DSA 1379-1: New openssl packages fix arbitrary code execution
Posted on: 10/02/2007 11:15 PM

The Debian Security Team published a new security update for Debian GNU/Linux. Here the announcement:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- ------------------------------------------------------------------------
Debian Security Advisory DSA-1379 security@debian.org
http://www.debian.org/security/ Noah Meyerhans
October 02, 2007
- ------------------------------------------------------------------------

Package : openssl
Vulnerability : off-by-one error/buffer overflow
Problem type : remote
Debian-specific: no
CVE Id(s) : CVE-2007-5135
Debian Bug : 444435

An off-by-one error has been identified in the SSL_get_shared_ciphers()
routine in the libssl library from OpenSSL, an implementation of Secure
Socket Layer cryptographic libraries and utilities. This error could
allow an attacker to crash an application making use of OpenSSL's libssl
library, or potentially execute arbitrary code in the security context
of the user running such an application.

For the stable distribution (etch), this problem has been fixed in
version 0.9.8c-4etch1. For the old stable distribution (sarge), this
problem has been fixed in version 0.9.7e-3sarge5. For the unstable and
testing distributions (sid and lenny, respectively), this problem has
been fixed in version 0.9.8e-9.

We recommend that you upgrade your openssl packages.

Upgrade instructions
- --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian 3.1 (oldstable)
- ----------------------

Oldstable updates are available for alpha, amd64, arm, hppa, i386, ia64, m68k, mips, mipsel, powerpc, s390 and sparc.

Source archives:

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e.orig.tar.gz
Size/MD5 checksum: 3043231 a8777164bca38d84e5eb2b1535223474
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5.diff.gz
Size/MD5 checksum: 30634 b64d10acf6285197d3ad8e923883b6d7
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5.dsc
Size/MD5 checksum: 639 d19d0a6a8faf12e7e2abe6b82409af05

alpha architecture (DEC Alpha)

http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_alpha.deb
Size/MD5 checksum: 3342712 38ada0535339d8394a829f22ce835578
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_alpha.udeb
Size/MD5 checksum: 662280 2e67541092c341c4e26e2d17ad11ccc7
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_alpha.deb
Size/MD5 checksum: 2449572 a4e4d409db4eb013544112da61b764be
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_alpha.deb
Size/MD5 checksum: 940288 928194da95c5f7edb570847de437fbf4

amd64 architecture (AMD x86_64 (AMD64))

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_amd64.deb
Size/MD5 checksum: 703530 ca501fee744837c951c78959070eea14
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_amd64.deb
Size/MD5 checksum: 903938 b4c46339201162d467bd46a50c9a0f4e
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_amd64.udeb
Size/MD5 checksum: 495318 2d10728b8ebfb6fbb4d48bd675f866b8
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_amd64.deb
Size/MD5 checksum: 2694270 cc856b1fdd41fffc03b867de55ad2b2c

arm architecture (ARM)

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_arm.deb
Size/MD5 checksum: 607492 63a3b6d82a8d5dd53aa9201322d5f89d
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_arm.deb
Size/MD5 checksum: 2559868 0427629ed30efabf0ea0d168a6c9d36e
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_arm.udeb
Size/MD5 checksum: 410604 6d52b2de602333bcb70306fa2198205e
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_arm.deb
Size/MD5 checksum: 905292 4b0944650181c97b07abb6e2dcb826a6

hppa architecture (HP PA RISC)

http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_hppa.udeb
Size/MD5 checksum: 510404 06fc22d1d0ff5a2c7d36e08d280d4dea
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_hppa.deb
Size/MD5 checksum: 722886 3db792d32f4709c143cb729721278e6c
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_hppa.deb
Size/MD5 checksum: 914764 2ce08cb33e5eed3dff1c3e35af46298c
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_hppa.deb
Size/MD5 checksum: 2695886 a017eb3233fcb938611b5a16bb648277

i386 architecture (Intel ia32)

