Date: Thu, 20 Dec 2007 19:53:50 +0000
From: Kilian Krause <kilian@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted pwlib 1.10.2-2+etch1 (source i386 all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Tue, 4 Dec 2007 12:20:23 +0100
Source: pwlib
Binary: libpt-plugins-v4l2 libpt-plugins-oss libpt-plugins-alsa libpt-1.1=
0.0 libpt-plugins-dc libpt-dev libpt-plugins-v4l libpt-plugins-avc libpt-=
doc libpt-dbg
Architecture: source i386 all
Version: 1.10.2-2+etch1
Distribution: proposed-updates
Urgency: high
Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.or=
g>
Changed-By: Kilian Krause <kilian@debian.org>
Description:=20
libpt-1.10.0 - Portable Windows Library
libpt-dbg - Portable Windows Library development debug files
libpt-dev - Portable Windows Library development files
libpt-doc - Portable Windows Library documentation & sample files
libpt-plugins-alsa - Portable Windows Library Audio Plugin for the ALSA =
Interface
libpt-plugins-avc - PWLib Video Plugin for IEEE1394 (FireWire) AVC devic=
es
libpt-plugins-dc - PWLib Video Plugin for IEEE1394 (Firewire) DC Devices
libpt-plugins-oss - Portable Windows Library Audio Plugins for the OSS I=
nterface
libpt-plugins-v4l - Portable Windows Library Video Plugin for Video4Linu=
x
libpt-plugins-v4l2 - Portable Windows Library Video Plugin for Video4Lin=
ux v2
Closes: 454133
Changes:=20
pwlib (1.10.2-2+etch1) proposed-updates; urgency=3Dhigh
.
- Fix remote denial of service vulnerability caused
by a call to PString::vsprintf if the used object already
contained more than 1000 characters (CVE-2007-4897; Closes: #454133)=
.
Files:=20
474274f23ff55e7431db60f452070b42 1326 libs optional pwlib_1.10.2-2+etch1=
.dsc
088667f020f5ca3935606517e059e5dd 21880 libs optional pwlib_1.10.2-2+etch=
1.diff.gz
029bf796c89705bde5c72b2493cace03 1176660 libs optional libpt-1.10.0_1.10=
.2-2+etch1_i386.deb
554dd0002ac3b5a674c581bda54e169c 2517044 libdevel optional libpt-dev_1.1=
0.2-2+etch1_i386.deb
bfcd8e5a6664a3657b040cbc400a3fe8 3614540 libdevel extra libpt-dbg_1.10.2=
-2+etch1_i386.deb
c3c97ac7171df13a44a0bdfc449fbb42 56678 libs optional libpt-plugins-v4l_1=
.10.2-2+etch1_i386.deb
83a0fec3a133af3f14a1b256942cb225 57420 libs optional libpt-plugins-v4l2_=
1.10.2-2+etch1_i386.deb
db511085776868929d209ed845935d00 58970 libs optional libpt-plugins-avc_1=
.10.2-2+etch1_i386.deb
892bb1607137082bd865dde05ddca93d 47814 libs optional libpt-plugins-dc_1.=
10.2-2+etch1_i386.deb
e2f4fd52408630363bc8b77ffbf28aec 60702 libs optional libpt-plugins-oss_1=
.10.2-2+etch1_i386.deb
d995849a759af3514c0d3de9d89a0152 55218 libs optional libpt-plugins-alsa_=
1.10.2-2+etch1_i386.deb
62977717ce1c9d62c4bcb2fdfd3dd9ee 3123866 doc extra libpt-doc_1.10.2-2+et=
ch1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHVlxivdkzt4X+wX8RAqFNAJ96b2m3pQ+Aniyq4G+4UODCxqtz3wCfQHfC
TYYp8ClfDMoelNP3t+xPx7M=3D
=3DIocf
-----END PGP SIGNATURE-----
Accepted:
libpt-1.10.0_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-1.10.0_1.10.2-2+etch1_i386.deb
libpt-dbg_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-dbg_1.10.2-2+etch1_i386.deb
libpt-dev_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-dev_1.10.2-2+etch1_i386.deb
libpt-doc_1.10.2-2+etch1_all.deb
to pool/main/p/pwlib/libpt-doc_1.10.2-2+etch1_all.deb
libpt-plugins-alsa_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-plugins-alsa_1.10.2-2+etch1_i386.deb
