Accepted:
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 13 Dec 2014 10:58:07 +0100 Source: nfs-utils Binary: nfs-kernel-server nfs-common Architecture: source i386 Version: 1:1.2.2-4squeeze3 Distribution: squeeze-lts Urgency: high Maintainer: Debian kernel team <debian-kernel@lists.debian.org> Changed-By: Thorsten Alteholz <deb...@alteholz.de> Description: nfs-common - NFS support files common to client and server nfs-kernel-server - support for NFS kernel server Changes: nfs-utils (1:1.2.2-4squeeze3) squeeze-lts; urgency=high . * Non-maintainer upload by the Squeeze LTS Team. * Fix CVE-2012-3541 rpc.statd: Bind downcall socket to loopback address In the past, rpc.statd posted SM_NOTIFY requests using the same socket it used for sending downcalls to the kernel. To receive replies from remote hosts, the socket was bound to INADDR_ANY. To prevent unwanted data injection, bind this socket to the loopback address. Checksums-Sha1: fed2cdf2e301c67f37e2328b2443a8b8d08a3319 2255 nfs-utils_1.2.2-4squeeze3.dsc bf823cb85844de3ff3bf07601698aaa1cfdd8a28 721051 nfs-utils_1.2.2.orig.tar.bz2 b2955a71ce4e35c82818ee34fd502b1f7d1116fd 40098 nfs-utils_1.2.2-4squeeze3.debian.tar.bz2 882625b8543a4693767994ac93245a9bada64f5e 159446 nfs-kernel-server_1.2.2-4squeeze3_i386.deb 25df1d9f28933ae210fa3a84de0b217ad5ebdcca 227098 nfs-common_1.2.2-4squeeze3_i386.deb Checksums-Sha256: 15fdaa9df0ed87670a9fa19ef7bbc3a2dec08d40907fd5553270601c7f8b6132 2255 nfs-utils_1.2.2-4squeeze3.dsc fd47277666968cf1f6bf3fe4df91a0dd45122bcdf0e24403ea84c5a2dbc9d01e 721051 nfs-utils_1.2.2.orig.tar.bz2 6d6fe46353043f3a129f91184c51c36ddd1b31e3210bf686c3d8d822b24ca382 40098 nfs-utils_1.2.2-4squeeze3.debian.tar.bz2 0bcb1cca99e95a81c6eea27f3fa6c0366de947e1e2b0723850ae252be01c0f66 159446 nfs-kernel-server_1.2.2-4squeeze3_i386.deb abde1c501d71f98dbda2500f2d7edfd8dbb7460466cb59095895e5a5a9892426 227098 nfs-common_1.2.2-4squeeze3_i386.deb Files: 8871742b69c9094fb8dae64fd328fdca 2255 net standard nfs-utils_1.2.2-4squeeze3.dsc dad92f64db3266c7757f71bb53ee8f35 721051 net standard nfs-utils_1.2.2.orig.tar.bz2 77a277261660fc00632de3f807c10fec 40098 net standard nfs-utils_1.2.2-4squeeze3.debian.tar.bz2 c34261244a96b286d048c466d43b9d8f 159446 net optional nfs-kernel-server_1.2.2-4squeeze3_i386.deb 8b5eb573a00a934765956ad0bb74fa90 227098 net standard nfs-common_1.2.2-4squeeze3_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQJ8BAEBCgBmBQJUjBrxXxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXQ2MjAxRkJGRkRCQkRFMDc4MjJFQUJCOTY5 NkZDQUMwRDM4N0I1ODQ3AAoJEJb8rA04e1hHKgUP/0ce/MoHq4Htk83D4uk4xVVE +OGHmwPOAGFo0RtNMHfu3MZLijC0JIz2/DplgmYAkccnudOqAJJ0zV9oTml1uge4 2GPmFgepNbpA5/MJyi+liwd5vOS/6g6bWzP695Y0xQFJBISlqL/C2Nwtt5fBu265 TMemqkksT5AOPHdKZDydjY/Q9g+UW6RaapCLjhfNGHV+pCZOsocQfihJfrocA7tc lf05xelzP2e6ti2qm1sgBgcAJ9IkUslyWWi3j4gwrRlwe72ZvS5g7HRzKuVQ/4B7 cB5T6sqvuI2K5ryqm5UmAnALVmB60/ixVLiERvuK1vb4Gr30Nb7eWWbp5h5B+8S0 u7W4SkXk5C2169N+RPYOXmBC2MJ78BrPKXfwi/4wRrWMH3v+whhD+hDv9RpkE1fm 4d6ii2l8icHR6i0zX4wMXKVvViKVC86AxbOfywVz3LbEPz9aRZVPGPex2G8r+BOE LAXqA45vT6Sw/sbLmnSQAQUeQCjZrmFrQWYOEyTR07AauAHPMwx0TOE0NoR4Fzpe SNRnOiyvV/T8m5vCN4nwEZ7OL1N/Sgo2QIlLPuk2b0BJQpKNM51kBZsggFREYobP XXkFC8K5CQCpVSoz4OroenO+TzyrG2lbZtFbsYF0NkixZNC1ksbB7bLQxNLDfVlM 0KA76QT7v98rm1lOs4yX =oNWi -----END PGP SIGNATURE----- Thank you for your contribution to Debian. -- To UNSUBSCRIBE, email to debian-kernel-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: https://lists.debian.org/e1xzkut-0002wn...@franck.debian.org