Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

debian-changes-digest Digest V2007 #148

From: <debian-changes-digest-request(at)lists.debian.org>
Date: Thu Dec 20 2007 - 15:21:51 EST


Content-Type: text/plain

debian-changes-digest Digest Volume 2007 : Issue 148

Today's Topics:

  Accepted pwlib 1.10.2-2+etch1 (sourc  [ Kilian Krause  ]
  Accepted mydns 1:1.1.0-7etch1 (sourc  [ Jorge Salamero Sanz  ]
  Accepted htdig 1:3.2.0b6-3.1etch1 (s  [ Steffen Joeris  ]
  Accepted sitebar 3.3.8-7etch1 (sourc  [ Steffen Joeris  ]
  Accepted wireshark 0.99.4-5.etch.1 (  [ Moritz Muehlenhoff  ]
  Accepted opal 2.2.3.dfsg-3+etch1 (so  [ Kilian Krause  ]
  Accepted zope-cmfplone 2.5.1-4etch1   [ Fabio Tranchitella  ]
  Accepted horde3 3.1.3-4etch1 (source  [ Gregory Colpart (evolix) 

Date: Thu, 20 Dec 2007 19:53:50 +0000
From: Kilian Krause <kilian@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted pwlib 1.10.2-2+etch1 (source i386 all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Tue, 4 Dec 2007 12:20:23 +0100
Source: pwlib
Binary: libpt-plugins-v4l2 libpt-plugins-oss libpt-plugins-alsa libpt-1.1= 0.0 libpt-plugins-dc libpt-dev libpt-plugins-v4l libpt-plugins-avc libpt-= doc libpt-dbg
Architecture: source i386 all
Version: 1.10.2-2+etch1
Distribution: proposed-updates
Urgency: high
Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.or= g>
Changed-By: Kilian Krause <kilian@debian.org> Description:=20

 libpt-1.10.0 - Portable Windows Library
 libpt-dbg  - Portable Windows Library development debug files
 libpt-dev  - Portable Windows Library development files
 libpt-doc  - Portable Windows Library documentation & sample files
 libpt-plugins-alsa - Portable Windows Library Audio Plugin for the ALSA =
Interface
 libpt-plugins-avc - PWLib Video Plugin for IEEE1394 (FireWire) AVC devic= es
 libpt-plugins-dc - PWLib Video Plugin for IEEE1394 (Firewire) DC Devices  libpt-plugins-oss - Portable Windows Library Audio Plugins for the OSS I= nterface
 libpt-plugins-v4l - Portable Windows Library Video Plugin for Video4Linu= x
 libpt-plugins-v4l2 - Portable Windows Library Video Plugin for Video4Lin= ux v2
Closes: 454133
Changes:=20
 pwlib (1.10.2-2+etch1) proposed-updates; urgency=3Dhigh  .
  • Fix remote denial of service vulnerability caused by a call to PString::vsprintf if the used object already contained more than 1000 characters (CVE-2007-4897; Closes: #454133)= . Files:=20 474274f23ff55e7431db60f452070b42 1326 libs optional pwlib_1.10.2-2+etch1= .dsc 088667f020f5ca3935606517e059e5dd 21880 libs optional pwlib_1.10.2-2+etch= 1.diff.gz 029bf796c89705bde5c72b2493cace03 1176660 libs optional libpt-1.10.0_1.10= .2-2+etch1_i386.deb 554dd0002ac3b5a674c581bda54e169c 2517044 libdevel optional libpt-dev_1.1= 0.2-2+etch1_i386.deb bfcd8e5a6664a3657b040cbc400a3fe8 3614540 libdevel extra libpt-dbg_1.10.2= -2+etch1_i386.deb c3c97ac7171df13a44a0bdfc449fbb42 56678 libs optional libpt-plugins-v4l_1= .10.2-2+etch1_i386.deb 83a0fec3a133af3f14a1b256942cb225 57420 libs optional libpt-plugins-v4l2_= 1.10.2-2+etch1_i386.deb db511085776868929d209ed845935d00 58970 libs optional libpt-plugins-avc_1= .10.2-2+etch1_i386.deb 892bb1607137082bd865dde05ddca93d 47814 libs optional libpt-plugins-dc_1.= 10.2-2+etch1_i386.deb e2f4fd52408630363bc8b77ffbf28aec 60702 libs optional libpt-plugins-oss_1= .10.2-2+etch1_i386.deb d995849a759af3514c0d3de9d89a0152 55218 libs optional libpt-plugins-alsa_= 1.10.2-2+etch1_i386.deb 62977717ce1c9d62c4bcb2fdfd3dd9ee 3123866 doc extra libpt-doc_1.10.2-2+et= ch1_all.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

