-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

===========================================================================
             AUSCERT External Security Bulletin Redistribution

                ESB-2007.0598 -- [Win][UNIX/Linux][Debian]
                New bochs packages fix privilege escalation
                               8 August 2007

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:              bochs
Publisher:            Debian
Operating System:     Debian GNU/Linux
                      UNIX variants (UNIX, Linux, OSX)
                      Windows
Impact:               Increased Privileges
Access:               Existing Account
CVE Names:            CVE-2007-2893

Original Bulletin:    http://www.debian.org/security/2007/dsa-1351

Comment: This advisory references vulnerabilities in products which run on
         platforms other than Linux. It is recommended that administrators
         running bochs check for an updated version of the software for
         their operating system.

- --------------------------BEGIN INCLUDED TEXT--------------------

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - --------------------------------------------------------------------------
Debian Security Advisory DSA 1351-1                    security@debian.org
http://www.debian.org/security/                         Moritz Muehlenhoff
August 7th, 2007                        http://www.debian.org/security/faq
- - --------------------------------------------------------------------------

Package        : bochs
Vulnerability  : buffer overflow
Problem type   : local
Debian-specific: no
CVE ID         : CVE-2007-2893

Tavis Ormandy discovered that bochs, a highly portable IA-32 PC emulator,
is vulnerable to a buffer overflow in the emulated NE2000 network device
driver, which may lead to privilege escalation.

For the oldstable distribution (sarge) this problem has been fixed in
version 2.1.1+20041109-3sarge1.

For the stable distribution (etch) this problem has been fixed in
version 2.3-2etch1.

For the unstable distribution (sid) this problem has been fixed in
version 2.3+20070705-1.

We recommend that you upgrade your bochs packages.


Upgrade Instructions
- - --------------------

wget url
        will fetch the file for you
dpkg -i file.deb
        will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given at the end of this advisory:

apt-get update
        will update the internal database
apt-get upgrade
        will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian GNU/Linux 3.1 alias sarge
- - --------------------------------

  Source archives:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1.dsc
      Size/MD5 checksum:     1095 c68bfe59dd98276f0a9e1b97ae0bdfb4
    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1.diff.gz
      Size/MD5 checksum:   119045 465bd12d05822820c485f4e65ab998b2
    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109.orig.tar.gz
      Size/MD5 checksum:  3633019 45022fbb35468fd725e205e2218d8a72

  Architecture independent components:

    http://security.debian.org/pool/updates/main/b/bochs/bochs-doc_2.1.1+20041109-3sarge1_all.deb
      Size/MD5 checksum:   208586 338114a4ff2ec37a3f8ffe8bfab3f988
    http://security.debian.org/pool/updates/main/b/bochs/bochsbios_2.1.1+20041109-3sarge1_all.deb
      Size/MD5 checksum:   131232 5d72368002b506685b4f301f7fad3958

  Alpha architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_alpha.deb
      Size/MD5 checksum:   675638 9f6803fc2d43e23654144707b2570d42
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_alpha.deb
      Size/MD5 checksum:    65664 7659a0d4a8a2a00e84510a8333f65e1a
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_alpha.deb
      Size/MD5 checksum:    53752 2ce5249a6fa2e62f9ccae101fc9834e4
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_alpha.deb
      Size/MD5 checksum:   144604 200dcaaad2b889fc2daed8f37337d28e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_alpha.deb
      Size/MD5 checksum:    64990 67543bfa9b178c6118a6c97c338928ad
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_alpha.deb
      Size/MD5 checksum:    53554 60cffca9cc05f6c80efd68629015d11a

  AMD64 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_amd64.deb
      Size/MD5 checksum:   588380 f733c64e27f8a0b07f448e28590d6b34
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_amd64.deb
      Size/MD5 checksum:    63516 804a2021ebc6b22c3b2f09cae62ecbba
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_amd64.deb
      Size/MD5 checksum:    53086 424913f0b5fe87547e1ad8bf040337db
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_amd64.deb
      Size/MD5 checksum:   137260 a04ff1120b1b5b645b69f1cbe65d2090
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_amd64.deb
      Size/MD5 checksum:    62646 515236bbe9e5b699787b7a15d1bf99c0
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_amd64.deb
      Size/MD5 checksum:    52362 2610b36e959720df44a305602732d95b

