-----BEGIN PGP SIGNED MESSAGE-----

===========================================================================
             AUSCERT External Security Bulletin Redistribution

            ESB-2002.700 -- Debian Security Advisory DSA 208-1
                  New Perl packages correct Safe handling
                             13 December 2002

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:                perl
                        perl-5.004
                        perl-5.005
Vendor:                 Debian
Operating System:       Debian GNU/Linux 2.2
                        Debian GNU/Linux 3.0
                        Linux
                        UNIX
Impact:                 Reduced Security

- --------------------------BEGIN INCLUDED TEXT--------------------

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - --------------------------------------------------------------------------
Debian Security Advisory DSA 208-1                     security@debian.org
http://www.debian.org/security/                             Martin Schulze
December 12th, 2002                     http://www.debian.org/security/faq
- - --------------------------------------------------------------------------

Package        : perl, perl-5.004, perl-5.005
Vulnerability  : broken safe compartment
Problem-type   : local
Debian-specific: no
CVE  Id        : CAN-2002-1323

A security hole has been discovered in Safe.pm which is used in all
versions of Perl.  The Safe extension module allows the creation of
compartments in which perl code can be evaluated in a new namespace
and the code evaluated in the compartment cannot refer to variables
outside this namespace.  However, when a Safe compartment has already
been used, there's no guarantee that it is Safe any longer, because
there's a way for code to be executed within the Safe compartment to
alter its operation mask.  Thus, programs that use a Safe compartment
only once aren't affected by this bug.

This problem has been fixed in version 5.6.1-8.2 for the current
stable distribution (woody), in version 5.004.05-6.2 and 5.005.03-7.2
for the old stable distribution (potato) and in version 5.8.0-14 for
the unstable distribution (sid).

We recommend that you upgrade your Perl packages.

wget url
        will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
        will update the internal database
apt-get upgrade
        will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 2.2 alias potato
- - ---------------------------------

  Source archives:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2.dsc
      Size/MD5 checksum:      675 6fd3dd1d3346fed64da5a5af67730586
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2.diff.gz
      Size/MD5 checksum:    47924 a5b16d1599b04013a139510563206b24
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05.orig.tar.gz
      Size/MD5 checksum:  2856190 b92ffc4e7bea3a367af102e8db136864
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2.dsc
      Size/MD5 checksum:      694 7531125caf802bad131494e664c53ba2
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2.diff.gz
      Size/MD5 checksum:    96897 fffd8c16f393c20fbac4eef683cb81b3
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03.orig.tar.gz
      Size/MD5 checksum:  3679040 427890d97e32430341c1fa80f55277a7

  Architecture independent components:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-doc_5.004.05-6.2_all.deb
      Size/MD5 checksum:  2296810 f96146c04692fad19a8d6372f86ed69d
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-doc_5.005.03-7.2_all.deb
      Size/MD5 checksum:  2849810 45ab33a3a00906413791b62c1c686aba

  Alpha architecture:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2_alpha.deb
      Size/MD5 checksum:  1634058 f0765237e1ac6133ce5e731a04f69c40
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-base_5.004.05-6.2_alpha.deb
      Size/MD5 checksum:   452634 aae1fc314f90b6a1b8007a1e396db5ff
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-debug_5.004.05-6.2_alpha.deb
      Size/MD5 checksum:  1984930 b2669cce93aeb5c6b5839cd75e946bff
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-suid_5.004.05-6.2_alpha.deb
      Size/MD5 checksum:   346460 603729228532b771cd604349fe5699d6

    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2_alpha.deb
      Size/MD5 checksum:  1978462 622b3d300bafcadf874a529efac4f4d2
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-base_5.005.03-7.2_alpha.deb
      Size/MD5 checksum:   576628 df9878b0d71f9be6ea9a4f9f2e8a8bae
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-debug_5.005.03-7.2_alpha.deb
      Size/MD5 checksum:  2218552 497012e99b26b25e28c3f0de6d6cd879
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-suid_5.005.03-7.2_alpha.deb
      Size/MD5 checksum:   373452 5e5c6bb092c749d580b5562263940ffa
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-thread_5.005.03-7.2_alpha.deb
      Size/MD5 checksum:  1436580 8ac1e7a3a3cd9450558425223a711931

  ARM architecture:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2_arm.deb
      Size/MD5 checksum:  1483602 3870f9e80d4d3f94c4632ee34789dcb0
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-base_5.004.05-6.2_arm.deb
      Size/MD5 checksum:   384104 c4d285d983ea8c008d9a9600637d7c36
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-debug_5.004.05-6.2_arm.deb
      Size/MD5 checksum:  1545134 6902e9132b6a151d762e70492b20c9b8
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-suid_5.004.05-6.2_arm.deb
      Size/MD5 checksum:   274420 44bc377d6d03c4f92a8b011f8bc206f8