Do you need help?X

iD8DBQFHVlxivdkzt4X+wX8RAqFNAJ96b2m3pQ+Aniyq4G+4UODCxqtz3wCfQHfC TYYp8ClfDMoelNP3t+xPx7M=3D
=3DIocf
-----END PGP SIGNATURE-----
Accepted:
libpt-1.10.0_1.10.2-2+etch1_i386.deb
  to pool/main/p/pwlib/libpt-1.10.0_1.10.2-2+etch1_i386.deb libpt-dbg_1.10.2-2+etch1_i386.deb
  to pool/main/p/pwlib/libpt-dbg_1.10.2-2+etch1_i386.deb libpt-dev_1.10.2-2+etch1_i386.deb
  to pool/main/p/pwlib/libpt-dev_1.10.2-2+etch1_i386.deb libpt-doc_1.10.2-2+etch1_all.deb
  to pool/main/p/pwlib/libpt-doc_1.10.2-2+etch1_all.deb libpt-plugins-alsa_1.10.2-2+etch1_i386.deb   to pool/main/p/pwlib/libpt-plugins-alsa_1.10.2-2+etch1_i386.deb libpt-plugins-avc_1.10.2-2+etch1_i386.deb   to pool/main/p/pwlib/libpt-plugins-avc_1.10.2-2+etch1_i386.deb libpt-plugins-dc_1.10.2-2+etch1_i386.deb   to pool/main/p/pwlib/libpt-plugins-dc_1.10.2-2+etch1_i386.deb libpt-plugins-oss_1.10.2-2+etch1_i386.deb   to pool/main/p/pwlib/libpt-plugins-oss_1.10.2-2+etch1_i386.deb libpt-plugins-v4l2_1.10.2-2+etch1_i386.deb   to pool/main/p/pwlib/libpt-plugins-v4l2_1.10.2-2+etch1_i386.deb libpt-plugins-v4l_1.10.2-2+etch1_i386.deb   to pool/main/p/pwlib/libpt-plugins-v4l_1.10.2-2+etch1_i386.deb pwlib_1.10.2-2+etch1.diff.gz
  to pool/main/p/pwlib/pwlib_1.10.2-2+etch1.diff.gz pwlib_1.10.2-2+etch1.dsc
  to pool/main/p/pwlib/pwlib_1.10.2-2+etch1.dsc

Date: Thu, 20 Dec 2007 19:53:16 +0000
From: Jorge Salamero Sanz <bencer@cauterized.net> To: debian-changes@lists.debian.org
Subject: Accepted mydns 1:1.1.0-7etch1 (source i386)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Fri, 07 Dec 2007 15:23:25 +0100
Source: mydns
Binary: mydns-pgsql mydns-mysql
Architecture: source i386
Version: 1:1.1.0-7etch1
Distribution: stable-security
Urgency: high
Maintainer: Philipp Kern <pkern@debian.org> Changed-By: Jorge Salamero Sanz <bencer@cauterized.net> Description:=20
 mydns-mysql - DNS server using MySQL for data storage  mydns-pgsql - DNS server using PostgreSQL for data storage Changes:=20
 mydns (1:1.1.0-7etch1) stable-security; urgency=3Dhigh  .