libpt-plugins-avc_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-plugins-avc_1.10.2-2+etch1_i386.deb
libpt-plugins-dc_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-plugins-dc_1.10.2-2+etch1_i386.deb
libpt-plugins-oss_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-plugins-oss_1.10.2-2+etch1_i386.deb
libpt-plugins-v4l2_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-plugins-v4l2_1.10.2-2+etch1_i386.deb
libpt-plugins-v4l_1.10.2-2+etch1_i386.deb
to pool/main/p/pwlib/libpt-plugins-v4l_1.10.2-2+etch1_i386.deb
pwlib_1.10.2-2+etch1.diff.gz
to pool/main/p/pwlib/pwlib_1.10.2-2+etch1.diff.gz
pwlib_1.10.2-2+etch1.dsc
to pool/main/p/pwlib/pwlib_1.10.2-2+etch1.dsc
Date: Thu, 20 Dec 2007 19:53:16 +0000
From: Jorge Salamero Sanz <bencer@cauterized.net>
To: debian-changes@lists.debian.org
Subject: Accepted mydns 1:1.1.0-7etch1 (source i386)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Fri, 07 Dec 2007 15:23:25 +0100
Source: mydns
Binary: mydns-pgsql mydns-mysql
Architecture: source i386
Version: 1:1.1.0-7etch1
Distribution: stable-security
Urgency: high
Maintainer: Philipp Kern <pkern@debian.org>
Changed-By: Jorge Salamero Sanz <bencer@cauterized.net>
Description:=20
mydns-mysql - DNS server using MySQL for data storage
mydns-pgsql - DNS server using PostgreSQL for data storage
Changes:=20
mydns (1:1.1.0-7etch1) stable-security; urgency=3Dhigh
.
- Fix for CVE-2007-2362 Multiple Remote Dynamic DNS Update Vulnerabili=
ties.
Philipp Kern <pkern@debian.org> patch from lenny package.
Files:=20
6d0a22d23d6a218b2f6c36a0973fec29 1016 net optional mydns_1.1.0-7etch1.ds=
c
ec86140455b188b46c7d0eb5dc5da86b 726052 net optional mydns_1.1.0.orig.ta=
r.gz
68288d6559240f652b363175077ee372 23201 net optional mydns_1.1.0-7etch1.d=
iff.gz
a0d5f307f3eedfc6c85a587cc5572463 249396 net optional mydns-mysql_1.1.0-7=
etch1_i386.deb
a2ef881adaf58f206315b6843f6e0f0f 241112 net optional mydns-pgsql_1.1.0-7=
etch1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iQEVAwUBR1nGmWz0hbPcukPfAQJtSwf9HfyeVzV98k6vvSC33kgrHxEoKF7yU/YG
Abk9j17ZIeWF+NkBzmfuzJ4XuJcEHotfcGBL2+zJboGBDkMPuXYpX8SpmfK2tZDi
ueVT2kT7Kg+t62q9VYS+O+6n3PU+okdHEP2CejaFj/u86cIEPFEkjYyDjdvCepic
V4I1hXlo8nip4Q1tXRU4HIpCq0iFU3EZHkh8ZnmP3KQMpS42FhquG62A0bDvVzu+
YUBvtxS+lfQc6xsyofXijpolJKcQph9sWrh/yvztDdkFZdyrfY9mByRP2LCNsAZg
15Zo4IOYWTxC6CCEMF9kH+0kzpJcgRM3ZENzoxWAbLtmepDgQYQQmw=3D=3D
=3D8Ig4
-----END PGP SIGNATURE-----
Accepted:
mydns-mysql_1.1.0-7etch1_i386.deb
to pool/main/m/mydns/mydns-mysql_1.1.0-7etch1_i386.deb
mydns-pgsql_1.1.0-7etch1_i386.deb
to pool/main/m/mydns/mydns-pgsql_1.1.0-7etch1_i386.deb
mydns_1.1.0-7etch1.diff.gz
to pool/main/m/mydns/mydns_1.1.0-7etch1.diff.gz
mydns_1.1.0-7etch1.dsc
to pool/main/m/mydns/mydns_1.1.0-7etch1.dsc
Date: Thu, 20 Dec 2007 19:53:59 +0000
From: Thijs Kinkhorst <thijs@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted cacti 0.8.6i-3.2 (source all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Tue, 27 Nov 2007 17:16:10 +0100
Source: cacti
Binary: cacti
Architecture: source all
Version: 0.8.6i-3.2
Distribution: stable-security
Urgency: low
Maintainer: sean finney <seanius@debian.org>
Changed-By: Thijs Kinkhorst <thijs@debian.org>
Description:=20
cacti - Frontend to rrdtool for monitoring systems and services
Changes:=20
cacti (0.8.6i-3.2) stable-security; urgency=3Dlow
.