    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2_arm.deb
      Size/MD5 checksum:  1811144 a39742c03be35027e33940c4a6d3635d
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-base_5.005.03-7.2_arm.deb
      Size/MD5 checksum:   497266 646a5e7b3b0b6a12642ed3d5614a7cd9
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-debug_5.005.03-7.2_arm.deb
      Size/MD5 checksum:  1729482 ceae8209098a67c92aa2daf047fd27ca
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-suid_5.005.03-7.2_arm.deb
      Size/MD5 checksum:   295184 7695926a9ad37b86d0a87f1667b8979c
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-thread_5.005.03-7.2_arm.deb
      Size/MD5 checksum:  1179262 2483d5a20e4da3248e7263475e6fa027

  Intel IA-32 architecture:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2_i386.deb
      Size/MD5 checksum:  1420958 823d8332d4c8efc60e0b2b281135e39f
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-base_5.004.05-6.2_i386.deb
      Size/MD5 checksum:   350960 5634ba10c63410a9d588987b9e974465
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-debug_5.004.05-6.2_i386.deb
      Size/MD5 checksum:  1427404 4aa33ddc3ed0accbb7bd5609b0f233bd
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-suid_5.004.05-6.2_i386.deb
      Size/MD5 checksum:   243124 00f1fe913822a12d3854b92466b82323

    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2_i386.deb
      Size/MD5 checksum:  1727118 6fc4a9e6c59df5e3328a54607e2410e3
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-base_5.005.03-7.2_i386.deb
      Size/MD5 checksum:   456108 52e34298461dd967f66184ee0d42a67a
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-debug_5.005.03-7.2_i386.deb
      Size/MD5 checksum:  1600660 014d87327c020314b165eacad0e2293e
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-suid_5.005.03-7.2_i386.deb
      Size/MD5 checksum:   261712 c2a9fa85c59a3f73b69bd443296ab55c
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-thread_5.005.03-7.2_i386.deb
      Size/MD5 checksum:  1084670 68bd61092939bc273d9247d02b30c664

  Motorola 680x0 architecture:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2_m68k.deb
      Size/MD5 checksum:  1400504 651333c9bebb66115e426006437b1335
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-base_5.004.05-6.2_m68k.deb
      Size/MD5 checksum:   337238 ca6320d6a1bd2315c60a1eb3f670a246
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-debug_5.004.05-6.2_m68k.deb
      Size/MD5 checksum:  1448000 a8d1bcb1fd7d1642de4f15d07eb12df0
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-suid_5.004.05-6.2_m68k.deb
      Size/MD5 checksum:   224576 98973b9285aace6bfef3a465074e3389

    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2_m68k.deb
      Size/MD5 checksum:  1720558 5db84b86a96ae2a8a59283de92c302f9
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-base_5.005.03-7.2_m68k.deb
      Size/MD5 checksum:   441448 c9b9df69d412ab6d238fce97dfc1118a
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-debug_5.005.03-7.2_m68k.deb
      Size/MD5 checksum:  1625104 27b5f41f0ffcd4b8b47ff67208ec5197
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-suid_5.005.03-7.2_m68k.deb
      Size/MD5 checksum:   241978 1ced6b90953f1e24920405ca4a436546
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-thread_5.005.03-7.2_m68k.deb
      Size/MD5 checksum:  1047540 ae1a459e1ac0ed9805c01aec4965346f

  PowerPC architecture:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2_powerpc.deb
      Size/MD5 checksum:  1534604 a1609403aaf9de2f632bb810d61c7b00
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-base_5.004.05-6.2_powerpc.deb
      Size/MD5 checksum:   389092 4491ee5c3ff8b6276678ef014e6be0ed
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-debug_5.004.05-6.2_powerpc.deb
      Size/MD5 checksum:  1592994 c7fe09bb5b58c72a86442a09f66d7c88
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-suid_5.004.05-6.2_powerpc.deb
      Size/MD5 checksum:   278810 e1fd7a39b415dcff9d3425f1ebe2174b