  • Fix for CVE-2007-2362 Multiple Remote Dynamic DNS Update Vulnerabili= ties. Philipp Kern <pkern@debian.org> patch from lenny package. Files:=20 6d0a22d23d6a218b2f6c36a0973fec29 1016 net optional mydns_1.1.0-7etch1.ds= c ec86140455b188b46c7d0eb5dc5da86b 726052 net optional mydns_1.1.0.orig.ta= r.gz 68288d6559240f652b363175077ee372 23201 net optional mydns_1.1.0-7etch1.d= iff.gz a0d5f307f3eedfc6c85a587cc5572463 249396 net optional mydns-mysql_1.1.0-7= etch1_i386.deb a2ef881adaf58f206315b6843f6e0f0f 241112 net optional mydns-pgsql_1.1.0-7= etch1_i386.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iQEVAwUBR1nGmWz0hbPcukPfAQJtSwf9HfyeVzV98k6vvSC33kgrHxEoKF7yU/YG Abk9j17ZIeWF+NkBzmfuzJ4XuJcEHotfcGBL2+zJboGBDkMPuXYpX8SpmfK2tZDi ueVT2kT7Kg+t62q9VYS+O+6n3PU+okdHEP2CejaFj/u86cIEPFEkjYyDjdvCepic V4I1hXlo8nip4Q1tXRU4HIpCq0iFU3EZHkh8ZnmP3KQMpS42FhquG62A0bDvVzu+ YUBvtxS+lfQc6xsyofXijpolJKcQph9sWrh/yvztDdkFZdyrfY9mByRP2LCNsAZg 15Zo4IOYWTxC6CCEMF9kH+0kzpJcgRM3ZENzoxWAbLtmepDgQYQQmw=3D=3D =3D8Ig4
-----END PGP SIGNATURE-----
Accepted:
mydns-mysql_1.1.0-7etch1_i386.deb
  to pool/main/m/mydns/mydns-mysql_1.1.0-7etch1_i386.deb mydns-pgsql_1.1.0-7etch1_i386.deb
  to pool/main/m/mydns/mydns-pgsql_1.1.0-7etch1_i386.deb mydns_1.1.0-7etch1.diff.gz
  to pool/main/m/mydns/mydns_1.1.0-7etch1.diff.gz mydns_1.1.0-7etch1.dsc
  to pool/main/m/mydns/mydns_1.1.0-7etch1.dsc

Do you need more help?X

Date: Thu, 20 Dec 2007 19:53:59 +0000
From: Thijs Kinkhorst <thijs@debian.org> To: debian-changes@lists.debian.org
Subject: Accepted cacti 0.8.6i-3.2 (source all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Tue, 27 Nov 2007 17:16:10 +0100
Source: cacti
Binary: cacti
Architecture: source all
Version: 0.8.6i-3.2
Distribution: stable-security
Urgency: low
Maintainer: sean finney <seanius@debian.org> Changed-By: Thijs Kinkhorst <thijs@debian.org> Description:=20
 cacti - Frontend to rrdtool for monitoring systems and services Changes:=20
 cacti (0.8.6i-3.2) stable-security; urgency=3Dlow  .

  • Rebuild to correct build error. Files:=20 d595d4a1e11781e46b21e6d01c434b29 873 web extra cacti_0.8.6i-3.2.dsc 341b5828d95db91f81f5fbba65411d63 1122700 web extra cacti_0.8.6i.orig.tar= .gz 46d229352afad9cca2fdc8e61329521e 34884 web extra cacti_0.8.6i-3.2.diff.g= z a4156b5ff0ed3ef4251f8214dda90221 958872 web extra cacti_0.8.6i-3.2_all.d= eb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iQEVAwUBR06Fmmz0hbPcukPfAQKplwf/Z4/H+h9ZwkAwLLc19Dntj3WJnaJTJcsL siaTF2Yi5CUfspgaeK73duK6WQFXwXZnUTIVssuQiHazvvbRQY8tfgiUlbGNtr4b rMKID4B2tJGvK6ZPAEP2xMynRy7c4FJ4TLNN8lWB9gtO4Gb/KNkGa/9ndvND05Kp aBGIsKlSbdCSHXsSFHw7dB5aiWitrsS1i4Bt+eSRlhB4Th4P977wo9jhprKQc0zz 2ELT5jPWHQAO7N951G6xw2j6rbTKkf91NMfQHPTdYbva4fNGsBc9pTKjFvOTGsOm AYunQZAlZzHHssOxjDYBQMy1dq2sS+x7m46237Ok270zqQd+VOYybg=3D=3D =3DJwga
-----END PGP SIGNATURE-----
Accepted:
cacti_0.8.6i-3.2.diff.gz
  to pool/main/c/cacti/cacti_0.8.6i-3.2.diff.gz cacti_0.8.6i-3.2.dsc
  to pool/main/c/cacti/cacti_0.8.6i-3.2.dsc cacti_0.8.6i-3.2_all.deb
  to pool/main/c/cacti/cacti_0.8.6i-3.2_all.deb

Date: Thu, 20 Dec 2007 19:52:57 +0000
From: Steffen Joeris <white@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted htdig 1:3.2.0b6-3.1etch1 (source i386 all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Can we help you?X

Format: 1.7
Date: Tue, 11 Dec 2007 08:45:46 +0000
Source: htdig
Binary: htdig htdig-doc
Architecture: source i386 all
Version: 1:3.2.0b6-3.1etch1
Distribution: stable-security
Urgency: high
Maintainer: Debian QA Group <packages@qa.debian.org> Changed-By: Steffen Joeris <white@debian.org> Description:=20
 htdig - WWW search system for an intranet or small internet  htdig-doc - Documentation for the htdig package Changes:=20
 htdig (1:3.2.0b6-3.1etch1) stable-security; urgency=3Dhigh  .

