Skip Navigation

  • Home
  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
    • CSIRTUK advisories
      • Advisories archive
    • General protective security publications
    • InfoSec briefings
    • InfoSec technical notes
    • InfoSec vulnerability disclosures
    • Good practice guidelines
    • Viewpoints
    • Information exchanges
    • Risk Management Delivery Group
  • Research
Home > Products and services > CSIRTUK advisories > Advisories archive > January 2006 > Three Debian Security Advisories

January 2006

Three Debian Security Advisories

ID: 00031
Ref: 30/2006
Date: 11 January 2006:15:00:29
Version: 1

Title: Three Debian Security Advisories
Abstract:
Vendors affected: Debian
Operating systems affected: Debian
Applications affected: Debian

Title
=====

Three Debian Security Advisories:

1. DSA 930-2 - New smstools packages fix format string vulnerability

2. DSA 935-1 - New libapache2-mod-auth-pgsql packages fix arbitrary code execution

3. DSA 936-1 - New libextractor packages fix arbitrary code execution

Detail
======

1. Ulf Harnhammar from the Debian Security Audit project discovered a
format string attack in the logging code of smstools, which may be
exploited to execute arbitary code with root privileges.

2. iDEFENSE reports that a format string vulnerability in mod_auth_pgsql, a
library used to authenticate web users against a PostgreSQL database,
could be used to execute arbitrary code with the privileges of the httpd
user.

3. "infamous41md" and Chris Evans discovered several heap based buffer
overflows in xpdf, the Portable Document Format (PDF) suite, which is
also present in libextractor, a library to extract arbitrary meta-data
from files, and which can lead to a denial of service by crashing the
application or possibly to the execution of arbitrary code.


1.



- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - --------------------------------------------------------------------------
Debian Security Advisory DSA 930-2 security@debian.org
http://www.debian.org/security/ Steve Kemp
January 10, 2006 http://www.debian.org/security/faq
- - --------------------------------------------------------------------------

Package : smstools
Vulnerability : format string attack
Problem-Type : local
Debian-specific: no
CVE ID : CVE-2006-0083

Ulf Harnhammar from the Debian Security Audit project discovered a
format string attack in the logging code of smstools, which may be
exploited to execute arbitary code with root privileges.

The original advisory for this issue said that the old stable
distribution (woody) was not affected because it did not contain
smstools. This was incorrect, and the only change in this updated
advisory is the inclusion of corrected packages for woody.

For the old stable distribution (woody) this problem has been fixed in
version 1.5.0-2woody0.

For the stable distribution (sarge) this problem has been fixed in
version 1.14.8-1sarge0.

For the unstable distribution the package will be updated shortly.

We recommend that you upgrade your smstools package.


Upgrade Instructions
- - --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.0 alias woody
- - --------------------------------

Source archives:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0.dsc
Size/MD5 checksum: 595 3b125f8d494769561c579a2afb8eedf3
http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0.diff.gz
Size/MD5 checksum: 7441 8fd87155404a99eb88ff06e5e7bccd4b
http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0.orig.tar.gz
Size/MD5 checksum: 42987 0286109d2011a5b8ab2fbd2cda6085be

Alpha architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_alpha.deb
Size/MD5 checksum: 56840 8d84dd61b7002fbb5f5ff1411345cdf6

ARM architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_arm.deb
Size/MD5 checksum: 44604 af22b10857060a0fe0f1db651ea54689

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_i386.deb
Size/MD5 checksum: 43106 af2b3c3a8a18d71481fbadeef60846f8

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_ia64.deb
Size/MD5 checksum: 74424 96904451a1a06e22d4fcee797dc68450

HP Precision architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_hppa.deb
Size/MD5 checksum: 44432 70d55071bbdf08f2d3265da85cb43458

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_m68k.deb
Size/MD5 checksum: 41598 d25cce8dcfed54f7f9b62e7764775907

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_mips.deb
Size/MD5 checksum: 52646 2edd9efcca5f608c09d6903335d7dc14

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_mipsel.deb
Size/MD5 checksum: 52290 5f019a902c94b8d4c0a6b9781afa2664

PowerPC architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_powerpc.deb
Size/MD5 checksum: 43316 df4f00d5ccc813274a3936455ff39b70

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_s390.deb
Size/MD5 checksum: 43812 9e6f27fb09a8e1152db4238eb851b659

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/s/smstools/smstools_1.5.0-2woody0_sparc.deb
Size/MD5 checksum: 51388 d98ca0bc6bbeecb8d19e630528c6fd9f

- - ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show ' and http://packages.debian.org/
- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iQCVAwUBQ8O64A0hVr09l8FJAQJktAP+Lz1FQMEN7DDexdkjHCmr4i7ppBNBc37v
OIaWqECUgdo6HaKuwVxqI3MQ/w0knMydjM3h4/KygnAQUlesol5Egd9WhiVxO7BH
nmaVedl8tiQM6mtCmTKlVw9dlEtykGUdYYC3qXtPV3suzuqsDLtPlTfKmQWqevy6
V0TLiivO8m4=
=HaD3
- -----END PGP SIGNATURE-----



2.

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - --------------------------------------------------------------------------
Debian Security Advisory DSA 935-1 security@debian.org
http://www.debian.org/security/ Michael Stone
January 10, 2006 http://www.debian.org/security/faq
- - --------------------------------------------------------------------------

Package : libapache2-mod-auth-pgsql
Vulnerability : format string vulnerability
Problem-Type : remote
Debian-specific: no
CVE ID : CVE-2005-3656
Debian Bug : 307852

iDEFENSE reports that a format string vulnerability in mod_auth_pgsql, a
library used to authenticate web users against a PostgreSQL database,
could be used to execute arbitrary code with the privileges of the httpd
user.

The old stable distribution (woody) does not contain
libapache2-mod-auth-pgsql.

For the stable distribution (sarge) this problem has been fixed in
version 2.0.2b1-5sarge0.

For the unstable distribution (sid) this problem will be fixed shortly.

We recommend that you upgrade your libapache2-mod-auth-pgsql package.


Upgrade Instructions
- - --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge
- - --------------------------------

Source archives:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0.dsc
Size/MD5 checksum: 718 64320b302321622c1007810e18f6559a
http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0.diff.gz
Size/MD5 checksum: 5031 400a8ca9689409375c56eafe38a957a7
http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1.orig.tar.gz
Size/MD5 checksum: 15928 e2c032df0cd7e4a46381dcf6e488efe9

Alpha architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_alpha.deb
Size/MD5 checksum: 20410 4e2c27c73a6ca3ca70713e31842c01ca

AMD64 architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_amd64.deb
Size/MD5 checksum: 20040 9b542446b7336c88c2ffabdad730b74f

ARM architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_arm.deb
Size/MD5 checksum: 18806 fcf3a9529b0b2af5a67237360c60f554

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_i386.deb
Size/MD5 checksum: 19406 f869e108de0839dcdcc2ee9459a8848d

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_ia64.deb
Size/MD5 checksum: 22282 018e612149c4d4a2cb139ee91b972cae

HP Precision architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_hppa.deb
Size/MD5 checksum: 20686 dc84765b12cb57c7c2b68d9f875d8f07

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_m68k.deb
Size/MD5 checksum: 18944 ab3c2f517273d868d8dd3fcf9b78ea0a

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_mips.deb
Size/MD5 checksum: 18884 cfed58fc3dd4bc0e7b635f048b9ef317

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_mipsel.deb
Size/MD5 checksum: 18860 dc5b1b912b0fcf62d2a8edc7a5a9fa52

PowerPC architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_powerpc.deb
Size/MD5 checksum: 20710 bdc297d45748433b2adcd3ac962612a3

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_s390.deb
Size/MD5 checksum: 19840 798db337084461ee60239274cf89f4e0

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/liba/libapache2-mod-auth-pgsql/libapache2-mod-auth-pgsql_2.0.2b1-5sarge0_sparc.deb
Size/MD5 checksum: 19006 6cd6c8809599feec59df63281adcfd7b

These files will probably be moved into the stable distribution on
its next update.

- - ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show ' and http://packages.debian.org/
- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iQCVAwUBQ8PA1w0hVr09l8FJAQLO4gP/bcWvK6fu6xhF2yqPgMWgPi5bJTf78oAM
d63Rgz4ahDE4GYAz9LBOiQS88kjfY3SmzEKx/Y/Krwrsms62xVnPs46UYiRwqG8B
ht2PlbUscAmHKR5ydw8ZeIul+uuzXZDRADrcGCMvJ0K09V+1b3OYJKPQhtQ6gckI
ju4vUZkuxIg=
=LqUx
- -----END PGP SIGNATURE-----


3.

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - --------------------------------------------------------------------------
Debian Security Advisory DSA 936-1 security@debian.org
http://www.debian.org/security/ Martin Schulze
January 11th, 2006 http://www.debian.org/security/faq
- - --------------------------------------------------------------------------

Package : libextractor
Vulnerability : buffer overflows
Problem type : remote
Debian-specific: no
CVE IDs : CVE-2005-3191 CVE-2005-3192 CVE-2005-3193 CVE-2005-2097
CVE-2005-3624 CVE-2005-3625 CVE-2005-3626 CVE-2005-3627
CVE-2005-3628

"infamous41md" and Chris Evans discovered several heap based buffer
overflows in xpdf, the Portable Document Format (PDF) suite, which is
also present in libextractor, a library to extract arbitrary meta-data
from files, and which can lead to a denial of service by crashing the
application or possibly to the execution of arbitrary code.
The old stable distribution (woody) does not contain libextractor
packages.

For the stable distribution (sarge) these problems have been fixed in
version 0.4.2-2sarge2.

For the unstable distribution (sid) these problems have been fixed in
version 0.5.8-1.

We recommend that you upgrade your libextractor packages.


Upgrade Instructions
- - --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.


Debian GNU/Linux 3.1 alias sarge
- - --------------------------------

Source archives:

http://security.debian.org/pool/updates/main/libe/libextractor/libextractor_0.4.2-2sarge2.dsc
Size/MD5 checksum: 778 6906857074772199e2a8a892feb3aae2
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor_0.4.2-2sarge2.diff.gz
Size/MD5 checksum: 6345 c214699bde0bfad501cede35488b4f09
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor_0.4.2.orig.tar.gz
Size/MD5 checksum: 5887095 d99e1b13a017d39700e376a0edbf7ba2

Alpha architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_alpha.deb
Size/MD5 checksum: 19424 59bb8cddd5c80fb1cba57796b9445dab
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_alpha.deb
Size/MD5 checksum: 5804676 9942575a95cb97dfcae26b156dca7a58
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_alpha.deb
Size/MD5 checksum: 19204 fed48ebb930e6a7d3484bd75c8263a81

AMD64 architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_amd64.deb
Size/MD5 checksum: 18098 7d4a40679062c4d2d70f9c08dc785559
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_amd64.deb
Size/MD5 checksum: 5641300 ff1bac0e15d1a6ff630a6ced168e284f
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_amd64.deb
Size/MD5 checksum: 17364 54dd55236286550d6cadc8dbb3df9ccd

ARM architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_arm.deb
Size/MD5 checksum: 17480 aa541fc867f51588b676aa23d34e25a8
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_arm.deb
Size/MD5 checksum: 5710616 ed153d5e88e899f4e27ae5a67c5e45d0
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_arm.deb
Size/MD5 checksum: 16784 7a7f73139e8c0c62187179e993734932

Intel IA-32 architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_i386.deb
Size/MD5 checksum: 17624 5419b495e3df96a658e1323c83f7faf9
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_i386.deb
Size/MD5 checksum: 5713300 1bc2a3ab8b321b543a1ae92590e76f8b
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_i386.deb
Size/MD5 checksum: 16546 71e4044ff8d923cd56d4bb046be1b37f