- Rebuild to correct build error.
Files:=20
d595d4a1e11781e46b21e6d01c434b29 873 web extra cacti_0.8.6i-3.2.dsc
341b5828d95db91f81f5fbba65411d63 1122700 web extra cacti_0.8.6i.orig.tar=
.gz
46d229352afad9cca2fdc8e61329521e 34884 web extra cacti_0.8.6i-3.2.diff.g=
z
a4156b5ff0ed3ef4251f8214dda90221 958872 web extra cacti_0.8.6i-3.2_all.d=
eb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iQEVAwUBR06Fmmz0hbPcukPfAQKplwf/Z4/H+h9ZwkAwLLc19Dntj3WJnaJTJcsL
siaTF2Yi5CUfspgaeK73duK6WQFXwXZnUTIVssuQiHazvvbRQY8tfgiUlbGNtr4b
rMKID4B2tJGvK6ZPAEP2xMynRy7c4FJ4TLNN8lWB9gtO4Gb/KNkGa/9ndvND05Kp
aBGIsKlSbdCSHXsSFHw7dB5aiWitrsS1i4Bt+eSRlhB4Th4P977wo9jhprKQc0zz
2ELT5jPWHQAO7N951G6xw2j6rbTKkf91NMfQHPTdYbva4fNGsBc9pTKjFvOTGsOm
AYunQZAlZzHHssOxjDYBQMy1dq2sS+x7m46237Ok270zqQd+VOYybg=3D=3D
=3DJwga
-----END PGP SIGNATURE-----
Accepted:
cacti_0.8.6i-3.2.diff.gz
to pool/main/c/cacti/cacti_0.8.6i-3.2.diff.gz
cacti_0.8.6i-3.2.dsc
to pool/main/c/cacti/cacti_0.8.6i-3.2.dsc
cacti_0.8.6i-3.2_all.deb
to pool/main/c/cacti/cacti_0.8.6i-3.2_all.deb
Date: Thu, 20 Dec 2007 19:52:57 +0000
From: Steffen Joeris <white@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted htdig 1:3.2.0b6-3.1etch1 (source i386 all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Tue, 11 Dec 2007 08:45:46 +0000
Source: htdig
Binary: htdig htdig-doc
Architecture: source i386 all
Version: 1:3.2.0b6-3.1etch1
Distribution: stable-security
Urgency: high
Maintainer: Debian QA Group <packages@qa.debian.org>
Changed-By: Steffen Joeris <white@debian.org>
Description:=20
htdig - WWW search system for an intranet or small internet
htdig-doc - Documentation for the htdig package
Changes:=20
htdig (1:3.2.0b6-3.1etch1) stable-security; urgency=3Dhigh
.