  • Non-maintainer upload by the security team
  • Fix XSS in htsearch by not displaying the sort type in htsearch/Display.cc and libhtdig/ResultFetch.cc anymore, if it is unrecognised, thanks to William Grant Fixes: CVE-2007-6110 Files:=20 cd4c8534f4615e145331c49ce61d6dc8 616 web optional htdig_3.2.0b6-3.1etch1= .dsc 8a6952f5b97e305dbb7489045bad220f 3104936 web optional htdig_3.2.0b6.orig= .tar.gz c604a5e5b383b92701751cc59dc42f64 86277 web optional htdig_3.2.0b6-3.1etc= h1.diff.gz 8ef47406cfd1e8e443a1fd52600f5852 528278 doc optional htdig-doc_3.2.0b6-3= .1etch1_all.deb eb919a14cb3b39e5bb897d1402d70c52 1850284 web optional htdig_3.2.0b6-3.1e= tch1_i386.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHXoq062zWxYk/rQcRAndzAKCyxEZcnmLVFl6LGtMiIBZVst1SEwCeKuqO 7cUier1rs6WsESdqYJ6fHXw=3D
=3DqXS3
-----END PGP SIGNATURE-----
Accepted:
htdig-doc_3.2.0b6-3.1etch1_all.deb
  to pool/main/h/htdig/htdig-doc_3.2.0b6-3.1etch1_all.deb htdig_3.2.0b6-3.1etch1.diff.gz
  to pool/main/h/htdig/htdig_3.2.0b6-3.1etch1.diff.gz htdig_3.2.0b6-3.1etch1.dsc
  to pool/main/h/htdig/htdig_3.2.0b6-3.1etch1.dsc htdig_3.2.0b6-3.1etch1_i386.deb
  to pool/main/h/htdig/htdig_3.2.0b6-3.1etch1_i386.deb

Date: Thu, 20 Dec 2007 19:54:46 +0000
From: Steffen Joeris <white@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted sitebar 3.3.8-7etch1 (source all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Can't find what you're looking for?X

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Wed, 5 Dec 2007 20:06:26 +0100
Source: sitebar
Binary: sitebar
Architecture: source all
Version: 3.3.8-7etch1
Distribution: stable-security
Urgency: high
Maintainer: Kevin Coyner <kevin@rustybear.com> Changed-By: Steffen Joeris <white@debian.org> Description:=20
 sitebar - A web based bookmark manager written in PHP Closes: 447135 448689 448690
Changes:=20
 sitebar (3.3.8-7etch1) stable-security; urgency=3Dhigh  .

  • Non-maintainer upload by the security team
  • Fix multiple security issues in the translator module (translator.ph= p) Fixes: CVE-2007-5491, CVE-2007-5492, CVE-2007-5693, CVE-2007-5694 (Closes: #447135)
  • Fix possible redirect to other websites via the forward parameter in command.php Fixes: CVE-2007-5695 (Closes: #448690)
  • Fix multiple XSS by adding more checks for certain parameters Fixes: CVE-2007-5692 (Closes: #448689) Files:=20 8af7750ff9a808798bf1b898c69b84d6 583 web optional sitebar_3.3.8-7etch1.d= sc fa7b5367808966c8db6241f475f3ef2f 686944 web optional sitebar_3.3.8.orig.= tar.gz cdc186193c2ad2d4e69f220dd8372ccd 22552 web optional sitebar_3.3.8-7etch1= .diff.gz 16eb8791acea7cf1c99ac61b7b47e4b1 709524 web optional sitebar_3.3.8-7etch= 1_all.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

Don't know where to look next?X

iD8DBQFHVvlM62zWxYk/rQcRAkCFAJ4hjGacLh7HZM51uV2G3/dFYQOs1ACfT32n ORg51pFyQkF8/eLjToY9k1I=3D
=3DY9Dx
-----END PGP SIGNATURE-----
Accepted:
sitebar_3.3.8-7etch1.diff.gz
  to pool/main/s/sitebar/sitebar_3.3.8-7etch1.diff.gz sitebar_3.3.8-7etch1.dsc
  to pool/main/s/sitebar/sitebar_3.3.8-7etch1.dsc sitebar_3.3.8-7etch1_all.deb
  to pool/main/s/sitebar/sitebar_3.3.8-7etch1_all.deb

