deb
72440bfceaad888223d901a2c82cff07d8c67940 1145110 libxmltooling-doc_1.2.2-1_all.deb
Checksums-Sha256:
5d0165ee315d79443f721d4ed314e6021041b6c19429f09dcb74d91a90f73714 1442 xmltooling_1.2.2-1.dsc
6bcc2cb0ff4c88ce5f6c6436ba152b96479082af7cca306ed6f8084a46ed8d0f 573383 xmltooling_1.2.2.orig.tar.gz
e37c74e3bfd91b32d3477584d99bd1bdbc81fb65e2888607f6892382810abcac 6526 xmltooling_1.2.2-1.diff.gz
f4ec02328033d0baafaad15be63878eeccdf20d7f9414409b7ec174176a68934 704544 libxmltooling3_1.2.2-1_i386.deb
9ae117dd12af672afa02123108813ae5383a84d9375b300bccdcc2c3aacb185b 78514 libxmltooling-dev_1.2.2-1_i386.deb
362f69db0b53d0a21531b3ec3220d3d0adfff694a92ca98c39fc83a1ff950f2d 12348 xmltooling-schemas_1.2.2-1_all.deb
478559f8b1614b7e4a6bc8cfd6bc8c2aa7e89a383c6c9bc977d7cedef4fa4cfd 1145110 libxmltooling-doc_1.2.2-1_all.deb
Files:
4473af0eb89b1d0121801d5948da0500 1442 libs extra xmltooling_1.2.2-1.dsc
2331cbcf257319c40854cefd1783fa96 573383 libs extra xmltooling_1.2.2.orig.tar.gz
b9dec21b986ad3aa81828f3ca46be806 6526 libs extra xmltooling_1.2.2-1.diff.gz
53fe166a56de9c9a4b53449ed4c6b170 704544 libs extra libxmltooling3_1.2.2-1_i386.deb
09c524b2bf7d507b04c087c28f963311 78514 libdevel extra libxmltooling-dev_1.2.2-1_i386.deb
f371b52756ebb240a44ee240def34646 12348 text extra xmltooling-schemas_1.2.2-1_all.deb
c605c34a09fd8f22c09bfe239df14baf 1145110 doc extra libxmltooling-doc_1.2.2-1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
iEYEARECAAYFAkqW0lYACgkQ+YXjQAr8dHZGRgCgvOL0ajZtNxal+5XNzzeupoYu
FZsAni0e467mWm77u9UZU24vuKdjcfdO
=CpoQ
-----END PGP SIGNATURE-----
Accepted:
libxmltooling-dev_1.2.2-1_i386.deb
to pool/main/x/xmltooling/libxmltooling-dev_1.2.2-1_i386.deb
libxmltooling-doc_1.2.2-1_all.deb
to pool/main/x/xmltooling/libxmltooling-doc_1.2.2-1_all.deb
libxmltooling3_1.2.2-1_i386.deb
to pool/main/x/xmltooling/libxmltooling3_1.2.2-1_i386.deb
xmltooling-schemas_1.2.2-1_all.deb
to pool/main/x/xmltooling/xmltooling-schemas_1.2.2-1_all.deb
xmltooling_1.2.2-1.diff.gz
to pool/main/x/xmltooling/xmltooling_1.2.2-1.diff.gz
xmltooling_1.2.2-1.dsc
to pool/main/x/xmltooling/xmltooling_1.2.2-1.dsc
xmltooling_1.2.2.orig.tar.gz
to pool/main/x/xmltooling/xmltooling_1.2.2.orig.tar.gz
Reply to: