Debian GNU/Linux 3.0 updated (r2)
November 21st, 2003
This is the second update of Debian GNU/Linux 3.0 (codename ‘woody’) which mainly adds security updates to the stable release, along with a few corrections of serious bugs. Those who frequently update from security.debian.org won't have to update many packages and most updates from security.debian.org are included in this update.
Please note that this update does not produce a new version of Debian GNU/Linux 3.0 but only adds a few updated packages to it. There is no need to throw away 3.0 CDs but only to update against ftp.debian.org after an installation, in order to incorporate those late changes.
Upgrading to this revision online is usually done by pointing the ‘apt’ package tool (see the sources.list(5) manual page) to one of Debian's many FTP or HTTP mirrors. A comprehensive list of mirrors is available at:
Security Updates
This revision adds the following security updates to the stable release. The Security Team has already released an advisory for each of these updates.
Debian Security Advisory ID | Package(s) |
---|---|
DSA 140 | libpng, libpng3 |
DSA 196 | bind |
DSA 203 | smb2www |
DSA 208 | perl |
DSA 215 | cyrus-imapd |
DSA 216 | fetchmail-ssl |
DSA 220 | squirrelmail |
DSA 221 | mhonarc |
DSA 222 | xpdf |
DSA 224 | canna |
DSA 225 | tomcat4 |
DSA 227 | openldap2 |
DSA 229 | imp |
DSA 230 | bugzilla |
DSA 231 | dhcp3 |
DSA 233 | cvs |
DSA 237 | kdenetwork |
DSA 239 | kdesdk |
DSA 245 | dhcp3 |
DSA 246 | tomcat |
DSA 248 | hypermail |
DSA 249 | w3mmee |
DSA 250 | w3mmee-ssl |
DSA 251 | w3m, w3m-ssl |
DSA 252 | slocate |
DSA 253 | openssl |
DSA 254 | traceroute-nanog |
DSA 255 | tcpdump |
DSA 256 | mhc |
DSA 258 | ethereal |
DSA 260 | file |
DSA 261 | tcpdump |
DSA 262 | samba |
DSA 263 | netpbm-free |
DSA 266 | krb5 |
DSA 268 | mutt |
DSA 270 | kernel-patch-2.4.17-mips, kernel-patch-2.4.19-mips |
DSA 271 | ecartis |
DSA 272 | dietlibc |
DSA 274 | mutt |
DSA 276 | kernel-image-2.4.17-s390, kernel-patch-2.4.17-s390 |
DSA 277 | apcupsd |
DSA 278 | sendmail |
DSA 280 | samba |
DSA 281 | moxftp |
DSA 282 | glibc |
DSA 283 | xfsdump |
DSA 284 | kdegraphics |
DSA 285 | lprng |
DSA 286 | gs-common |
DSA 287 | epic |
DSA 288 | openssl |
DSA 290 | sendmail-wide |
DSA 292 | mime-support |
DSA 293 | kdelibs |
DSA 295 | pptpd |
DSA 296 | kdebase |
DSA 297 | snort |
DSA 298 | epic4 |
DSA 299 | leksbot |
DSA 300 | balsa |
DSA 302 | fuzz |
DSA 304 | lv |
DSA 306 | ircii-pana |
DSA 308 | gzip |
DSA 309 | eterm |
DSA 312 | kernel-patch-2.4.18-powerpc |
DSA 313 | ethereal |
DSA 314 | atftp |
DSA 315 | gnocatan |
DSA 316 | jnethack |
DSA 316 | slashem |
DSA 317 | cupsys |
DSA 318 | lyskom-server |
DSA 320 | mikmod |
DSA 321 | radiusd-cistron |
DSA 322 | typespeed |
DSA 323 | noweb |
DSA 324 | ethereal |
DSA 325 | eldav |
DSA 326 | orville-write |
DSA 327 | xbl |
DSA 328 | webfs |
DSA 330 | tcptraceroute |
DSA 331 | imagemagick |
DSA 332 | kernel-source-2.4.17 |
DSA 333 | acm |
DSA 334 | xgalaga |
DSA 336 | kernel-image-2.2.20-i386 |
DSA 339 | semi, wemi |
DSA 340 | x-face-el |
DSA 341 | liece |