Date: Thu, 20 Dec 2007 19:53:53 +0000
From: Moritz Muehlenhoff <jmm@debian.org> To: debian-changes@lists.debian.org
Subject: Accepted wireshark 0.99.4-5.etch.1 (source i386)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Fri, 23 Nov 2007 20:11:17 +0100
Source: wireshark
Binary: wireshark ethereal-dev wireshark-common tshark wireshark-dev ethe= real ethereal-common tethereal
Architecture: source i386
Version: 0.99.4-5.etch.1
Distribution: stable-security
Urgency: high
Maintainer: Frederic Peters <fpeters@debian.org> Changed-By: Moritz Muehlenhoff <jmm@debian.org> Description:=20
 ethereal - dummy upgrade package for ethereal -> wireshark  ethereal-common - dummy upgrade package for ethereal -> wireshark  ethereal-dev - dummy upgrade package for ethereal -> wireshark

 tethereal  - dummy upgrade package for ethereal -> wireshark
 tshark     - network traffic analyzer (console)
 wireshark  - network traffic analyzer

 wireshark-common - network traffic analyser (common files)  wireshark-dev - network traffic analyser (development tools) Changes:=20
 wireshark (0.99.4-5.etch.1) stable-security; urgency=3Dhigh  .
  • Backported security fixes from 0.99.7 Files:=20 12e8146f9cc10fe216e4d1a0a750037f 1066 net optional wireshark_0.99.4-5.et= ch.1.dsc 61ed409b92000f30877799228daff252 42799 net optional wireshark_0.99.4-5.e= tch.1.diff.gz cbdc35a89f36b126c89b478452736cc6 7501872 net optional wireshark-common_0= .99.4-5.etch.1_i386.deb 4b8eb4fb7d8f606ed1789c8df2cb039a 564526 net optional wireshark_0.99.4-5.= etch.1_i386.deb 59cf091877d995796a33b6482ac413ea 102150 net optional tshark_0.99.4-5.etc= h.1_i386.deb a3d50d0da284264b733f40ee7febd08f 182520 devel optional wireshark-dev_0.9= 9.4-5.etch.1_i386.deb b2ff8d7600e250a50459ddc964f7dbdf 22698 net optional ethereal-common_0.99= .4-5.etch.1_i386.deb 6c8610eef3cdb923a5848c3c6e31d0fe 22354 devel optional ethereal-dev_0.99.= 4-5.etch.1_i386.deb b1aad678b3ddf89bf94759f9f3858fe4 22336 net optional ethereal_0.99.4-5.et= ch.1_i386.deb e9e76892435a11ab9f504f044893331d 22344 net optional tethereal_0.99.4-5.e= tch.1_i386.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHR0O/Xm3vHE4uyloRAtiRAKCG1ZaWnke5nAh4DQMRdg5GQZztXwCfRRFr oQQKTTbOR6c/DbJwqQhjLf8=3D
=3DAXmz
-----END PGP SIGNATURE-----
Accepted:
ethereal-common_0.99.4-5.etch.1_i386.deb   to pool/main/w/wireshark/ethereal-common_0.99.4-5.etch.1_i386.deb ethereal-dev_0.99.4-5.etch.1_i386.deb
  to pool/main/w/wireshark/ethereal-dev_0.99.4-5.etch.1_i386.deb ethereal_0.99.4-5.etch.1_i386.deb
  to pool/main/w/wireshark/ethereal_0.99.4-5.etch.1_i386.deb tethereal_0.99.4-5.etch.1_i386.deb
  to pool/main/w/wireshark/tethereal_0.99.4-5.etch.1_i386.deb tshark_0.99.4-5.etch.1_i386.deb
  to pool/main/w/wireshark/tshark_0.99.4-5.etch.1_i386.deb wireshark-common_0.99.4-5.etch.1_i386.deb   to pool/main/w/wireshark/wireshark-common_0.99.4-5.etch.1_i386.deb wireshark-dev_0.99.4-5.etch.1_i386.deb
  to pool/main/w/wireshark/wireshark-dev_0.99.4-5.etch.1_i386.deb wireshark_0.99.4-5.etch.1.diff.gz
  to pool/main/w/wireshark/wireshark_0.99.4-5.etch.1.diff.gz wireshark_0.99.4-5.etch.1.dsc
  to pool/main/w/wireshark/wireshark_0.99.4-5.etch.1.dsc wireshark_0.99.4-5.etch.1_i386.deb
  to pool/main/w/wireshark/wireshark_0.99.4-5.etch.1_i386.deb