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_i386.deb
Size/MD5 checksum: 2194088 337fe2d6a280d9a761c04c20d434fe9c
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_i386.deb
Size/MD5 checksum: 2560372 d104ace51eba364a5ce0a50989eee2a0
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_i386.deb
Size/MD5 checksum: 916446 8e96029826588f227906f859bc60667d
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_i386.udeb
Size/MD5 checksum: 452446 f97dde687e4bddebb7d87cebfb925058

ia64 architecture (Intel ia64)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_ia64.deb
Size/MD5 checksum: 975294 d6cd8d020ce8b01f74b807ea5269ba80
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_ia64.deb
Size/MD5 checksum: 3396320 ac2c50b4ec0d45d6192031a4d8e00fd8
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_ia64.deb
Size/MD5 checksum: 973262 d0eaac755fc66353eda96509415847ff
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_ia64.udeb
Size/MD5 checksum: 713794 f1c57b4b6d304dd3161639974eac3c60

m68k architecture (Motorola Mc680x0)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_m68k.deb
Size/MD5 checksum: 890112 7cbbdbd930c014abda49585091ea79e7
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_m68k.deb
Size/MD5 checksum: 591738 200066dccdc6c71dc1876808a9f171fa
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_m68k.deb
Size/MD5 checksum: 2317278 1c817bae9fb36d37b9e01968d12276bc
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_m68k.udeb
Size/MD5 checksum: 397376 829b13be689f79cf5939c68a367aba66

mips architecture (MIPS (Big Endian))

http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_mips.udeb
Size/MD5 checksum: 498242 fac3b981032a5208fe1dd09bf5e3a27e
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_mips.deb
Size/MD5 checksum: 896986 d6726bbe47be5a0fdf836543999e3131
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_mips.deb
Size/MD5 checksum: 2779818 938453cc67d34dfbd4b1c8622d0b0210
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_mips.deb
Size/MD5 checksum: 706860 ebcbf99b0d7e22f5bb51d934f89844a4

mipsel architecture (MIPS (Little Endian))

http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_mipsel.deb
Size/MD5 checksum: 2767550 d82a3064d20188b4be8fbb8497afb3b2
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_mipsel.deb
Size/MD5 checksum: 694712 bfd23ffe84cce310098a30d88d48539e
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_mipsel.deb
Size/MD5 checksum: 896074 5d78a7d03a70187843a61629dcde7c41
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_mipsel.udeb
Size/MD5 checksum: 487096 7cc469dadf0573d735ef67cb6e0c7cfd

powerpc architecture (PowerPC)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_powerpc.deb
Size/MD5 checksum: 908528 5a246a0cea9ee84aad61a85e1d75649f
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_powerpc.deb
Size/MD5 checksum: 707858 9991e97fbbedd64773516f5fcd3bce17
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_powerpc.udeb
Size/MD5 checksum: 499480 07ea534da914f58872f5ef63aaed3ce2
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_powerpc.deb
Size/MD5 checksum: 2775668 882321c4fb23cb371b190bf62d94a814

s390 architecture (IBM S/390)

http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_s390.udeb
Size/MD5 checksum: 533602 b2614e1858e5e7ae29878f6cd79934f6
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_s390.deb
Size/MD5 checksum: 918606 0077d713f03a6c353d9f55fd7d7c19b0
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_s390.deb
Size/MD5 checksum: 746346 e1eb1204c4dfd489bd2a40eddec1a431
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_s390.deb
Size/MD5 checksum: 2717578 42d6c056372ae4270319050628f873e6

sparc architecture (Sun SPARC/UltraSPARC)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.7e-3sarge5_sparc.deb
Size/MD5 checksum: 924694 9d9711e944c4b7ec5b01156da26097ad
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.7-udeb_0.9.7e-3sarge5_sparc.udeb
Size/MD5 checksum: 478366 798596ea4ad82e2a450985256a548818
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.7e-3sarge5_sparc.deb
Size/MD5 checksum: 2630730 0b6358a3eeff5b83c684049f7c550582
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.7_0.9.7e-3sarge5_sparc.deb
Size/MD5 checksum: 1818686 09d59841628a9975895116aa43e081a8

Debian (stable)
- ---------------

Stable updates are available for alpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.