  ARM architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_arm.deb
      Size/MD5 checksum:   589556 06070a16c14cd7f3fde9d327a0972527
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_arm.deb
      Size/MD5 checksum:    63210 62f08696e69af8f215b72a525061da60
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_arm.deb
      Size/MD5 checksum:    53266 56caf0e3d3c3c275d5804e0c34390033
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_arm.deb
      Size/MD5 checksum:   150800 9a4d2b6d3a1eefe5e557a453d34e0419
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_arm.deb
      Size/MD5 checksum:    62994 000d5ddbdc402b85130f10d633a58aea
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_arm.deb
      Size/MD5 checksum:    51966 bd030399a778c540c3379084db72bf80

  HP Precision architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_hppa.deb
      Size/MD5 checksum:   667804 c18930042935ab5a430c1f6eff63645e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_hppa.deb
      Size/MD5 checksum:    67000 83a37c30308a0e48869afeadb9f33a7e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_hppa.deb
      Size/MD5 checksum:    55530 6183494fd16dcc79697fb0292f94f650
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_hppa.deb
      Size/MD5 checksum:   168834 bcf61ea84c0e9247bac5627d1872e90f
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_hppa.deb
      Size/MD5 checksum:    68370 702cb625116d698423ccb64eaabd4dab
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_hppa.deb
      Size/MD5 checksum:    53792 698c2ceab39b842443ea6c78cd403958

  Intel IA-32 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:   585628 dcd61a6b66292f9bf14591f8c46d0ffd
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:    63008 30f58621edb9d2f08c95a2a917303355
    http://security.debian.org/pool/updates/main/b/bochs/bochs-svga_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:    54036 51f1aabcbc74724a6a7e5f6dc60af8fa
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:    53428 c34f1a81147ee4644c71a64256a627a7
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:   134834 c74e2b079eb8e420b1ff93e365b2bf48
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:    62196 211e0cb7af8118054ff65f47028efe1e
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:    51944 387b7876fcf8a5719e1ed1a35ba24928
    http://security.debian.org/pool/updates/main/b/bochs/sb16ctrl-bochs_2.1.1+20041109-3sarge1_i386.deb
      Size/MD5 checksum:    48546 5b98f92edff4258fbd10542b4955e767

  Intel IA-64 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_ia64.deb
      Size/MD5 checksum:   771622 5a8670fbc87627e03e9c5505382f3eef
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_ia64.deb
      Size/MD5 checksum:    68754 ca2e78bf52c613d0c82086881a98d188
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_ia64.deb
      Size/MD5 checksum:    55540 6b5b1834802e74194a1b447ab47e51d6
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_ia64.deb
      Size/MD5 checksum:   160792 ed88d64755599e3ee0e8664e966f1eaf
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_ia64.deb
      Size/MD5 checksum:    68854 56d86687301d96edb2959515f7d6a0db
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_ia64.deb
      Size/MD5 checksum:    55308 6a6418a942e2041e1aaea167b3fc2658

  Motorola 680x0 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_m68k.deb
      Size/MD5 checksum:   582872 8ee7ffcf2a9485550f077083224fcf53
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_m68k.deb
      Size/MD5 checksum:    62948 f578e80072279781cdc773a0212aaeb4
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_m68k.deb
      Size/MD5 checksum:    53276 e275c193365d54ed952d205f581d0c4a
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_m68k.deb
      Size/MD5 checksum:   136124 b983f6aa5ac9bef55026b3968914d486
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_m68k.deb
      Size/MD5 checksum:    62456 f5a7951bb85786e46f8a78768b2e6780
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_m68k.deb
      Size/MD5 checksum:    51824 d2e8a874246eb34ccae87cac005942c3