Confused? Frustrated?X

Date: Thu, 20 Dec 2007 19:53:52 +0000
From: Kilian Krause <kilian@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted opal 2.2.3.dfsg-3+etch1 (source i386 all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Tue, 4 Dec 2007 12:28:48 +0100
Source: opal
Binary: libopal-doc simpleopal libopal-2.2.0 libopal-dev libopal-dbg Architecture: source i386 all
Version: 2.2.3.dfsg-3+etch1
Distribution: proposed-updates
Urgency: high
Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.or= g>
Changed-By: Kilian Krause <kilian@debian.org> Description:=20

 libopal-2.2.0 - Open Phone Abstraction Library - successor of OpenH323
 libopal-dbg - OPAL library debug symbols
 libopal-dev - OPAL library header files
 libopal-doc - OPAL library documentation files
 simpleopal - Simple example from the OPAL project Closes: 454141
Changes:=20
 opal (2.2.3.dfsg-3+etch1) proposed-updates; urgency=3Dhigh  .
  • Fix CVE-2007-4924: OPAL allows remote attackers to cause a denial of service (crash) via an invalid Content-Length header field in Sessio= n Initiation Protocol (SIP) packets, which causes a \0 byte to be writ= ten to an "attacker-controlled address." (Closes: #454141) Files:=20 6a3d18872b5bafcaa3150fbd4ad38dea 1088 libs optional opal_2.2.3.dfsg-3+et= ch1.dsc 1bcebb551ba5ad9f9a210bcaab8044e5 14661 libs optional opal_2.2.3.dfsg-3+e= tch1.diff.gz 63eed9a1292a36dc48e4cae3a8e86e26 2917386 libs optional libopal-2.2.0_2.2= .3.dfsg-3+etch1_i386.deb 948e163693e7fdf861cf87d7fbdcfb28 448870 libdevel optional libopal-dev_2.= 2.3.dfsg-3+etch1_i386.deb 83ef674d07a65dfc70325d108705f89f 61720 comm optional simpleopal_2.2.3.df= sg-3+etch1_i386.deb 944de1e0e9349e7e6a92288d982cf718 627898 libdevel extra libopal-dbg_2.2.3= .dfsg-3+etch1_i386.deb e6ce62f878cc6ac9e7b48f646b624ec3 7890174 doc extra libopal-doc_2.2.3.dfs= g-3+etch1_all.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHVm7Evdkzt4X+wX8RAu0jAJ9L0Pt47bsXhFy/LSOKrLvdCTOcRQCfVbe2 i6vgdPQ0nhGCAhamPiv13Yo=3D
=3D8lpz
-----END PGP SIGNATURE-----
Accepted:
libopal-2.2.0_2.2.3.dfsg-3+etch1_i386.deb   to pool/main/o/opal/libopal-2.2.0_2.2.3.dfsg-3+etch1_i386.deb

libopal-dbg_2.2.3.dfsg-3+etch1_i386.deb
  to pool/main/o/opal/libopal-dbg_2.2.3.dfsg-3+etch1_i386.deb
libopal-dev_2.2.3.dfsg-3+etch1_i386.deb
  to pool/main/o/opal/libopal-dev_2.2.3.dfsg-3+etch1_i386.deb
libopal-doc_2.2.3.dfsg-3+etch1_all.deb
  to pool/main/o/opal/libopal-doc_2.2.3.dfsg-3+etch1_all.deb opal_2.2.3.dfsg-3+etch1.diff.gz
  to pool/main/o/opal/opal_2.2.3.dfsg-3+etch1.diff.gz opal_2.2.3.dfsg-3+etch1.dsc
  to pool/main/o/opal/opal_2.2.3.dfsg-3+etch1.dsc simpleopal_2.2.3.dfsg-3+etch1_i386.deb
  to pool/main/o/opal/simpleopal_2.2.3.dfsg-3+etch1_i386.deb

Date: Thu, 20 Dec 2007 19:54:08 +0000
From: Fabio Tranchitella <kobold@debian.org> To: debian-changes@lists.debian.org
Subject: Accepted zope-cmfplone 2.5.1-4etch1 (source all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Call Pantek today for Open Source Technical Support at 1-877-546-8934 - 24/7/365X

Format: 1.7
Date: Thu, 08 Nov 2007 13:50:47 +0100
Source: zope-cmfplone
Binary: plone-site zope-cmfplone
Architecture: source all
Version: 2.5.1-4etch1
Distribution: stable-security
Urgency: high
Maintainer: Debian/Ubuntu Zope Team <pkg-zope-developers@lists.alioth.deb= ian.org>
Changed-By: Fabio Tranchitella <kobold@debian.org> Description:=20
 plone-site - preconfigured zope instance containing a plone site  zope-cmfplone - content management system based on zope and cmf Closes: 449523
Changes:=20
 zope-cmfplone (2.5.1-4etch1) stable-security; urgency=3Dhigh  .