- Non-maintainer upload by the security team
- Fix XSS in htsearch by not displaying the sort type in
htsearch/Display.cc and libhtdig/ResultFetch.cc anymore, if it is
unrecognised, thanks to William Grant
Fixes: CVE-2007-6110
Files:=20
cd4c8534f4615e145331c49ce61d6dc8 616 web optional htdig_3.2.0b6-3.1etch1=
.dsc
8a6952f5b97e305dbb7489045bad220f 3104936 web optional htdig_3.2.0b6.orig=
.tar.gz
c604a5e5b383b92701751cc59dc42f64 86277 web optional htdig_3.2.0b6-3.1etc=
h1.diff.gz
8ef47406cfd1e8e443a1fd52600f5852 528278 doc optional htdig-doc_3.2.0b6-3=
.1etch1_all.deb
eb919a14cb3b39e5bb897d1402d70c52 1850284 web optional htdig_3.2.0b6-3.1e=
tch1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHXoq062zWxYk/rQcRAndzAKCyxEZcnmLVFl6LGtMiIBZVst1SEwCeKuqO
7cUier1rs6WsESdqYJ6fHXw=3D
=3DqXS3
-----END PGP SIGNATURE-----
Accepted:
htdig-doc_3.2.0b6-3.1etch1_all.deb
to pool/main/h/htdig/htdig-doc_3.2.0b6-3.1etch1_all.deb
htdig_3.2.0b6-3.1etch1.diff.gz
to pool/main/h/htdig/htdig_3.2.0b6-3.1etch1.diff.gz
htdig_3.2.0b6-3.1etch1.dsc
to pool/main/h/htdig/htdig_3.2.0b6-3.1etch1.dsc
htdig_3.2.0b6-3.1etch1_i386.deb
to pool/main/h/htdig/htdig_3.2.0b6-3.1etch1_i386.deb
Date: Thu, 20 Dec 2007 19:54:46 +0000
From: Steffen Joeris <white@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted sitebar 3.3.8-7etch1 (source all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Wed, 5 Dec 2007 20:06:26 +0100
Source: sitebar
Binary: sitebar
Architecture: source all
Version: 3.3.8-7etch1
Distribution: stable-security
Urgency: high
Maintainer: Kevin Coyner <kevin@rustybear.com>
Changed-By: Steffen Joeris <white@debian.org>
Description:=20
sitebar - A web based bookmark manager written in PHP
Closes: 447135 448689 448690
Changes:=20
sitebar (3.3.8-7etch1) stable-security; urgency=3Dhigh
.
- Non-maintainer upload by the security team
- Fix multiple security issues in the translator module (translator.ph=
p)
Fixes: CVE-2007-5491, CVE-2007-5492, CVE-2007-5693, CVE-2007-5694
(Closes: #447135)
- Fix possible redirect to other websites via the forward parameter in
command.php
Fixes: CVE-2007-5695 (Closes: #448690)
- Fix multiple XSS by adding more checks for certain parameters
Fixes: CVE-2007-5692 (Closes: #448689)
Files:=20
8af7750ff9a808798bf1b898c69b84d6 583 web optional sitebar_3.3.8-7etch1.d=
sc
fa7b5367808966c8db6241f475f3ef2f 686944 web optional sitebar_3.3.8.orig.=
tar.gz
cdc186193c2ad2d4e69f220dd8372ccd 22552 web optional sitebar_3.3.8-7etch1=
.diff.gz
16eb8791acea7cf1c99ac61b7b47e4b1 709524 web optional sitebar_3.3.8-7etch=
1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHVvlM62zWxYk/rQcRAkCFAJ4hjGacLh7HZM51uV2G3/dFYQOs1ACfT32n
ORg51pFyQkF8/eLjToY9k1I=3D
=3DY9Dx
-----END PGP SIGNATURE-----
Accepted:
sitebar_3.3.8-7etch1.diff.gz
to pool/main/s/sitebar/sitebar_3.3.8-7etch1.diff.gz
sitebar_3.3.8-7etch1.dsc
to pool/main/s/sitebar/sitebar_3.3.8-7etch1.dsc
sitebar_3.3.8-7etch1_all.deb
to pool/main/s/sitebar/sitebar_3.3.8-7etch1_all.deb
Date: Thu, 20 Dec 2007 19:53:53 +0000
From: Moritz Muehlenhoff <jmm@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted wireshark 0.99.4-5.etch.1 (source i386)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Fri, 23 Nov 2007 20:11:17 +0100
Source: wireshark
Binary: wireshark ethereal-dev wireshark-common tshark wireshark-dev ethe=
real ethereal-common tethereal
Architecture: source i386
Version: 0.99.4-5.etch.1
Distribution: stable-security
Urgency: high
Maintainer: Frederic Peters <fpeters@debian.org>
Changed-By: Moritz Muehlenhoff <jmm@debian.org>
Description:=20
ethereal - dummy upgrade package for ethereal -> wireshark
ethereal-common - dummy upgrade package for ethereal -> wireshark
ethereal-dev - dummy upgrade package for ethereal -> wireshark
tethereal - dummy upgrade package for ethereal -> wireshark
tshark - network traffic analyzer (console)
wireshark - network traffic analyzer
wireshark-common - network traffic analyser (common files)
wireshark-dev - network traffic analyser (development tools)
Changes:=20
wireshark (0.99.4-5.etch.1) stable-security; urgency=3Dhigh
.