Source archives:

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1.dsc
Size/MD5 checksum: 807 c7cee551a6affbac043c05484b6f2e8e
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1.diff.gz
Size/MD5 checksum: 44257 1057ca0c69dedda8cec94a820da1d99a
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c.orig.tar.gz
Size/MD5 checksum: 3313857 78454bec556bcb4c45129428a766c886

alpha architecture (DEC Alpha)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_alpha.deb
Size/MD5 checksum: 1025888 2d2423d058f55197141c9b3b50164b1a
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_alpha.deb
Size/MD5 checksum: 2620680 96256021a44fef6e2a7afc6bae5c2dd8
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_alpha.deb
Size/MD5 checksum: 2560180 528a768eb35e76059a29037f2ac38d21
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_alpha.udeb
Size/MD5 checksum: 677058 0c967fa1c1fa56a410d23ce4bed0c6a7
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_alpha.deb
Size/MD5 checksum: 4557284 84c8cb486348146114216cfdce53a017

amd64 architecture (AMD x86_64 (AMD64))

http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_amd64.udeb
Size/MD5 checksum: 580040 7af4acf0ea362be607fe43de6436f2ef
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_amd64.deb
Size/MD5 checksum: 2179570 54509d057a7351147f0ed2790b5ef103
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_amd64.deb
Size/MD5 checksum: 890368 b2e5ba39115b67c6e1cf7b466bef723f
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_amd64.deb
Size/MD5 checksum: 1653348 ee8129fe12623d4cb2d0fb8736f7bda2
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_amd64.deb
Size/MD5 checksum: 1004882 288b472372e826628fbbc45fc8cc285a

arm architecture (ARM)

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_arm.deb
Size/MD5 checksum: 805358 31e86edb05070ef066093ca95041c86a
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_arm.deb
Size/MD5 checksum: 1536622 d7e36c20a897d725942af5d41c6fe918
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_arm.deb
Size/MD5 checksum: 1011598 f952aa9caa5ac24e3ea6df52ca97c82f
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_arm.udeb
Size/MD5 checksum: 516236 dd35eae7f5246fea676e09bb7b45b062
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_arm.deb
Size/MD5 checksum: 2049646 e34d78a4037badb7f6cff84aa864d5a2

hppa architecture (HP PA RISC)

http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_hppa.deb
Size/MD5 checksum: 2244384 c5f18be0923ab860fb1f35c3118d34e2
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_hppa.deb
Size/MD5 checksum: 946010 139b08751ded8622e07ad1d7f7b9bf28
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_hppa.udeb
Size/MD5 checksum: 631064 b5ae5e0ac641956e68cb4f01e86ae1f5
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_hppa.deb
Size/MD5 checksum: 1017164 16461933c588563a262baf864795bb2f
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_hppa.deb
Size/MD5 checksum: 1583762 80ef7c3c1137fe3891c549ace1fda3b9

i386 architecture (Intel ia32)

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_i386.deb
Size/MD5 checksum: 5583100 c41c0c1b3a021fa5229e5c9f0aa5c1f0
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_i386.deb
Size/MD5 checksum: 2716474 649e6cbcf83b68f49732c771447d4eef
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_i386.udeb
Size/MD5 checksum: 554580 42c15a29d35082d1d8314ed6e66cc6bd
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_i386.deb
Size/MD5 checksum: 2086314 3355cb82f44c379fbaf43fc90f1bbc26
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_i386.deb
Size/MD5 checksum: 1000646 5513d9af4e2d7dd18cfc031b54175de2

ia64 architecture (Intel ia64)

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_ia64.deb
Size/MD5 checksum: 1191550 c124efcb25a532994c161ca7efc41161
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_ia64.udeb
Size/MD5 checksum: 801478 6cca91efc077aba703a69c006413ac6b
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_ia64.deb
Size/MD5 checksum: 1568360 3c6b31b0dd48fc4bde48f110e1e3324e
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_ia64.deb
Size/MD5 checksum: 2592234 20cb22d640e94394d00da679a2bfbf7f
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_ia64.deb
Size/MD5 checksum: 1070970 ecb68de4274ca264aa6bc369af65ceaa

mips architecture (MIPS (Big Endian))