  • statusmessage.py, __init__.py: applied fix for CVE-2007-5741: unsafe data interpreted as pickles. (Closes: #449523) Files:=20 dccc6173d55e9fedbe5a7b91d84a5721 1114 web optional zope-cmfplone_2.5.1-4= etch1.dsc b48215d46aafa9e1f12196263d86a191 1064993 web optional zope-cmfplone_2.5.= 1.orig.tar.gz 3a83d9323ac5285ac3d5cbde1d54e5f7 10922 web optional zope-cmfplone_2.5.1-= 4etch1.diff.gz 49e266b7a7910079c92e039a910c4903 1190788 web optional zope-cmfplone_2.5.= 1-4etch1_all.deb 318b81cff9a5bf4bf352743c46095693 9828 web optional plone-site_2.5.1-4etc= h1_all.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iQEVAwUBRzNIP2z0hbPcukPfAQKXlQgAw5YxXy7K+SmgPkR+ErAxeS36OAMoecq6 Ku5EZeE7OsBNffYwX3ndYhQB2X84h1HAhN+iqA6Izm/LL/W4I0SuIK7K6KQPIiiq 5zpe4FD2zMecQW6JWWGjRhKZozpABb2eySxcQApmRsnQGK+4bpMgqRMjY2UBLOh7 DqnlvAVD4qw8OIWWkeyQrcVSWG0PkWz6nbqUGv2jNRDpvc8k/35H9ivhNCCF2r3Y CTMP0o5EpMjitFiH2ZLpAwEq3Jz2q8IixFla8RuC7UjzFYeXZkjYvlcUOkqsjPqN F+ztuYeUR0Vn4f6/pZPjmsIOkHgvPJbqOfpYkfzJ2TNx9adOzMkxTQ=3D=3D =3DIwfL
-----END PGP SIGNATURE-----
Accepted:
plone-site_2.5.1-4etch1_all.deb
  to pool/main/z/zope-cmfplone/plone-site_2.5.1-4etch1_all.deb zope-cmfplone_2.5.1-4etch1.diff.gz
  to pool/main/z/zope-cmfplone/zope-cmfplone_2.5.1-4etch1.diff.gz zope-cmfplone_2.5.1-4etch1.dsc
  to pool/main/z/zope-cmfplone/zope-cmfplone_2.5.1-4etch1.dsc zope-cmfplone_2.5.1-4etch1_all.deb
  to pool/main/z/zope-cmfplone/zope-cmfplone_2.5.1-4etch1_all.deb

Date: Thu, 20 Dec 2007 19:52:55 +0000
From: Rene Engelhard <rene@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted hsqldb 1.8.0.7-1etch1 (source all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Sun, 04 Nov 2007 23:09:45 +0100
Source: hsqldb
Binary: hsqldb-server libhsqldb-java-doc libhsqldb-java Architecture: source all
Version: 1.8.0.7-1etch1
Distribution: stable-security
Urgency: high
Maintainer: Peter Eisentraut <petere@debian.org> Changed-By: Rene Engelhard <rene@debian.org> Description:=20
 hsqldb-server - Java SQL database server  libhsqldb-java - Java SQL database engine  libhsqldb-java-doc - documentation for HSQLDB Changes:=20
 hsqldb (1.8.0.7-1etch1) stable-security; urgency=3Dhigh  .

  • backport hsqldb 1.8.0.9 changes to fix CVE-2007-4575 Files:=20 e5de2bc9c738f592280016f45b6e0a62 674 libs optional hsqldb_1.8.0.7-1etch1= .dsc 316a2dc3b8fef1bee991d16e2cc7341b 2051414 libs optional hsqldb_1.8.0.7.or= ig.tar.gz 73eb16347408015a941c7b1cadfa03ab 11725 libs optional hsqldb_1.8.0.7-1etc= h1.diff.gz 0154566048078ba8e6d2f70cead1ab23 852586 libs optional libhsqldb-java_1.8= .0.7-1etch1_all.deb cc96a30a2876e64e4368d1ada49ab914 860770 doc optional libhsqldb-java-doc_= 1.8.0.7-1etch1_all.deb 995273c292357f5d8cdd385484765fa9 40270 misc optional hsqldb-server_1.8.0= .7-1etch1_all.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