- Backported security fixes from 0.99.7
Files:=20
12e8146f9cc10fe216e4d1a0a750037f 1066 net optional wireshark_0.99.4-5.et=
ch.1.dsc
61ed409b92000f30877799228daff252 42799 net optional wireshark_0.99.4-5.e=
tch.1.diff.gz
cbdc35a89f36b126c89b478452736cc6 7501872 net optional wireshark-common_0=
.99.4-5.etch.1_i386.deb
4b8eb4fb7d8f606ed1789c8df2cb039a 564526 net optional wireshark_0.99.4-5.=
etch.1_i386.deb
59cf091877d995796a33b6482ac413ea 102150 net optional tshark_0.99.4-5.etc=
h.1_i386.deb
a3d50d0da284264b733f40ee7febd08f 182520 devel optional wireshark-dev_0.9=
9.4-5.etch.1_i386.deb
b2ff8d7600e250a50459ddc964f7dbdf 22698 net optional ethereal-common_0.99=
.4-5.etch.1_i386.deb
6c8610eef3cdb923a5848c3c6e31d0fe 22354 devel optional ethereal-dev_0.99.=
4-5.etch.1_i386.deb
b1aad678b3ddf89bf94759f9f3858fe4 22336 net optional ethereal_0.99.4-5.et=
ch.1_i386.deb
e9e76892435a11ab9f504f044893331d 22344 net optional tethereal_0.99.4-5.e=
tch.1_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHR0O/Xm3vHE4uyloRAtiRAKCG1ZaWnke5nAh4DQMRdg5GQZztXwCfRRFr
oQQKTTbOR6c/DbJwqQhjLf8=3D
=3DAXmz
-----END PGP SIGNATURE-----
Accepted:
ethereal-common_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/ethereal-common_0.99.4-5.etch.1_i386.deb
ethereal-dev_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/ethereal-dev_0.99.4-5.etch.1_i386.deb
ethereal_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/ethereal_0.99.4-5.etch.1_i386.deb
tethereal_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/tethereal_0.99.4-5.etch.1_i386.deb
tshark_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/tshark_0.99.4-5.etch.1_i386.deb
wireshark-common_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/wireshark-common_0.99.4-5.etch.1_i386.deb
wireshark-dev_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/wireshark-dev_0.99.4-5.etch.1_i386.deb
wireshark_0.99.4-5.etch.1.diff.gz
to pool/main/w/wireshark/wireshark_0.99.4-5.etch.1.diff.gz
wireshark_0.99.4-5.etch.1.dsc
to pool/main/w/wireshark/wireshark_0.99.4-5.etch.1.dsc
wireshark_0.99.4-5.etch.1_i386.deb
to pool/main/w/wireshark/wireshark_0.99.4-5.etch.1_i386.deb
Date: Thu, 20 Dec 2007 19:53:52 +0000
From: Kilian Krause <kilian@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted opal 2.2.3.dfsg-3+etch1 (source i386 all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Tue, 4 Dec 2007 12:28:48 +0100
Source: opal
Binary: libopal-doc simpleopal libopal-2.2.0 libopal-dev libopal-dbg
Architecture: source i386 all
Version: 2.2.3.dfsg-3+etch1
Distribution: proposed-updates
Urgency: high
Maintainer: Debian VoIP Team <pkg-voip-maintainers@lists.alioth.debian.or=
g>
Changed-By: Kilian Krause <kilian@debian.org>
Description:=20
libopal-2.2.0 - Open Phone Abstraction Library - successor of OpenH323
libopal-dbg - OPAL library debug symbols
libopal-dev - OPAL library header files
libopal-doc - OPAL library documentation files
simpleopal - Simple example from the OPAL project
Closes: 454141
Changes:=20
opal (2.2.3.dfsg-3+etch1) proposed-updates; urgency=3Dhigh
.
