-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 04 Jan 2008 17:20:45 +0000 Source: liferea Binary: liferea-xulrunner liferea-mozilla liferea-gtkhtml liferea Architecture: source all i386 Version: 1.0.27-2+lenny1 Distribution: testing-security Urgency: high Maintainer: Franz Pletz <fpletz@franz-pletz.org> Changed-By: Steffen Joeris <white@debian.org> Description: liferea - feed aggregator for GNOME liferea-gtkhtml - transitional dummy package liferea-mozilla - transitional dummy package liferea-xulrunner - xulrunner-based rendering library for Liferea Changes: liferea (1.0.27-2+lenny1) testing-security; urgency=high . * Non-maintainer upload by the security team * Fix weak permissions for the backup file in export.c Fixes: CVE-2007-5751 * Fix insecure LD_LIBRARY_PATH in liferea Fixes: CVE-2005-4791 Files: c0e04f222f1b80096f42ae724cbff49e 788 gnome optional liferea_1.0.27-2+lenny1.dsc af0a43286d4a3362b526c89826e7f851 1572604 gnome optional liferea_1.0.27.orig.tar.gz 4c95f1ac61c882b4dab94fe7bc64848e 11421 gnome optional liferea_1.0.27-2+lenny1.diff.gz 39b0be266a1c62c6483777299e2b6aaf 764678 gnome optional liferea_1.0.27-2+lenny1_i386.deb 0e22d1a35fc54b8d55de4eb31dadbe36 21340 gnome optional liferea-xulrunner_1.0.27-2+lenny1_i386.deb 4888821f63935ac69be53d6acc9e7537 12128 gnome optional liferea-mozilla_1.0.27-2+lenny1_all.deb 3bbcb3d4b1cf6fd2359a54f05e915c74 12120 gnome optional liferea-gtkhtml_1.0.27-2+lenny1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHfm3z62zWxYk/rQcRAv+OAJ9n5eOVuxxy/6X6mOm9R1/KbYnkIgCgsGiH f+SxTpqcsHUTxjyYJaVGc6U= =c5QE -----END PGP SIGNATURE----- Accepted: liferea-gtkhtml_1.0.27-2+lenny1_all.deb to pool/main/l/liferea/liferea-gtkhtml_1.0.27-2+lenny1_all.deb liferea-mozilla_1.0.27-2+lenny1_all.deb to pool/main/l/liferea/liferea-mozilla_1.0.27-2+lenny1_all.deb liferea-xulrunner_1.0.27-2+lenny1_i386.deb to pool/main/l/liferea/liferea-xulrunner_1.0.27-2+lenny1_i386.deb liferea_1.0.27-2+lenny1.diff.gz to pool/main/l/liferea/liferea_1.0.27-2+lenny1.diff.gz liferea_1.0.27-2+lenny1.dsc to pool/main/l/liferea/liferea_1.0.27-2+lenny1.dsc liferea_1.0.27-2+lenny1_i386.deb to pool/main/l/liferea/liferea_1.0.27-2+lenny1_i386.deb