    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2_powerpc.deb
      Size/MD5 checksum:  1869112 4b98eb9533d97dd0ef459c3b5a1b2f34
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-base_5.005.03-7.2_powerpc.deb
      Size/MD5 checksum:   503132 c873c96c523b76c145a5a0b2081fedc0
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-debug_5.005.03-7.2_powerpc.deb
      Size/MD5 checksum:  1777628 4daa47c28d3018bef71dea9623d4bda1
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-suid_5.005.03-7.2_powerpc.deb
      Size/MD5 checksum:   301092 31e093bf77be941c84076ecd25e8a0b6
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-thread_5.005.03-7.2_powerpc.deb
      Size/MD5 checksum:  1226326 f763afa8b572fff07c4d09b5fde2b1bf

  Sun Sparc architecture:

    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004_5.004.05-6.2_sparc.deb
      Size/MD5 checksum:  1509774 e98ea7274a3ccdfb9f5f9be7f8757e4e
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-base_5.004.05-6.2_sparc.deb
      Size/MD5 checksum:   394510 0e6777ed605a0e2f77f3d8dc18ec7f9c
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-debug_5.004.05-6.2_sparc.deb
      Size/MD5 checksum:  1584186 4f6b4e64ef3b560f968f7a361f398a26
    http://security.debian.org/pool/updates/main/p/perl-5.004/perl-5.004-suid_5.004.05-6.2_sparc.deb
      Size/MD5 checksum:   277100 2a7d67b314452596e1eef880b66fb035

    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005_5.005.03-7.2_sparc.deb
      Size/MD5 checksum:  1842406 4f8749d0e3c7c247ff21086f5397003a
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-base_5.005.03-7.2_sparc.deb
      Size/MD5 checksum:   509686 b7a585e54be07c9ad31262dd71765c43
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-debug_5.005.03-7.2_sparc.deb
      Size/MD5 checksum:  1765462 6c61ddbed07caf7dccff8903f9a50b96
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-suid_5.005.03-7.2_sparc.deb
      Size/MD5 checksum:   298130 1d91112e70cf918007d2d9dfd54eff5c
    http://security.debian.org/pool/updates/main/p/perl-5.005/perl-5.005-thread_5.005.03-7.2_sparc.deb
      Size/MD5 checksum:  1196302 5b11c7a8ee7106d4aa3111f09198ce23


Debian GNU/Linux 3.0 alias woody
- - --------------------------------

  Source archives:

    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2.dsc
      Size/MD5 checksum:      687 0a37bd12b751be3b8d3b7c9feb4b1578
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2.diff.gz
      Size/MD5 checksum:   136945 969306bc1e6ddb9f8bd7e3434687577e
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1.orig.tar.gz
      Size/MD5 checksum:  5983695 ec1ff15464809b562aecfaa2e65edba6

  Architecture independent components:

    http://security.debian.org/pool/updates/main/p/perl/libcgi-fast-perl_5.6.1-8.2_all.deb
      Size/MD5 checksum:    30690 b1629e06f8dbb2609902103547cc367e
    http://security.debian.org/pool/updates/main/p/perl/perl-doc_5.6.1-8.2_all.deb
      Size/MD5 checksum:  3886634 d11263b85be831612427c8600674a371
    http://security.debian.org/pool/updates/main/p/perl/perl-modules_5.6.1-8.2_all.deb
      Size/MD5 checksum:  1278564 b95407464043384d30781faccf01bd33

  Alpha architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_alpha.deb
      Size/MD5 checksum:   619216 ef8cc6e5d6c20dc433ae1d659b2c5068
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_alpha.deb
      Size/MD5 checksum:   435158 bba5f09eb6ec49dcadb45ecbedecdb91
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_alpha.deb
      Size/MD5 checksum:  1217478 88da9aa62d25ba1097a690ba3c0f6d1c
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_alpha.deb
      Size/MD5 checksum:   208402 d7176ac9b38441f5bfe5326483591446
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_alpha.deb
      Size/MD5 checksum:  2827162 23a2d23c15e08dcdfb6d2db692854803
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_alpha.deb
      Size/MD5 checksum:    34882 abe4737995ebc486288c59883c034f5e

  ARM architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_arm.deb
      Size/MD5 checksum:   516210 f7b12e81326b6b539d5c33e71838fd21
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_arm.deb
      Size/MD5 checksum:   362620 827e5556189ec212418bf103d7e5cdaf
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_arm.deb
      Size/MD5 checksum:  1164060 64f9cd7a6a427c7bb75a1280a1a82dcf
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_arm.deb
      Size/MD5 checksum:   544640 a4971c38b498b4335a6f0e024cd22bd7
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_arm.deb
      Size/MD5 checksum:  2307010 6fdc3cc805bac2a0d54756f38b5e6e5c
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_arm.deb
      Size/MD5 checksum:    29384 99c6a54471e0f4c74e436fca584771f7