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_mips.deb
Size/MD5 checksum: 993012 990aea1fca9c480aa06aad0b95efb0cd
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_mips.deb
Size/MD5 checksum: 875686 270144a6e54f6e322567d2fda0dcbfdd
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_mips.deb
Size/MD5 checksum: 2258570 60fac4bc2f1299ba3cec2e3d0b68b01b
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_mips.deb
Size/MD5 checksum: 1691868 0dd000f685f4a502e583751453060dda
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_mips.udeb
Size/MD5 checksum: 580120 c9514d9592baeb04842301114c0c972f

mipsel architecture (MIPS (Little Endian))

http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_mipsel.deb
Size/MD5 checksum: 2255454 5378c671b322cf7c4c47712749db51bb
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_mipsel.deb
Size/MD5 checksum: 1648470 93df7f8b24908ccc1662b28604a3046e
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_mipsel.deb
Size/MD5 checksum: 992430 36062847528168d78caf34bc7c6d36f5
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_mipsel.deb
Size/MD5 checksum: 860208 f58502f60536c0e926aa7ce085aeac12
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_mipsel.udeb
Size/MD5 checksum: 566178 b43167c7131498d8d6d79f7930fa310c

powerpc architecture (PowerPC)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_powerpc.deb
Size/MD5 checksum: 1001838 dbbd81da0412854593c26c57075856b7
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_powerpc.deb
Size/MD5 checksum: 1727494 622925059136caf85520b2486848fe5b
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_powerpc.deb
Size/MD5 checksum: 894908 c7746da806a7a1024c5905dc23d2f47f
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_powerpc.deb
Size/MD5 checksum: 2210384 64390a835586afcd0c75f158256a8512
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_powerpc.udeb
Size/MD5 checksum: 585208 dc614e47894295097fd0e46f6cfc43d4

s390 architecture (IBM S/390)

http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_s390.deb
Size/MD5 checksum: 1014086 133fc07dbc98ae1ab2896ec2ec4ef73e
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_s390.deb
Size/MD5 checksum: 950970 4606a7811ca36f5a883c404c28161749
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_s390.deb
Size/MD5 checksum: 1631932 9bc040542a3f2b454481f8d7f3d1c55c
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_s390.udeb
Size/MD5 checksum: 642946 3ea0f5c1bf0e6132f1e42718dda1a405
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_s390.deb
Size/MD5 checksum: 2193528 2d4ce4a70f40e5bd357d9d1b307b9fed

sparc architecture (Sun SPARC/UltraSPARC)

http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8-dbg_0.9.8c-4etch1_sparc.deb
Size/MD5 checksum: 4089710 b875491e34a765d952d58e38c18adf73
http://security.debian.org/pool/updates/main/o/openssl/libssl-dev_0.9.8c-4etch1_sparc.deb
Size/MD5 checksum: 2107548 3e03586577a0ba93a75d6385c23772c7
http://security.debian.org/pool/updates/main/o/openssl/libssl0.9.8_0.9.8c-4etch1_sparc.deb
Size/MD5 checksum: 2125640 16347ca52160e5358171b9c78ab17071
http://security.debian.org/pool/updates/main/o/openssl/libcrypto0.9.8-udeb_0.9.8c-4etch1_sparc.udeb
Size/MD5 checksum: 538976 fcd676b77a2fcea70101491de58da682
http://security.debian.org/pool/updates/main/o/openssl/openssl_0.9.8c-4etch1_sparc.deb
Size/MD5 checksum: 1010338 aaf2c05b6b59a40dc85259f6479fbe04


These files will probably be moved into the stable distribution on
its next update.

- ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show lt;pkggt;' and http://packages.debian.org/lt;pkggt;
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHAqPMYrVLjBFATsMRAtYIAJ0X4+0NpFIqpmR8pDxEaHjGrsRTBgCdExbK
y41ZdnaMZ1IbgMSDqfWOwmU=
=hbSk
-----END PGP SIGNATURE-----



Printed from Linux Compatible (http://www.linuxcompatible.org/news/story/dsa_1379_1_new_openssl_packages_fix_arbitrary_code_execution.html)