  Big endian MIPS architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_mips.deb
      Size/MD5 checksum:   616068 902b11404b7ce3e08bf90f2d60d32e4d
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_mips.deb
      Size/MD5 checksum:    62992 97afc2b71ce6e26c99fcc5f696792c18
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_mips.deb
      Size/MD5 checksum:    53340 5f196cf578a319fe94c491eb8a6e0ad4
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_mips.deb
      Size/MD5 checksum:   124826 a0da7f7fdf0f1fb9f4075b9ad199058b
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_mips.deb
      Size/MD5 checksum:    62880 f576324db4e35ec6840723d341dcc434
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_mips.deb
      Size/MD5 checksum:    54378 58a87521e6270621e34e564076e518f5

  Little endian MIPS architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_mipsel.deb
      Size/MD5 checksum:   608330 bcf0fab61e1cc288efbb3cbca115717d
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_mipsel.deb
      Size/MD5 checksum:    62566 3c5954d48a51ab36897cfacce0ff7fc7
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_mipsel.deb
      Size/MD5 checksum:    53274 81254eb1eb030b36ec66139b565d84f3
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_mipsel.deb
      Size/MD5 checksum:   123450 b36fc04b6159febeee1ab2b0d18aa881
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_mipsel.deb
      Size/MD5 checksum:    62712 75fafae2b857e4fd349ced5de6c297e4
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_mipsel.deb
      Size/MD5 checksum:    53932 4f0698b2d780377c6433ebd0a82f1b23

  PowerPC architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_powerpc.deb
      Size/MD5 checksum:   634024 1e7f514631c9526d2da7972cdaab88d8
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_powerpc.deb
      Size/MD5 checksum:    64414 63af5c966e822c2538b0567d995c5618
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_powerpc.deb
      Size/MD5 checksum:    54642 3124a4b15adb293df3f49d98492d7c8a
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_powerpc.deb
      Size/MD5 checksum:   134070 8e71f21f5d2ebffaf8a994f2f020919c
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_powerpc.deb
      Size/MD5 checksum:    64492 2a7f7a4666905d1056aa0efbb1ed65dd
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_powerpc.deb
      Size/MD5 checksum:    53350 6cbf1dc3d2a6bae25a0ff47f08a70185

  IBM S/390 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_s390.deb
      Size/MD5 checksum:   601004 d4d4bfc8bdf73892736381d4451efa4a
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_s390.deb
      Size/MD5 checksum:    64608 9bce852a48e0c8fbc456bee09e8bdd10
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_s390.deb
      Size/MD5 checksum:    53522 ef23821fcf39f957a60e9a3500205b53
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_s390.deb
      Size/MD5 checksum:   132986 b704a044e9e67a9fd1335bd237e2f45e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_s390.deb
      Size/MD5 checksum:    63718 0033ce33bc2cc16dba85c39d29d18143
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_s390.deb
      Size/MD5 checksum:    53202 4b41b7127ce3dffc24622e156738f275

  Sun Sparc architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.1.1+20041109-3sarge1_sparc.deb
      Size/MD5 checksum:   589590 ace9600b3bd44363f271238e6f6df71d
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.1.1+20041109-3sarge1_sparc.deb
      Size/MD5 checksum:    63324 c5ea69c0571a0ec4f92d4f87a3ea06f5
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.1.1+20041109-3sarge1_sparc.deb
      Size/MD5 checksum:    52966 21dd8ae8729e155a297b2be5c82685c1
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.1.1+20041109-3sarge1_sparc.deb
      Size/MD5 checksum:   131622 1f3cc33c27eeb18d3494528198362b99
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.1.1+20041109-3sarge1_sparc.deb
      Size/MD5 checksum:    63472 11ccc845211d03bae1184dd451e06149
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.1.1+20041109-3sarge1_sparc.deb
      Size/MD5 checksum:    52492 a93d7138485be886cf05706acd1e9eb9

Debian GNU/Linux 4.0 alias etch
- - -------------------------------

  Source archives:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1.dsc
      Size/MD5 checksum:     1060 88584d1d2fbe3a9947cbb82f959484b1
    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1.diff.gz
      Size/MD5 checksum:   114052 510205d821dd7e0f01e8cd0c781277c2
    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3.orig.tar.gz
      Size/MD5 checksum:  3716675 6f4e1e77b5a0e935f7f0745c4e0e02cc

  Architecture independent components:

    http://security.debian.org/pool/updates/main/b/bochs/bochs-doc_2.3-2etch1_all.deb
      Size/MD5 checksum:   243180 6ef14fec8492d97352c952757767a085
    http://security.debian.org/pool/updates/main/b/bochs/bochsbios_2.3-2etch1_all.deb
      Size/MD5 checksum:    80426 1997421af5859328518201a3c48e6b59

  Alpha architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_alpha.deb
      Size/MD5 checksum:   944402 7d76617f102deaaa4feb8c0953051283
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_alpha.deb
      Size/MD5 checksum:    79564 49b6d8e57dd7db488457ba1337da25a3
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_alpha.deb
      Size/MD5 checksum:    67664 ad9c5acff5637fd34572f34bb31db8b7
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_alpha.deb
      Size/MD5 checksum:   177336 d502fbfd5a77f306b08f5dc699d563ca
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_alpha.deb
      Size/MD5 checksum:    81996 dfc3db239da63263a17d7c0c9af2ba3a
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_alpha.deb
      Size/MD5 checksum:    71792 e2d6a6cebb13a5ae2ff083a9fd2cf95c

  AMD64 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_amd64.deb
      Size/MD5 checksum:   839638 f4bca3d9bc2164ced520e1a44c9d4103
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_amd64.deb
      Size/MD5 checksum:    77648 3cd030a54522c79fa46da237f6c2bf60
    http://security.debian.org/pool/updates/main/b/bochs/bochs-svga_2.3-2etch1_amd64.deb
      Size/MD5 checksum:    67744 6880f05db229223015902958b8a00300
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_amd64.deb
      Size/MD5 checksum:    66992 eefb5f07af44e4782243ec5d55a6b232
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_amd64.deb
      Size/MD5 checksum:   171544 1ad55f3d720f6e2d3682760c6a422512
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_amd64.deb
      Size/MD5 checksum:    79296 795377fab4a18c90140ce871281f4a50
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_amd64.deb
      Size/MD5 checksum:    70286 f278fe9cbf7593a794899f01f11d7fe8

  ARM architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_arm.deb
      Size/MD5 checksum:   866912 891130fb2a1a9ec5cbddd209a556c1b9
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_arm.deb
      Size/MD5 checksum:    77198 0604afc59b72f3873cb6ad4d6c9c178f
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_arm.deb
      Size/MD5 checksum:    67174 0781ec917db1173a342c098d92074a69
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_arm.deb
      Size/MD5 checksum:   177820 2833b1baecb160f61773bde0103b28d0
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_arm.deb
      Size/MD5 checksum:    79640 185046e10b2bb2115a5761bf457c236f
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_arm.deb
      Size/MD5 checksum:    69488 89d153dc1531380edc5e75ecc30c4641

  HP Precision architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_hppa.deb
      Size/MD5 checksum:  1001600 26e56fc76a65611eca362b3949f99984
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_hppa.deb
      Size/MD5 checksum:    81206 98a0a54cfee3d854faf5f1db61a79c3e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_hppa.deb
      Size/MD5 checksum:    68990 3be6f210f27f9b02871f0ed4fe0b6b0b
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_hppa.deb
      Size/MD5 checksum:   188294 e8f1ef0623117e7e74b30b0416ab30d2
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_hppa.deb
      Size/MD5 checksum:    84122 01d36ef1f9bbc1039ec337d78bb81deb
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_hppa.deb
      Size/MD5 checksum:    73010 10884283bf57284356ae16c977e7cbbf