- Fix CVE-2007-4924: OPAL allows remote attackers to cause a denial of
service (crash) via an invalid Content-Length header field in Sessio=
n
Initiation Protocol (SIP) packets, which causes a \0 byte to be writ=
ten to
an "attacker-controlled address." (Closes: #454141)
Files:=20
6a3d18872b5bafcaa3150fbd4ad38dea 1088 libs optional opal_2.2.3.dfsg-3+et=
ch1.dsc
1bcebb551ba5ad9f9a210bcaab8044e5 14661 libs optional opal_2.2.3.dfsg-3+e=
tch1.diff.gz
63eed9a1292a36dc48e4cae3a8e86e26 2917386 libs optional libopal-2.2.0_2.2=
.3.dfsg-3+etch1_i386.deb
948e163693e7fdf861cf87d7fbdcfb28 448870 libdevel optional libopal-dev_2.=
2.3.dfsg-3+etch1_i386.deb
83ef674d07a65dfc70325d108705f89f 61720 comm optional simpleopal_2.2.3.df=
sg-3+etch1_i386.deb
944de1e0e9349e7e6a92288d982cf718 627898 libdevel extra libopal-dbg_2.2.3=
.dfsg-3+etch1_i386.deb
e6ce62f878cc6ac9e7b48f646b624ec3 7890174 doc extra libopal-doc_2.2.3.dfs=
g-3+etch1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHVm7Evdkzt4X+wX8RAu0jAJ9L0Pt47bsXhFy/LSOKrLvdCTOcRQCfVbe2
i6vgdPQ0nhGCAhamPiv13Yo=3D
=3D8lpz
-----END PGP SIGNATURE-----
Accepted:
libopal-2.2.0_2.2.3.dfsg-3+etch1_i386.deb
to pool/main/o/opal/libopal-2.2.0_2.2.3.dfsg-3+etch1_i386.deb
libopal-dbg_2.2.3.dfsg-3+etch1_i386.deb
to pool/main/o/opal/libopal-dbg_2.2.3.dfsg-3+etch1_i386.deb
libopal-dev_2.2.3.dfsg-3+etch1_i386.deb
to pool/main/o/opal/libopal-dev_2.2.3.dfsg-3+etch1_i386.deb
libopal-doc_2.2.3.dfsg-3+etch1_all.deb
to pool/main/o/opal/libopal-doc_2.2.3.dfsg-3+etch1_all.deb
opal_2.2.3.dfsg-3+etch1.diff.gz
to pool/main/o/opal/opal_2.2.3.dfsg-3+etch1.diff.gz
opal_2.2.3.dfsg-3+etch1.dsc
to pool/main/o/opal/opal_2.2.3.dfsg-3+etch1.dsc
simpleopal_2.2.3.dfsg-3+etch1_i386.deb
to pool/main/o/opal/simpleopal_2.2.3.dfsg-3+etch1_i386.deb
Date: Thu, 20 Dec 2007 19:54:08 +0000
From: Fabio Tranchitella <kobold@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted zope-cmfplone 2.5.1-4etch1 (source all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 08 Nov 2007 13:50:47 +0100
Source: zope-cmfplone
Binary: plone-site zope-cmfplone
Architecture: source all
Version: 2.5.1-4etch1
Distribution: stable-security
Urgency: high
Maintainer: Debian/Ubuntu Zope Team <pkg-zope-developers@lists.alioth.deb=
ian.org>
Changed-By: Fabio Tranchitella <kobold@debian.org>
Description:=20
plone-site - preconfigured zope instance containing a plone site
zope-cmfplone - content management system based on zope and cmf
Closes: 449523
Changes:=20
zope-cmfplone (2.5.1-4etch1) stable-security; urgency=3Dhigh
.