  Intel IA-32 architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_i386.deb
      Size/MD5 checksum:   424280 13f9e9818583f6271f18b91b085670d9
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_i386.deb
      Size/MD5 checksum:   347608 6877c287c4150b1d28a44eaaa9b3e124
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_i386.deb
      Size/MD5 checksum:  1150174 4c4a4ba322568074152b57912eaa817d
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_i386.deb
      Size/MD5 checksum:   495938 5c18d1ea8d4d824a02d5ed3aa9286242
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_i386.deb
      Size/MD5 checksum:  2119404 8a4efc8cd6f71a043d101570ab0f7dfe
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_i386.deb
      Size/MD5 checksum:    28622 1cf8f2a6a07a6209efe9a14fd5b4d71b

  Intel IA-64 architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_ia64.deb
      Size/MD5 checksum:   703468 a86fb3ee913b386366c4747f060a6cb4
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_ia64.deb
      Size/MD5 checksum:   598584 8049f17cfdf8d21d7a1a9c46e6bcf653
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_ia64.deb
      Size/MD5 checksum:  1266330 054fc914b55b2aee5edae9eb1a6de255
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_ia64.deb
      Size/MD5 checksum:   226122 ec44256e233694979695c18174917a07
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_ia64.deb
      Size/MD5 checksum:  3312398 23bb8a945a2b94a6e94ce49712241846
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_ia64.deb
      Size/MD5 checksum:    45356 4fc925c9d161fc1abfd54845b45851fa

  HP Precision architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_hppa.deb
      Size/MD5 checksum:   622792 c9d509f9c04669b89dbc831adfa35952
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_hppa.deb
      Size/MD5 checksum:   473314 a0f2847e292d2e15d087a33b42132e71
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_hppa.deb
      Size/MD5 checksum:  1211402 10c06ae35dfd108e7f0e04aeb955d21d
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_hppa.deb
      Size/MD5 checksum:   208248 ed04c1853d4781d669f49c4d8cc5383a
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_hppa.deb
      Size/MD5 checksum:  2288108 ef9c9f77987ba238319071bfb25baf34
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_hppa.deb
      Size/MD5 checksum:    34086 7dcf0d589140b0d6d38fb009624f3f87

  Motorola 680x0 architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_m68k.deb
      Size/MD5 checksum:   399422 f29ec64aab647f5e21f002120c7eb9fe
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_m68k.deb
      Size/MD5 checksum:   331892 c44118c21f644aa08c5887b82ea53804
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_m68k.deb
      Size/MD5 checksum:  1149290 75c6faff4e510da2c7f11a4ac558aeb2
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_m68k.deb
      Size/MD5 checksum:   192034 45f2af079b3404407bc3e16a781a00d6
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_m68k.deb
      Size/MD5 checksum:  2132032 73edfd9effa4e7eb003b6a95cb7d4077
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_m68k.deb
      Size/MD5 checksum:    27758 597127e7075406d5aab6959e0ebb2452

  Big endian MIPS architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_mips.deb
      Size/MD5 checksum:   522402 2a256043aff322edf9e122c0cc8caccc
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_mips.deb
      Size/MD5 checksum:   364582 24330abdde1aed0996c5f98d0c268d8a
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_mips.deb
      Size/MD5 checksum:  1159010 21ae522778b7bb04c27ba2f4afffc78f
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_mips.deb
      Size/MD5 checksum:   185534 065bedfc0028a2030c7510b24c7aa125
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_mips.deb
      Size/MD5 checksum:  2408592 99edede46704b5535bd40f3c28497f2a
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_mips.deb
      Size/MD5 checksum:    29070 4dd0a0522cefc27887e8db5771a80537

  Little endian MIPS architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_mipsel.deb
      Size/MD5 checksum:   516072 be68919834722b143a1eff985edb3322
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_mipsel.deb
      Size/MD5 checksum:   361170 db077be211b6eb06e04c711b401111d2
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_mipsel.deb
      Size/MD5 checksum:  1155788 a1b70ee558a18c0cc21a473b682173c5
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_mipsel.deb
      Size/MD5 checksum:   184332 b590a06b0e8f319e6ee3b81beeddeafe
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_mipsel.deb
      Size/MD5 checksum:  2265632 08ee0b4aa85bb348547d99d54fa1e862
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_mipsel.deb
      Size/MD5 checksum:    28674 f5ed0bb12b5a7dae8b6923eda0c42f74

