-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 5 Dec 2007 20:58:46 +0000 Source: sitebar Binary: sitebar Architecture: source all Version: 3.2.6-7.1sarge1 Distribution: oldstable-security Urgency: high Maintainer: S. Zachariah Sprackett <zacs@debian.org> Changed-By: Steffen Joeris <white@debian.org> Description: sitebar - A web based bookmark manager written in PHP Changes: sitebar (3.2.6-7.1sarge1) oldstable-security; urgency=high . * Non-maintainer upload by the security team * Fix multiple cross-site scripting vulnerabilities in command.php and translator.php Fixes: CVE-2007-5692 * Fix possible redirect via the forward parameter Fixes: CVE-2007-5695 Files: 7654849ce1ea822b9b70c52a98def837 580 web optional sitebar_3.2.6-7.1sarge1.dsc c38ed9e586c8b07b23349588f2be23b2 12821 web optional sitebar_3.2.6-7.1sarge1.diff.gz 6e106cf5dddb0ee63f29efdcf93d8d74 341570 web optional sitebar_3.2.6-7.1sarge1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHVxKB62zWxYk/rQcRAgWlAKCZ4As81riQ62mO1BwIxImZcrfmjgCfbvaH mY1jgKDuHK/bjeD3ZjsOM0A= =46AX -----END PGP SIGNATURE----- Accepted: sitebar_3.2.6-7.1sarge1.diff.gz to pool/main/s/sitebar/sitebar_3.2.6-7.1sarge1.diff.gz sitebar_3.2.6-7.1sarge1.dsc to pool/main/s/sitebar/sitebar_3.2.6-7.1sarge1.dsc sitebar_3.2.6-7.1sarge1_all.deb to pool/main/s/sitebar/sitebar_3.2.6-7.1sarge1_all.deb