-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 13 Nov 2004 15:31:22 +0900 Source: lha Binary: lha Architecture: alpha arm hppa i386 ia64 m68k mips powerpc s390 source sparc Version: 1.14i-10 Distribution: unstable Urgency: high Maintainer: GOTO Masanori <gotom@debian.org> Changed-By: GOTO Masanori <gotom@debian.org> Description: lha - lzh archiver Closes: 277545 279870 Changes: lha (1.14i-10) unstable; urgency=high . * debian/patch.redhat-sec2: Add one more security patch to fix: - CAN-2004-0771 (-w working directory option buffer overflow) http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0771 - CAN-2004-0769 (buffer overflow can be executed arbitrary code via long pathnames in headers, another issue of bug fixed in -9) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0769 - CAN-2004-0745 (execute arbitrary commands via a directory with shell metacharacters in its name.) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0745 - CAN-2004-0694 (reserved number) http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0694 taken from RedHat patch. (Closes: #279870) * man/lha.n: Fix typo "flie" instead of "file". (Closes: #277545) Files: 00e025ebf062e92eb9ddf70aa0fae8a3 66164 non-free/utils optional lha_1.14i-10_hppa.deb 194177564403baeec0d607d8ed19f993 55656 non-free/utils optional lha_1.14i-10_m68k.deb 2cf0aa31c2eaf10015d0bb0d1e74c674 63008 non-free/utils optional lha_1.14i-10_powerpc.deb 2efa3a249e403afd9b202d5ffbee33e4 58206 non-free/utils optional lha_1.14i-10_i386.deb 30c939576fde22035214f3c595e52066 60430 non-free/utils optional lha_1.14i-10_sparc.deb 552a85b7d3e421a34f4b3ebb1300d52c 78800 non-free/utils optional lha_1.14i-10_ia64.deb 5a57306a67be3f77bfb5ece08374180b 43875 non-free/utils optional lha_1.14i-10.diff.gz 755a5e02f75a03af3c3b060c69d442a4 66628 non-free/utils optional lha_1.14i-10_mips.deb 78d2d39656c4845692939db2dd5e8518 64670 non-free/utils optional lha_1.14i-10_s390.deb 92158fe6e164862496138a410173a323 546 non-free/utils optional lha_1.14i-10.dsc bf470418a86ce342fffb8b3d788335e4 73300 non-free/utils optional lha_1.14i-10_alpha.deb c84b07c06bb1f444abb9539b0c9cc77d 62458 non-free/utils optional lha_1.14i-10_arm.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFBlg8ZqIqasIZIJsMRAmfTAJ0dyaLXvQKrAqXodWuOFwJ/BNAVPgCfY0uC Ac28a7gDoAS99u/dJKiKKYM= =F+l4 -----END PGP SIGNATURE----- Accepted: lha_1.14i-10.diff.gz to pool/non-free/l/lha/lha_1.14i-10.diff.gz lha_1.14i-10.dsc to pool/non-free/l/lha/lha_1.14i-10.dsc lha_1.14i-10_alpha.deb to pool/non-free/l/lha/lha_1.14i-10_alpha.deb lha_1.14i-10_arm.deb to pool/non-free/l/lha/lha_1.14i-10_arm.deb lha_1.14i-10_hppa.deb to pool/non-free/l/lha/lha_1.14i-10_hppa.deb lha_1.14i-10_i386.deb to pool/non-free/l/lha/lha_1.14i-10_i386.deb lha_1.14i-10_ia64.deb to pool/non-free/l/lha/lha_1.14i-10_ia64.deb lha_1.14i-10_m68k.deb to pool/non-free/l/lha/lha_1.14i-10_m68k.deb lha_1.14i-10_mips.deb to pool/non-free/l/lha/lha_1.14i-10_mips.deb lha_1.14i-10_powerpc.deb to pool/non-free/l/lha/lha_1.14i-10_powerpc.deb lha_1.14i-10_s390.deb to pool/non-free/l/lha/lha_1.14i-10_s390.deb lha_1.14i-10_sparc.deb to pool/non-free/l/lha/lha_1.14i-10_sparc.deb -- To UNSUBSCRIBE, email to debian-devel-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org