-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 1 Dec 2006 09:19:02 -0700 Source: tar Binary: tar Architecture: source i386 Version: 1.16-2 Distribution: unstable Urgency: high Maintainer: Bdale Garbee <bdale@gag.com> Changed-By: Bdale Garbee <bdale@gag.com> Description: tar - GNU tar Closes: 399845 Changes: tar (1.16-2) unstable; urgency=high . * patch from Kees Cook via upstream to disable handling of GNUTYPE_NAMES by default and add a new command-line switch --allow-name-mangling to re-enable it, as a fix for directory traversal bug (CVE-2006-6097), closes: #399845 Files: fc5061b6d891f1daf86fd45cb8e3fd72 569 utils required tar_1.16-2.dsc ec350ddfa0d12e11b9f9d64dccbb552f 30534 utils required tar_1.16-2.diff.gz 903e02f11db634f48f58cb170d43f5e1 672060 utils required tar_1.16-2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (GNU/Linux) iD8DBQFFcFtFZKfAp/LPAagRAogaAJsHcT8uvrF/GlvnZLJ+Go8Ri7Lf7wCfUOSt 308GOg7JTcajeJqkLWSDme0= =m02k -----END PGP SIGNATURE----- Accepted: tar_1.16-2.diff.gz to pool/main/t/tar/tar_1.16-2.diff.gz tar_1.16-2.dsc to pool/main/t/tar/tar_1.16-2.dsc tar_1.16-2_i386.deb to pool/main/t/tar/tar_1.16-2_i386.deb