-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 25 Dec 2007 14:11:00 +0100 Source: scponly Binary: scponly Architecture: source amd64 Version: 4.6-1etch1 Distribution: stable-security Urgency: high Maintainer: Thomas Wana <greuff@debian.org> Changed-By: Florian Weimer <fw@deneb.enyo.de> Description: scponly - Restricts the commands available to scp- and sftp-users Closes: 437148 Changes: scponly (4.6-1etch1) stable-security; urgency=high . * Non-maintainer upload by the Security Team * Remove rsync, Subversion and Unison support because it was possible to gain shell access through them (CVE-2007-6350). Closes: #437148. * scp: -o and -F options are dangerous (CVE-2007-6415). Files: c02dfefb7289fcb09e9ac83d7cf78655 890 utils optional scponly_4.6-1etch1.dsc 0425cb868cadd026851238452f1db907 96578 utils optional scponly_4.6.orig.tar.gz a588cb9138820d73f16bc81ffc4f8e20 28528 utils optional scponly_4.6-1etch1.diff.gz 2bb425113107e4e471c15685333f1a0a 34214 utils optional scponly_4.6-1etch1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iQEVAwUBR3EI5797/wQC1SS+AQLsYAf9FvSLLurAKk42qCXJgjysHinC0iLsKpZp aTVAxPCInbqg7IwX5Rf28gXogQ3OROStMZfduyjxaRXUxnLkgD+pTS/aYKbIueEo LvL2bhHJFyQQuxqZ3wOBLvHndRWAwdsuNWxnpQPDgxWVDzw3jVINp50bk25aVMV8 OMkNxhcJUWjhr71TRv7A1aNfn70z8lnZGTjyBMkqr9MEqiJ2vYr7TPbyhONBqmad 8g6IJj1oJ3aq5wRuoZ88Klwze6kWXfb7TdN6I4grDVZ8JRoBb/AhX5tyXVHo5mZ1 NcgLb/XCLJpLtgI0Lh6/8qErvqE+d5FOYqEKtNLXzng12iPiw4YoNQ== =eP3R -----END PGP SIGNATURE----- Accepted: scponly_4.6-1etch1.diff.gz to pool/main/s/scponly/scponly_4.6-1etch1.diff.gz scponly_4.6-1etch1.dsc to pool/main/s/scponly/scponly_4.6-1etch1.dsc scponly_4.6-1etch1_amd64.deb to pool/main/s/scponly/scponly_4.6-1etch1_amd64.deb