-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 03 Sep 2007 14:58:22 +0200 Source: zziplib Binary: libzzip-0-12 libzzip-dev zziplib-bin Architecture: source i386 Version: 0.12.83-8lenny1 Distribution: testing-security Urgency: high Maintainer: Anibal Monsalve Salazar <anibal@debian.org> Changed-By: Nico Golde <nion@debian.org> Description: libzzip-0-12 - library providing read access on ZIP-archives - library libzzip-dev - library providing read access on ZIP-archives - development zziplib-bin - library providing read access on ZIP-archives - binaries Changes: zziplib (0.12.83-8lenny1) testing-security; urgency=high . * Non-maintainer upload by testing security team. * Fixed stack based buffer overflow in zzip_open_shared_io function (zzip/file.c), CVE-2007-1614. Files: 09f07de4fb30c72359ccafe96055efe2 661 libs optional zziplib_0.12.83-8lenny1.dsc f7482fdb82fa9aed3f4dca55feb76ac1 710581 libs optional zziplib_0.12.83.orig.tar.gz 34d0cfb82c8e034b5aee5720d472510f 604534 libs optional zziplib_0.12.83-8lenny1.diff.gz 6bff27d8938c7ebecc0b64bcc6b112a3 30268 utils optional zziplib-bin_0.12.83-8lenny1_i386.deb d6dc4c926bc2d742c07d53cdeec98b84 35210 libs optional libzzip-0-12_0.12.83-8lenny1_i386.deb 08f27df18e2b34c34c048a990e3f552c 94466 libdevel optional libzzip-dev_0.12.83-8lenny1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFG3AmvHYflSXNkfP8RAnUbAJ4ip2aJJeJ+EtKWUe0Ym+kyNBbCygCeP7h5 PFfkHjOpsDamHAVByeoi3YU= =3Sr+ -----END PGP SIGNATURE----- Accepted: libzzip-0-12_0.12.83-8lenny1_i386.deb to pool/main/z/zziplib/libzzip-0-12_0.12.83-8lenny1_i386.deb libzzip-dev_0.12.83-8lenny1_i386.deb to pool/main/z/zziplib/libzzip-dev_0.12.83-8lenny1_i386.deb zziplib-bin_0.12.83-8lenny1_i386.deb to pool/main/z/zziplib/zziplib-bin_0.12.83-8lenny1_i386.deb zziplib_0.12.83-8lenny1.diff.gz to pool/main/z/zziplib/zziplib_0.12.83-8lenny1.diff.gz zziplib_0.12.83-8lenny1.dsc to pool/main/z/zziplib/zziplib_0.12.83-8lenny1.dsc