Do you need help?X

iD8DBQFHTfMo+FmQsCSK63MRAjCWAJ9UqLh5M1sbA9owRCb48d+SK4Tm9QCdFN6m LKbTJlSf9lxT4YO+XeOdRes=3D
=3Dvcl2
-----END PGP SIGNATURE-----
Accepted:
hsqldb-server_1.8.0.7-1etch1_all.deb
  to pool/main/h/hsqldb/hsqldb-server_1.8.0.7-1etch1_all.deb hsqldb_1.8.0.7-1etch1.diff.gz
  to pool/main/h/hsqldb/hsqldb_1.8.0.7-1etch1.diff.gz hsqldb_1.8.0.7-1etch1.dsc
  to pool/main/h/hsqldb/hsqldb_1.8.0.7-1etch1.dsc libhsqldb-java-doc_1.8.0.7-1etch1_all.deb   to pool/main/h/hsqldb/libhsqldb-java-doc_1.8.0.7-1etch1_all.deb libhsqldb-java_1.8.0.7-1etch1_all.deb
  to pool/main/h/hsqldb/libhsqldb-java_1.8.0.7-1etch1_all.deb

Date: Thu, 20 Dec 2007 19:52:59 +0000
From: Gregory Colpart (evolix) <reg@evolix.fr> To: debian-changes@lists.debian.org
Subject: Accepted horde3 3.1.3-4etch1 (source all)

Message-Id: 
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

-----BEGIN PGP SIGNED MESSAGE-----

Hash: SHA1

Format: 1.7
Date: Sun, 22 Jul 2007 06:29:12 +0200
Source: horde3
Binary: horde3
Architecture: source all
Version: 3.1.3-4etch1
Distribution: stable-security
Urgency: high
Maintainer: Horde Maintainers <pkg-horde-hackers@lists.alioth.debian.org> Changed-By: Gregory Colpart (evolix) <reg@evolix.fr> Description:=20
 horde3 - horde web application framework Closes: 434045
Changes:=20
 horde3 (3.1.3-4etch1) stable-security; urgency=3Dhigh  .

  • Fix XSS vulnerability. See CVE-2007-1473 for more information. (Closes: #434045) Files:=20 9fe3ec9d81a0d0c8ec6dd2ae3e14ed40 974 web optional horde3_3.1.3-4etch1.ds= c fbc56c608ac81474b846b1b4b7bb5ee7 5232958 web optional horde3_3.1.3.orig.= tar.gz 84cad3aed2026c8a6358891897a15ee7 10633 web optional horde3_3.1.3-4etch1.= diff.gz 34a3af59a3469722ecf832948d390cea 5270226 web optional horde3_3.1.3-4etch= 1_all.deb

-----BEGIN PGP SIGNATURE-----

Version: GnuPG v1.4.6 (GNU/Linux)

iQEVAwUBRzHHjWz0hbPcukPfAQK+ngf/dkAXl1bNvIjVblV7+vgBGg8S+HljuGnl KXaTZEPwjzvZc3BbZfdULEogg29FClQwEbAKfr7S/s7NRF+EK87xwj7w2Mm6W3e/ cJkIDmEFkY/wSFh9liqKgj8xxLvuDqi88oMonxmZZyvxiSlWAq9+M/dERWj9OHjS mF3AgaWn51pdDvz+7WPgBDpfh8JsWeRmdWLSTDNq/ZiwlikD7FyeDrk2TYcocWp9 CAURubIJwaFaMyxucnFfCnSmch+PMgnepCUQS7UZePSuxO6enldfUHa5yXVzyhvL uKasUHjf8vzHaZAYseNv1sJNX+jPLJsJu+BxweehclhPhgTxPtm+/w=3D=3D =3DdEaQ
-----END PGP SIGNATURE-----
Accepted:
horde3_3.1.3-4etch1.diff.gz
  to pool/main/h/horde3/horde3_3.1.3-4etch1.diff.gz horde3_3.1.3-4etch1.dsc
  to pool/main/h/horde3/horde3_3.1.3-4etch1.dsc horde3_3.1.3-4etch1_all.deb
  to pool/main/h/horde3/horde3_3.1.3-4etch1_all.deb

End of debian-changes-digest Digest V2007 Issue #148


Received on Thu Dec 20 15:43:25 2007
Do you need more help?X

This archive was generated by hypermail 2.1.8 : Wed Mar 19 2008 - 07:00:03 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library