DSA 342 | mozart |
DSA 343 | ddskk, skk |
DSA 344 | unzip |
DSA 345 | xbl |
DSA 347 | teapop |
DSA 348 | traceroute-nanog |
DSA 349 | nfs-utils |
DSA 350 | falconseye |
DSA 351 | php4 |
DSA 352 | fdclone |
DSA 353 | sup |
DSA 355 | gallery |
DSA 356 | xtokkaetama |
DSA 357 | wu-ftpd |
DSA 358 | kernel-source-2.4.18 |
DSA 360 | xfstt |
DSA 361 | kdelibs, kdelibs-crypto |
DSA 362 | mindi |
DSA 363 | postfix |
DSA 364 | man-db |
DSA 365 | phpgroupware |
DSA 366 | eroaster |
DSA 369 | zblast |
DSA 370 | pam-pgsql |
DSA 371 | perl |
DSA 372 | netris |
DSA 373 | autorespond |
DSA 374 | libpam-smb |
DSA 375 | node |
DSA 376 | exim, exim-tls |
DSA 377 | wu-ftpd |
DSA 378 | mah-jong |
DSA 379 | sane-backends |
DSA 380 | xfree86 |
DSA 382 | openssh |
DSA 383 | openssh-krb |
DSA 384 | sendmail, sendmail-wide |
DSA 386 | libmailtools-perl |
DSA 387 | gopher |
DSA 388 | kdebase |
DSA 389 | ipmasq |
DSA 390 | marbles |
DSA 392 | webfs |
DSA 394 | openssl095 |
DSA 395 | tomcat4 |
DSA 396 | thttpd |
DSA 397 | postgresql |
DSA 399 | epic4 |
DSA 400 | omega-rpg |
DSA 401 | hylafax |
DSA 402 | minimalist |
Miscellaneous Bugfixes
This revision adds important corrections to the following packages. Most of them don't affect the security of the system, but may affect data integrity.
console-data | correct support for sun keyboards |
debianutils | prevents infinite CPU consumption |
gnupg | upstream security fix and compatibility fixes |
intlfonts | corrects license problems |
jigdo | now works with current cdimage archives |
liblocale-gettext-perl | corrects serious problem |
libphp-adodb | prevents potential data loss |
libprinterconf, pconf-detect | not working before |
nano | corrects annoying misfeature for boot-floppies |
procmail | fixes potential data loss |
procps | fixes crash misfeature |
python-pgsql | prevents potential data loss |
shorewall | prevents unattended network blackouts |
snmpkit | package lacked binaries |
spamassassin | remove dysfunctional relays.osirusoft.com |
util-linux | patch for kernel 2.4.19 for MIPS |
xnc | prevents menu system breakage |
zlib | Security bugfixes (CAN-2003-0107) |
Removed Packages
The following packages had to be removed from the distribution:aspell | license problems |
cyrus-sasl2 | minor security and other problems |
micq | license problems |
rocks-n-diamonds | license problems |
tmda | unusable |
A complete list of all accepted and rejected packages together with rationale is on the preparation page for this revision:
URLs
The complete lists of packages that have changed with this release:
The current stable distribution:
Proposed updates to the stable distribution:
Stable distribution information (release notes, errata, etc.):
Security announcements and information:
About Debian
The Debian Project is an organization of free software developers who volunteer their time and effort in order to produce the completely free operating systems Debian GNU/Linux and Debian GNU/Hurd.
Contact Information
For further information, please visit the Debian web pages at https://www.debian.org/ or send mail to <press@debian.org>.