  Intel IA-32 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_i386.deb
      Size/MD5 checksum:   844216 c9260c781f2a82de13fa0182d0ba2a7f
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_i386.deb
      Size/MD5 checksum:    76690 33ab2e0cbb00e5b978fdaffa7896e96e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-svga_2.3-2etch1_i386.deb
      Size/MD5 checksum:    67784 c336e8bf0dc49a947447d95775a38a5b
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_i386.deb
      Size/MD5 checksum:    66704 e4a05212393bf37f84bd4b00ca2cafb9
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_i386.deb
      Size/MD5 checksum:   168558 ac3ba5b9c983c1fc5fec9676bbd4b268
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_i386.deb
      Size/MD5 checksum:    79062 0e9af11eb332b4c78af2d0ebb581eed7
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_i386.deb
      Size/MD5 checksum:    69778 15963c020e9373e92c6b7448571e2667
    http://security.debian.org/pool/updates/main/b/bochs/sb16ctrl-bochs_2.3-2etch1_i386.deb
      Size/MD5 checksum:    63582 291bd31394c476c682c889e83f2eca09

  Intel IA-64 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_ia64.deb
      Size/MD5 checksum:  1165700 c2b741e2aaefa2eaa69b750e6ce51eb1
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_ia64.deb
      Size/MD5 checksum:    84048 df04e408a6874b63fd68a9d41293ec43
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_ia64.deb
      Size/MD5 checksum:    70662 f09990961af25d03bdb37f95f71ac8de
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_ia64.deb
      Size/MD5 checksum:   197808 80c43343c9e445b72234b3c3c5410522
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_ia64.deb
      Size/MD5 checksum:    88342 0e8b3ec29a3a0ba81951ecc2d0b7374c
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_ia64.deb
      Size/MD5 checksum:    74716 c07b5adfbb6a62178996b74df7689045

  Big endian MIPS architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_mips.deb
      Size/MD5 checksum:   891676 eabbcedbc3f7bb72eb1723773b5a2aab
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_mips.deb
      Size/MD5 checksum:    77142 0b9571873f76511b5a778fd16d559eaa
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_mips.deb
      Size/MD5 checksum:    66902 cd42dba1cd3531841c73f3a53df2010c
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_mips.deb
      Size/MD5 checksum:   158126 2e4e66ba8df81be86963e7d1c3f39220
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_mips.deb
      Size/MD5 checksum:    79760 ebad838405a443a0fdade70dd0ac8300
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_mips.deb
      Size/MD5 checksum:    72934 c432dddb3e705e045d87c15b536b2e4d

  Little endian MIPS architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_mipsel.deb
      Size/MD5 checksum:   882088 f09b2d716cc28bab7d223480ca116331
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_mipsel.deb
      Size/MD5 checksum:    76848 5ba34000a55e55ad38820f21313c4911
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_mipsel.deb
      Size/MD5 checksum:    66812 192c618d14ee3383753a69447b682862
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_mipsel.deb
      Size/MD5 checksum:   156574 949ffc70defa2fe7a5cd8d02f7dd634b
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_mipsel.deb
      Size/MD5 checksum:    79750 d8bccd518bbeef3d5dddc327fe5ae9b5
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_mipsel.deb
      Size/MD5 checksum:    72022 8d9e16294fc3884d487441c00e66dc3e

  PowerPC architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_powerpc.deb
      Size/MD5 checksum:   928976 ccff6f5bc5c6ed41c6140f62eb106692
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_powerpc.deb
      Size/MD5 checksum:    78802 532de52f5ce5258c36b0981eddf52990
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_powerpc.deb
      Size/MD5 checksum:    68894 bfa8e18543f41d57833f7670f5ce77f8
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_powerpc.deb
      Size/MD5 checksum:   168116 9954e1918342f5708b7659b382d2df9e
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_powerpc.deb
      Size/MD5 checksum:    81504 9031c68870031f39829bffa2b7ae33ca
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_powerpc.deb
      Size/MD5 checksum:    71712 c9c0fffc92468d3a62b4653ba633dbfa