Intel IA-64 architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_ia64.deb
Size/MD5 checksum: 20404 cdea8cf2f6cd2b8a761ccca2a2d85421
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_ia64.deb
Size/MD5 checksum: 5905266 98f5de1716817b660791a92d5ee7c6a6
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_ia64.deb
Size/MD5 checksum: 19140 d780e22f3cd6c6204de3db711f068dcd

HP Precision architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_hppa.deb
Size/MD5 checksum: 18560 70ae8b43a0cd581a36a8097fc94c2172
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_hppa.deb
Size/MD5 checksum: 5687318 a241f7e800ac5cbd7f45fdafeae267ac
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_hppa.deb
Size/MD5 checksum: 17710 c1848801758081872515d88f86938537

Motorola 680x0 architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_m68k.deb
Size/MD5 checksum: 17184 d64fcc89500919e03805e47dbb9eca52
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_m68k.deb
Size/MD5 checksum: 5708190 0d20df48cd437a99544bf748a1c89ea9
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_m68k.deb
Size/MD5 checksum: 16404 0e47447d4b7007d4016c32a81f2b66f4

Big endian MIPS architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_mips.deb
Size/MD5 checksum: 18416 38f460cbf16a6c2a3c735c5a6545013a
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_mips.deb
Size/MD5 checksum: 5729074 76787645b83e4438fc79325410114c99
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_mips.deb
Size/MD5 checksum: 17700 8cbf4e1556b59d982589d27e5af1211e

Little endian MIPS architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_mipsel.deb
Size/MD5 checksum: 18460 dfaad60fd479b74c72c46680d92c5920
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_mipsel.deb
Size/MD5 checksum: 5726846 0d9ad0d53eddd3503cdc2fce6b118595
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_mipsel.deb
Size/MD5 checksum: 17734 a74a4df56930cd6e1ec289a714fe2225

PowerPC architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_powerpc.deb
Size/MD5 checksum: 19600 0fbb4093db271d5924d8e1fb81d0c5c3
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_powerpc.deb
Size/MD5 checksum: 5677812 543192c6a5b6b89fdc0cc0c5b3f2befe
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_powerpc.deb
Size/MD5 checksum: 17556 bd868a198744609509201e7af0e33ab9

IBM S/390 architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_s390.deb
Size/MD5 checksum: 17974 f16109dd971b139abc8a2194731e33c8
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_s390.deb
Size/MD5 checksum: 5768028 dfda84e8d1a0e53794418a77a09d801f
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_s390.deb
Size/MD5 checksum: 17918 da3bb3df7f86443b1f36ed4b5bcc0113

Sun Sparc architecture:

http://security.debian.org/pool/updates/main/libe/libextractor/extract_0.4.2-2sarge2_sparc.deb
Size/MD5 checksum: 17480 1ef23c92384723ab64b315b7d8d51089
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1_0.4.2-2sarge2_sparc.deb
Size/MD5 checksum: 5752164 91a3ad11d2f029e99955b2c54088e034
http://security.debian.org/pool/updates/main/libe/libextractor/libextractor1-dev_0.4.2-2sarge2_sparc.deb
Size/MD5 checksum: 16696 87e4150b6738d9921728a1e594bc4904


These files will probably be moved into the stable distribution on
its next update.

- - ---------------------------------------------------------------------------------
For apt-get: deb http://security.debian.org/ stable/updates main
For dpkg-ftp: ftp://security.debian.org/debian-security dists/stable/updates/main
Mailing list: debian-security-announce@lists.debian.org
Package info: `apt-cache show ' and http://packages.debian.org/

- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFDxMoyW5ql+IAeqTIRAoa3AJ4wdQARyff9H2Mjm+0DBiZr4i2HXACfT3tc
/HQ6b6/FOirsuLBIBvIWdew=
=McFo
- -----END PGP SIGNATURE-----

  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |