-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 23 Sep 2009 00:51:33 +0200 Source: horde3 Binary: horde3 Architecture: source all Version: 3.1.3-4etch6 Distribution: oldstable-security Urgency: high Maintainer: Horde Maintainers <pkg-horde-hackers@lists.alioth.debian.org> Changed-By: Gregory Colpart <reg@debian.org> Description: horde3 - horde web application framework Closes: 547318 Changes: horde3 (3.1.3-4etch6) oldstable-security; urgency=high . * Backport security patch from Horde to fix vulnerability in image form fields that allows overwriting of arbitrary local files. See CVE-2009-3236 for more information. (Closes: #547318) Checksums-Sha1: a58c404ef470f6fbf5d8d06b400d19133748674e 1076 horde3_3.1.3-4etch6.dsc 1fb8e8f8f0c5df6b9f0d838f0af07f6d1013399d 15869 horde3_3.1.3-4etch6.diff.gz 3448d2b5e6a8ee47b43c5b0a9a03da2cff62b941 5278984 horde3_3.1.3-4etch6_all.deb Checksums-Sha256: 656086ed1cdb1269f821f8a1133da0651e7437effbbf1c0fb137f38c8c63490e 1076 horde3_3.1.3-4etch6.dsc 29abd938153f2c8c529898664de123f967dfece89be9ae6ff1ba2a0cea1fbf8f 15869 horde3_3.1.3-4etch6.diff.gz 383c98db0bb236d6a5a3bc2446b7c930a6275760b374f95321d35b11172485e7 5278984 horde3_3.1.3-4etch6_all.deb Files: d4205b4f956ee00aa545f988f5d0206f 1076 web optional horde3_3.1.3-4etch6.dsc 3a74c50d35cf7f252cceec008e133299 15869 web optional horde3_3.1.3-4etch6.diff.gz 55bb80d663cad92d40ffcd15946379cf 5278984 web optional horde3_3.1.3-4etch6_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iEYEARECAAYFAkq6nvAACgkQMhdcDcECeg528gCdFPlvvobCDfSPR7jhvsdn/crr 8HgAnA6hijv0aevIclWJcSjLcoYKmIQ4 =iP1j -----END PGP SIGNATURE----- Accepted: horde3_3.1.3-4etch6.diff.gz to pool/main/h/horde3/horde3_3.1.3-4etch6.diff.gz horde3_3.1.3-4etch6.dsc to pool/main/h/horde3/horde3_3.1.3-4etch6.dsc horde3_3.1.3-4etch6_all.deb to pool/main/h/horde3/horde3_3.1.3-4etch6_all.deb