- statusmessage.py, __init__.py: applied fix for CVE-2007-5741:
unsafe data interpreted as pickles. (Closes: #449523)
Files:=20
dccc6173d55e9fedbe5a7b91d84a5721 1114 web optional zope-cmfplone_2.5.1-4=
etch1.dsc
b48215d46aafa9e1f12196263d86a191 1064993 web optional zope-cmfplone_2.5.=
1.orig.tar.gz
3a83d9323ac5285ac3d5cbde1d54e5f7 10922 web optional zope-cmfplone_2.5.1-=
4etch1.diff.gz
49e266b7a7910079c92e039a910c4903 1190788 web optional zope-cmfplone_2.5.=
1-4etch1_all.deb
318b81cff9a5bf4bf352743c46095693 9828 web optional plone-site_2.5.1-4etc=
h1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iQEVAwUBRzNIP2z0hbPcukPfAQKXlQgAw5YxXy7K+SmgPkR+ErAxeS36OAMoecq6
Ku5EZeE7OsBNffYwX3ndYhQB2X84h1HAhN+iqA6Izm/LL/W4I0SuIK7K6KQPIiiq
5zpe4FD2zMecQW6JWWGjRhKZozpABb2eySxcQApmRsnQGK+4bpMgqRMjY2UBLOh7
DqnlvAVD4qw8OIWWkeyQrcVSWG0PkWz6nbqUGv2jNRDpvc8k/35H9ivhNCCF2r3Y
CTMP0o5EpMjitFiH2ZLpAwEq3Jz2q8IixFla8RuC7UjzFYeXZkjYvlcUOkqsjPqN
F+ztuYeUR0Vn4f6/pZPjmsIOkHgvPJbqOfpYkfzJ2TNx9adOzMkxTQ=3D=3D
=3DIwfL
-----END PGP SIGNATURE-----
Accepted:
plone-site_2.5.1-4etch1_all.deb
to pool/main/z/zope-cmfplone/plone-site_2.5.1-4etch1_all.deb
zope-cmfplone_2.5.1-4etch1.diff.gz
to pool/main/z/zope-cmfplone/zope-cmfplone_2.5.1-4etch1.diff.gz
zope-cmfplone_2.5.1-4etch1.dsc
to pool/main/z/zope-cmfplone/zope-cmfplone_2.5.1-4etch1.dsc
zope-cmfplone_2.5.1-4etch1_all.deb
to pool/main/z/zope-cmfplone/zope-cmfplone_2.5.1-4etch1_all.deb
Date: Thu, 20 Dec 2007 19:52:55 +0000
From: Rene Engelhard <rene@debian.org>
To: debian-changes@lists.debian.org
Subject: Accepted hsqldb 1.8.0.7-1etch1 (source all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Sun, 04 Nov 2007 23:09:45 +0100
Source: hsqldb
Binary: hsqldb-server libhsqldb-java-doc libhsqldb-java
Architecture: source all
Version: 1.8.0.7-1etch1
Distribution: stable-security
Urgency: high
Maintainer: Peter Eisentraut <petere@debian.org>
Changed-By: Rene Engelhard <rene@debian.org>
Description:=20
hsqldb-server - Java SQL database server
libhsqldb-java - Java SQL database engine
libhsqldb-java-doc - documentation for HSQLDB
Changes:=20
hsqldb (1.8.0.7-1etch1) stable-security; urgency=3Dhigh
.