  IBM S/390 architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_s390.deb
      Size/MD5 checksum:   881620 281d92539d17d6f04ef157049e92659b
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_s390.deb
      Size/MD5 checksum:    78696 8bbf32c2ff3a80d1791b5135209b15fc
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_s390.deb
      Size/MD5 checksum:    67096 957215975d77754c82fff215f3a6bae5
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_s390.deb
      Size/MD5 checksum:   167798 4519b20d5b236f055b5e62eeaf28bf53
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_s390.deb
      Size/MD5 checksum:    81230 76cf6c35596cffb925963c7ac2d0df6d
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_s390.deb
      Size/MD5 checksum:    71624 9e48fbba2dd9f2782edaef7e7a7e6a58

  Sun Sparc architecture:

    http://security.debian.org/pool/updates/main/b/bochs/bochs_2.3-2etch1_sparc.deb
      Size/MD5 checksum:   857862 dae24164e5ff5b866fa14cb330e868e0
    http://security.debian.org/pool/updates/main/b/bochs/bochs-sdl_2.3-2etch1_sparc.deb
      Size/MD5 checksum:    77116 aa222c9090e9f71b6ac9e1c0f7207a3a
    http://security.debian.org/pool/updates/main/b/bochs/bochs-term_2.3-2etch1_sparc.deb
      Size/MD5 checksum:    66980 30c39ac545c5fb714c63bffaa9e6f7dc
    http://security.debian.org/pool/updates/main/b/bochs/bochs-wx_2.3-2etch1_sparc.deb
      Size/MD5 checksum:   169216 106c9c0f0df4fd621647081c315394bb
    http://security.debian.org/pool/updates/main/b/bochs/bochs-x_2.3-2etch1_sparc.deb
      Size/MD5 checksum:    79598 21d4b727b5232d2e3622dbe408cfa11a
    http://security.debian.org/pool/updates/main/b/bochs/bximage_2.3-2etch1_sparc.deb
      Size/MD5 checksum:    70744 461be9b60c304dbad0169dd8bb219bbc


  These files will probably be moved into the stable distribution on
  its next update.

- - ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show <pkg>' and http://packages.debian.org/<pkg>

- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFGuOGwXm3vHE4uyloRAoYwAJ9nDzE8/M1UgNYQFZV4dsMeoRGBjwCg7VR2
R2MpCaGLtTZd+J08F9rmyFk=
=0ZMT
- -----END PGP SIGNATURE-----

- --------------------------END INCLUDED TEXT--------------------

You have received this e-mail bulletin as a result of your organisation's
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

NOTE: Third Party Rights
This security bulletin is provided as a service to AusCERT's members.  As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content. The decision to follow or act on information or advice
contained in this security bulletin is the responsibility of each user or
organisation, and should be considered in accordance with your organisation's
site policies and procedures. AusCERT takes no responsibility for consequences
which may arise from following or acting on information or advice contained in
this security bulletin.

NOTE: This is only the original release of the security bulletin.  It may
not be updated when updates to the original are made.  If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author's website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above.  If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

        http://www.auscert.org.au/render.html?cid=1980

If you believe that your computer system has been compromised or attacked in 
any way, we encourage you to let us know by completing the secure National IT 
Incident Reporting Form at:

        http://www.auscert.org.au/render.html?it=3192

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business hours
                which are GMT+10:00 (AEST).
                On call after hours for member emergencies only.
===========================================================================

-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967

iQCVAwUBRrldkCh9+71yA2DNAQI0fAQAj/JrAgqTW/w/3CporlsrDVPhSvKdlsTs
JCdsQ8+azNe75N/Sm6Njr95b6vN3BLaQQx+HTcNJCRJ7tjgoBF9HVhkWQsapr1nU
tugbAznJw+SzTNhqrC1N6E47T4wxaUvon+3g1L67tCNFswMczNQmt9DAqoVwkBB7
eorxwAPdxbA=
=0pew
-----END PGP SIGNATURE-----