-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 14 Jun 2019 11:13:39 +0200 Source: znc Binary: znc znc-dbg znc-dev znc-perl znc-python znc-tcl Architecture: i386 Version: 1.6.5-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Patrick Matthäi Description: znc - advanced modular IRC bouncer znc-dbg - advanced modular IRC bouncer (debugging symbols) znc-dev - advanced modular IRC bouncer (development headers) znc-perl - advanced modular IRC bouncer (Perl extension) znc-python - advanced modular IRC bouncer (Python extension) znc-tcl - advanced modular IRC bouncer (Tcl extension) Closes: 925285 Changes: znc (1.6.5-1+deb9u2) stretch-security; urgency=high . * Add upstream patch 03-CVE-2019-12816 to fix a remote code execution by elevating privileges as described in CVE-2019-12816. * Add patch 04-CVE-2019-9917 to fix CVE-2019-9917: Denial of Service (crash) via invalid encoding. Much thanks to Santiago Ruano Rincón for this patch! Closes: #925285 Checksums-Sha1: 17ac52e929b857d6db850ed311f4b536f1bc820b 23966556 znc-dbg_1.6.5-1+deb9u2_i386.deb 2c55e0984bb04d6723fdf7514bfdaca3a2558824 100702 znc-dev_1.6.5-1+deb9u2_i386.deb 3c11b58095eb602e4417e4264aaf95f9113c4b02 592442 znc-perl_1.6.5-1+deb9u2_i386.deb 4e553ce3c2bfc1ddf9226b8d31d3af27dcdc5737 646972 znc-python_1.6.5-1+deb9u2_i386.deb 35c3ae8c2b5b9d0f91e57b4f5d1c44ea91195163 72024 znc-tcl_1.6.5-1+deb9u2_i386.deb 3187e0fa64e7e4ec9d101720bf45c3d78e38bd1f 7878 znc_1.6.5-1+deb9u2_i386.buildinfo 9c3f93e4150510520e0ebfe280253a9359cef7fa 1547048 znc_1.6.5-1+deb9u2_i386.deb Checksums-Sha256: 101485227cd7f49d3065066ee641d6b64546bab92fd145c18e2cd35e30419a50 23966556 znc-dbg_1.6.5-1+deb9u2_i386.deb 11106c2c84c4fb19d831fe4857d43676165278d1999c250fa233ecf6085e1786 100702 znc-dev_1.6.5-1+deb9u2_i386.deb 3324c33eaf39a89e75ff3be63af159c5cce6d52e7a25bc6d937d0b0bd2185b37 592442 znc-perl_1.6.5-1+deb9u2_i386.deb 159ca1167268c9b5ce35b251f9aec9ea1a39117c2284a06cb4c5c90a434443cb 646972 znc-python_1.6.5-1+deb9u2_i386.deb 1228844d63fad3a23e6bec868b7ad7f4ee17165d752a29ce35c227177031f81a 72024 znc-tcl_1.6.5-1+deb9u2_i386.deb 6ccd389f3da66a8405a2ee066649347a8f5b50eeca3b95889309079efbd2fa56 7878 znc_1.6.5-1+deb9u2_i386.buildinfo e2e662ef472b819d17176f25c5a98fb69ae6140f915e9fb0efd2cc56bda8fb1d 1547048 znc_1.6.5-1+deb9u2_i386.deb Files: ce6bd981a55c893155afd9c14658550c 23966556 debug extra znc-dbg_1.6.5-1+deb9u2_i386.deb df3c8844ba418e6f0e3b047bffcc1da6 100702 net optional znc-dev_1.6.5-1+deb9u2_i386.deb 42c37170879ac0c9a859ef84fd180838 592442 net optional znc-perl_1.6.5-1+deb9u2_i386.deb 82bbe11563181ec2262679fcc6d1da59 646972 net optional znc-python_1.6.5-1+deb9u2_i386.deb c36804a21f219432f2571c6315e1d88d 72024 interpreters optional znc-tcl_1.6.5-1+deb9u2_i386.deb e5cc8456471b6bffb1e4f144ebcfc96c 7878 net optional znc_1.6.5-1+deb9u2_i386.buildinfo 3e1f9f6ff130b1e323cfcce8fc4a8803 1547048 net optional znc_1.6.5-1+deb9u2_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE56RkdImmGnu/qTMEtnmMmMOJfQ0FAl0DkJ0ACgkQtnmMmMOJ fQ0DoRAAn/KYFjO7gSJPv+5bzmELHoLYiEf5kqpVfBI1kf3Rs9kb14miaXvMB4se iCtfv0nu449QShiv3Da2vEV3RjddQbsLheeSICWLTG1Zal7g4LEN2bdaTGTtqjYY v7VIsDL6uH8YdYKIYkA9rTb6CecsqluWanoiYE4eFnHcsnZkYfMbYkEUCpd8Zv9/ NhSBLdIT0H+4kuQDawQNUhLvN2lkWl3PmaPHtyjbvMjOf1i7c/iWQZ92my7nhTXD lARYME8GTA3FPqjLZNgh/mqGfyqKtaeVU6tyXBDdQAfCnp98f9Zq2oBohh8aCVFX 3d/bi/rp4fOups+KwF0ohYmn37LmlrhDykaP01hAHRUOGrNTIycWn8tqZ4RgEnVE 0L/HsHutE5HE2feVJe19I3huRLqF74IvuxEDsD4FeTHO2s695b1c67YgOS9XZk/c U1iWGe9FkPyTN1i9En3hKYETvYGGkYdlfB77I2szOCps69E6bl2ig4wpdttqBi5O q0SEs/ZRxfxN/p6bLxZaT2b42BjGxKWwHoKOWYPd9SAoaQKeATZh+yqJYdZig0k1 aIo4l4QJDsipiQVNUeQjo1vzapJNdj0EAw9Nrl+gqsJGa0k7nCJ1kEt93GP62yVw pi5Fpenqlzu7/Kv9yJmuqrZowIJ+Q1GbnSNHwcvz9KTZDkdadGU= =2IB9 -----END PGP SIGNATURE-----