-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 16 Jun 2004 09:51:06 +0900 Source: lha Binary: lha Architecture: source i386 Version: 1.14i-9 Distribution: unstable Urgency: high Maintainer: GOTO Masanori <gotom@debian.org> Changed-By: GOTO Masanori <gotom@debian.org> Description: lha - lzh archiver Changes: lha (1.14i-9) unstable; urgency=high . * debian/patch.header-overflow: Add fix another lha buffer overflow problem. It warns when hitting an archive which includes long directory name with option l, v, x. See: http://lw.ftw.zamosc.pl/lha-exploit.txt http://www.securityfocus.com/archive/1/363418 http://bugs.gentoo.org/show_bug.cgi?id=51285 Thanks to Lukasz Wojtow <lw@wszia.edu.pl> for pointing this problem. Files: 8ee5de74c44cbefaf79486f091e2e596 544 non-free/utils optional lha_1.14i-9.dsc 2dfb74e25f6bdd46de65c6eef10b0675 36685 non-free/utils optional lha_1.14i-9.diff.gz 59239cb31a6fd573e72c8be2afed0868 57760 non-free/utils optional lha_1.14i-9_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFA0N9+qIqasIZIJsMRAnmrAJ9vL9wz3Fia2mhgacBsB39o+MBZYwCfT3wn DfGA0YpkdBS5E8wVdNNUJQA= =p/nS -----END PGP SIGNATURE----- Accepted: lha_1.14i-9.diff.gz to pool/non-free/l/lha/lha_1.14i-9.diff.gz lha_1.14i-9.dsc to pool/non-free/l/lha/lha_1.14i-9.dsc lha_1.14i-9_i386.deb to pool/non-free/l/lha/lha_1.14i-9_i386.deb -- To UNSUBSCRIBE, email to debian-devel-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org