-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 5 Dec 2007 20:06:26 +0100 Source: sitebar Binary: sitebar Architecture: source all Version: 3.3.8-7etch1 Distribution: stable-security Urgency: high Maintainer: Kevin Coyner <kevin@rustybear.com> Changed-By: Steffen Joeris <white@debian.org> Description: sitebar - A web based bookmark manager written in PHP Closes: 447135 448689 448690 Changes: sitebar (3.3.8-7etch1) stable-security; urgency=high . * Non-maintainer upload by the security team * Fix multiple security issues in the translator module (translator.php) Fixes: CVE-2007-5491, CVE-2007-5492, CVE-2007-5693, CVE-2007-5694 (Closes: #447135) * Fix possible redirect to other websites via the forward parameter in command.php Fixes: CVE-2007-5695 (Closes: #448690) * Fix multiple XSS by adding more checks for certain parameters Fixes: CVE-2007-5692 (Closes: #448689) Files: 8af7750ff9a808798bf1b898c69b84d6 583 web optional sitebar_3.3.8-7etch1.dsc fa7b5367808966c8db6241f475f3ef2f 686944 web optional sitebar_3.3.8.orig.tar.gz cdc186193c2ad2d4e69f220dd8372ccd 22552 web optional sitebar_3.3.8-7etch1.diff.gz 16eb8791acea7cf1c99ac61b7b47e4b1 709524 web optional sitebar_3.3.8-7etch1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHVvlM62zWxYk/rQcRAkCFAJ4hjGacLh7HZM51uV2G3/dFYQOs1ACfT32n ORg51pFyQkF8/eLjToY9k1I= =Y9Dx -----END PGP SIGNATURE----- Accepted: sitebar_3.3.8-7etch1.diff.gz to pool/main/s/sitebar/sitebar_3.3.8-7etch1.diff.gz sitebar_3.3.8-7etch1.dsc to pool/main/s/sitebar/sitebar_3.3.8-7etch1.dsc sitebar_3.3.8-7etch1_all.deb to pool/main/s/sitebar/sitebar_3.3.8-7etch1_all.deb