-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 09 Jul 2005 11:57:20 +0200 Source: squirrelmail Binary: squirrelmail Architecture: source all Version: 2:1.4.4-6 Distribution: stable-security Urgency: high Maintainer: Jeroen van Wolffelaar <jeroen@wolffelaar.nl> Changed-By: Thijs Kinkhorst <kink@squirrelmail.org> Description: squirrelmail - Webmail for nuts Closes: 314374 317094 Changes: squirrelmail (2:1.4.4-6) stable-security; urgency=high . * Security fix, hence high urgency. * Apply patch provided by upstream to fix several cross site scripting flaws [CAN-2005-1769] (Closes: #314374) * Work around arbitrary variable injection via extract() [CAN-2005-2095] (Closes: #317094) Files: efd67c242cc9fb591e3ee8456825331d 742 web optional squirrelmail_1.4.4-6.dsc 30e06c1a6282a0abff142ccbe1b36a0c 23108 web optional squirrelmail_1.4.4-6.diff.gz 50da6f9a18fe90e5760eb18c3255296c 569772 web optional squirrelmail_1.4.4-6_all.deb f50548b6f4f24d28afb5e6048977f4da 575871 web optional squirrelmail_1.4.4.orig.tar.gz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) iD8DBQFC0PONW5ql+IAeqTIRArItAJ9ShE4w3upcklKW/dyKcDguCWlMQQCeJdIn NBlWhi8HRSys8Qbr7Fv0jow= =JzPZ -----END PGP SIGNATURE----- Accepted: squirrelmail_1.4.4-6.diff.gz to pool/main/s/squirrelmail/squirrelmail_1.4.4-6.diff.gz squirrelmail_1.4.4-6.dsc to pool/main/s/squirrelmail/squirrelmail_1.4.4-6.dsc squirrelmail_1.4.4-6_all.deb to pool/main/s/squirrelmail/squirrelmail_1.4.4-6_all.deb -- To UNSUBSCRIBE, email to debian-testing-changes-request@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org