quagga ( lucid-security; urgency=low

  * SECURITY UPDATE: Update to to fix multiple security issues.
    (LP: #994169)
    - Denial of service via short Link State Update packet
    - Denial of service via short network-LSA link-state advertisement
    - Denial of service via malformed Four-octet AS Number Capability
    - CVE-2012-0249
    - CVE-2012-0250
    - CVE-2012-0255
  * debian/control, debian/rules: Remove quagga-dbg package for Lucid.
  * debian/rules: don't use autotools_dev for Lucid.
  * debian/patches/99_bgpd-fix-memory-leak-for-extra-attributes.diff:
    added fix for a bgpd memory leak related to extra attributes. Thanks to
    Debian for the regression fix.
 -- Marc Deslauriers <email address hidden>   Sat, 05 May 2012 19:21:02 -0400