  PowerPC architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_powerpc.deb
      Size/MD5 checksum:   567168 e91e2cd90f0ed1d3a0cfc50f555b14a1
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_powerpc.deb
      Size/MD5 checksum:   400552 37e17eb44d5f763349e689c0cee9c306
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_powerpc.deb
      Size/MD5 checksum:  1183270 4a8a97450e4340c2a649c89c867ddb78
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_powerpc.deb
      Size/MD5 checksum:   202046 04896f375ace668f9704b7f729b3af04
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_powerpc.deb
      Size/MD5 checksum:  2300358 49ffe98b102828e73dee2cb367265884
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_powerpc.deb
      Size/MD5 checksum:    30768 26bcf1ddaceb170992bb2e263703db66

  IBM S/390 architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_s390.deb
      Size/MD5 checksum:   450178 634570c1d205b6159bb1635f487f35a0
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_s390.deb
      Size/MD5 checksum:   398366 e80355af2a81c836c63073219ee289b6
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_s390.deb
      Size/MD5 checksum:  1165722 01922ce577fb5cb3a896fdbaae56389f
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_s390.deb
      Size/MD5 checksum:   190824 a97e66609ee1ffbe17159b686d3b4f44
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_s390.deb
      Size/MD5 checksum:  2210438 88e8bafc404a36ededdc3cd7ec37ad41
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_s390.deb
      Size/MD5 checksum:    32442 6bc7d5d4ef6480c3dbcf03f8bf1612c2

  Sun Sparc architecture:

    http://security.debian.org/pool/updates/main/p/perl/libperl-dev_5.6.1-8.2_sparc.deb
      Size/MD5 checksum:   528768 8e322ede11efcb4a0478606a75309cd0
    http://security.debian.org/pool/updates/main/p/perl/libperl5.6_5.6.1-8.2_sparc.deb
      Size/MD5 checksum:   403186 d0fbe836d57eb50acf5b8f0dd5700c40
    http://security.debian.org/pool/updates/main/p/perl/perl_5.6.1-8.2_sparc.deb
      Size/MD5 checksum:  1191662 5267f0025fefd2f54475715f987dbbff
    http://security.debian.org/pool/updates/main/p/perl/perl-base_5.6.1-8.2_sparc.deb
      Size/MD5 checksum:   210898 2e1c86d0dcbfa1f209405f6acc8e2263
    http://security.debian.org/pool/updates/main/p/perl/perl-debug_5.6.1-8.2_sparc.deb
      Size/MD5 checksum:  2284864 01dbfc14641e8072b0d58596344e87c9
    http://security.debian.org/pool/updates/main/p/perl/perl-suid_5.6.1-8.2_sparc.deb
      Size/MD5 checksum:    31026 d9703304aeabb73e9fa6b2c17fccd109

  These files will probably be moved into the stable distribution on
  its next revision.


Survey on the use of Debian GNU/Linux 2.2 alias potato:
http://lists.debian.org/debian-devel-announce-0211/msg00001.html

- - ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>

- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQE9+KFcW5ql+IAeqTIRAomJAKCbNyW0hgEuW8e+YWqxKgKoSncllACgn4Nq
XTwjs2vOyKIowuO3gI1WjeQ=
=q/h4
- -----END PGP SIGNATURE-----

- --------------------------END INCLUDED TEXT--------------------

You have received this e-mail bulletin as a result of your organisation's
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

This security bulletin is provided as a service to AusCERT's members.  As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content.  The decision to use any or all of this information is
the responsibility of each user or organisation, and should be done so in
accordance with site policies and procedures.

NOTE: This is only the original release of the security bulletin.  It may
not be updated when updates to the original are made.  If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author\'s website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above.  If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

        http://www.auscert.org.au/render.html?cid=1980

If you believe that your system has been compromised, contact AusCERT or
your representative in FIRST (Forum of Incident Response and Security
Teams).

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business 
                hours which are GMT+10:00 (AEST).  On call after hours 
                for member emergencies only.

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv
Comment: http://www.auscert.org.au/render.html?it=1967

iQCVAwUBPfndHyh9+71yA2DNAQHcSQP/f41Noc6dxAkBtudilnBnT081vW0qddxB
Sd6e4qxbgrq4tMAFE4OtMWU/gBY/Xq77yT4xn6N2W6NL+DaOJ+K3PC94Mr8+7kJh
aWkzpMEyn8R1xv9Pa5J+eDFypXTaCO2SE9lJSrwB2Qt13MABrdRoV4nMCG3GSq0m
1tU9f57Os4k=
=v96H
-----END PGP SIGNATURE-----