-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sat, 11 Jul 2009 06:31:33 +0000 Source: sork-passwd-h3 Binary: sork-passwd-h3 Architecture: source all Version: 3.0-2+lenny1 Distribution: stable-security Urgency: high Maintainer: Debian Horde Maintainers <pkg-horde-hackers@lists.alioth.debian.org> Changed-By: Steffen Joeris <white@debian.org> Description: sork-passwd-h3 - Horde3 module for users to change their password Closes: 536554 Changes: sork-passwd-h3 (3.0-2+lenny1) stable-security; urgency=high . * Non-maintainer upload by the security team * Fix XSS in backend parameter (Closes: #536554) Fixes: CVE-2009-2360 Checksums-Sha1: 70a9aca3929cf2fca68ce41b6f04bd4cfa1aab56 1134 sork-passwd-h3_3.0-2+lenny1.dsc e2648e109913bc374a3813952a1e509dcd5a038e 8075 sork-passwd-h3_3.0-2+lenny1.diff.gz 54b7f216d8b4762fde37dcc38e89838fd1850559 936656 sork-passwd-h3_3.0-2+lenny1_all.deb Checksums-Sha256: 251ee549e8597fbad582a5719a204c1308a89c912359c44ea0b72bfaa4ddafc7 1134 sork-passwd-h3_3.0-2+lenny1.dsc 498e9c1c0a7251473ad01ac39f046bb3df58740d59e6e409b90d0b76383f2aff 8075 sork-passwd-h3_3.0-2+lenny1.diff.gz ae82226cc1823d7cfcd99914796c5c5ceecff16bef55b386b07514718af12791 936656 sork-passwd-h3_3.0-2+lenny1_all.deb Files: 21cddfb0875a3513716238b2482c8f48 1134 web optional sork-passwd-h3_3.0-2+lenny1.dsc ac8d69e8612a96eeb18f3d68960dfaa2 8075 web optional sork-passwd-h3_3.0-2+lenny1.diff.gz b931e5db33decf642d8911f01b5656a1 936656 web optional sork-passwd-h3_3.0-2+lenny1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkpYNVIACgkQ62zWxYk/rQfyTwCfVnMJfZ+NQhlxt3FHFqoQJTxh hN8AoLTmsAo9G4w3k7picuU6EbHBOjnm =4lKJ -----END PGP SIGNATURE----- Accepted: sork-passwd-h3_3.0-2+lenny1.diff.gz to pool/main/s/sork-passwd-h3/sork-passwd-h3_3.0-2+lenny1.diff.gz sork-passwd-h3_3.0-2+lenny1.dsc to pool/main/s/sork-passwd-h3/sork-passwd-h3_3.0-2+lenny1.dsc sork-passwd-h3_3.0-2+lenny1_all.deb to pool/main/s/sork-passwd-h3/sork-passwd-h3_3.0-2+lenny1_all.deb