- backport hsqldb 1.8.0.9 changes to fix CVE-2007-4575
Files:=20
e5de2bc9c738f592280016f45b6e0a62 674 libs optional hsqldb_1.8.0.7-1etch1=
.dsc
316a2dc3b8fef1bee991d16e2cc7341b 2051414 libs optional hsqldb_1.8.0.7.or=
ig.tar.gz
73eb16347408015a941c7b1cadfa03ab 11725 libs optional hsqldb_1.8.0.7-1etc=
h1.diff.gz
0154566048078ba8e6d2f70cead1ab23 852586 libs optional libhsqldb-java_1.8=
.0.7-1etch1_all.deb
cc96a30a2876e64e4368d1ada49ab914 860770 doc optional libhsqldb-java-doc_=
1.8.0.7-1etch1_all.deb
995273c292357f5d8cdd385484765fa9 40270 misc optional hsqldb-server_1.8.0=
.7-1etch1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFHTfMo+FmQsCSK63MRAjCWAJ9UqLh5M1sbA9owRCb48d+SK4Tm9QCdFN6m
LKbTJlSf9lxT4YO+XeOdRes=3D
=3Dvcl2
-----END PGP SIGNATURE-----
Accepted:
hsqldb-server_1.8.0.7-1etch1_all.deb
to pool/main/h/hsqldb/hsqldb-server_1.8.0.7-1etch1_all.deb
hsqldb_1.8.0.7-1etch1.diff.gz
to pool/main/h/hsqldb/hsqldb_1.8.0.7-1etch1.diff.gz
hsqldb_1.8.0.7-1etch1.dsc
to pool/main/h/hsqldb/hsqldb_1.8.0.7-1etch1.dsc
libhsqldb-java-doc_1.8.0.7-1etch1_all.deb
to pool/main/h/hsqldb/libhsqldb-java-doc_1.8.0.7-1etch1_all.deb
libhsqldb-java_1.8.0.7-1etch1_all.deb
to pool/main/h/hsqldb/libhsqldb-java_1.8.0.7-1etch1_all.deb
Date: Thu, 20 Dec 2007 19:52:59 +0000
From: Gregory Colpart (evolix) <reg@evolix.fr>
To: debian-changes@lists.debian.org
Subject: Accepted horde3 3.1.3-4etch1 (source all)
Message-Id:
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Sun, 22 Jul 2007 06:29:12 +0200
Source: horde3
Binary: horde3
Architecture: source all
Version: 3.1.3-4etch1
Distribution: stable-security
Urgency: high
Maintainer: Horde Maintainers <pkg-horde-hackers@lists.alioth.debian.org>
Changed-By: Gregory Colpart (evolix) <reg@evolix.fr>
Description:=20
horde3 - horde web application framework
Closes: 434045
Changes:=20
horde3 (3.1.3-4etch1) stable-security; urgency=3Dhigh
.
- Fix XSS vulnerability. See CVE-2007-1473 for more information.
(Closes: #434045)
Files:=20
9fe3ec9d81a0d0c8ec6dd2ae3e14ed40 974 web optional horde3_3.1.3-4etch1.ds=
c
fbc56c608ac81474b846b1b4b7bb5ee7 5232958 web optional horde3_3.1.3.orig.=
tar.gz
84cad3aed2026c8a6358891897a15ee7 10633 web optional horde3_3.1.3-4etch1.=
diff.gz
34a3af59a3469722ecf832948d390cea 5270226 web optional horde3_3.1.3-4etch=
1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iQEVAwUBRzHHjWz0hbPcukPfAQK+ngf/dkAXl1bNvIjVblV7+vgBGg8S+HljuGnl
KXaTZEPwjzvZc3BbZfdULEogg29FClQwEbAKfr7S/s7NRF+EK87xwj7w2Mm6W3e/
cJkIDmEFkY/wSFh9liqKgj8xxLvuDqi88oMonxmZZyvxiSlWAq9+M/dERWj9OHjS
mF3AgaWn51pdDvz+7WPgBDpfh8JsWeRmdWLSTDNq/ZiwlikD7FyeDrk2TYcocWp9
CAURubIJwaFaMyxucnFfCnSmch+PMgnepCUQS7UZePSuxO6enldfUHa5yXVzyhvL
uKasUHjf8vzHaZAYseNv1sJNX+jPLJsJu+BxweehclhPhgTxPtm+/w=3D=3D
=3DdEaQ
-----END PGP SIGNATURE-----
Accepted:
horde3_3.1.3-4etch1.diff.gz
to pool/main/h/horde3/horde3_3.1.3-4etch1.diff.gz
horde3_3.1.3-4etch1.dsc
to pool/main/h/horde3/horde3_3.1.3-4etch1.dsc
horde3_3.1.3-4etch1_all.deb
to pool/main/h/horde3/horde3_3.1.3-4etch1_all.deb
End of debian-changes-digest Digest V2007 Issue #148
Received on Thu Dec 20 15:43:25 2007