-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 21 Nov 2006 22:40:09 +0000 Source: pstotext Binary: pstotext Architecture: source i386 Version: 1.9-1sarge2 Distribution: stable-security Urgency: high Maintainer: J.H.M. Dassen (Ray) <jdassen@debian.org> Changed-By: Moritz Muehlenhoff <jmm@debian.org> Description: pstotext - Extract text from PostScript and PDF files Changes: pstotext (1.9-1sarge2) stable-security; urgency=high . * Non-maintainer upload by the Security Team * Fix arbitrary shell commmand execution due to insufficient sanitising of filenames. Patch by J.H.M. Dassen. Files: 56e79abcf02e841e78267bda1faff734 566 text optional pstotext_1.9-1sarge2.dsc 4efb7277f17fca5ebd20573d93b11a83 8857 text optional pstotext_1.9-1sarge2.diff.gz 13c32d5164243e60e2ef00878c973c2f 32864 text optional pstotext_1.9-1sarge2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) iD8DBQFFY4FWXm3vHE4uyloRAqk7AKCdp7x6hU2ExYlzFxtG8u7QAXjtdgCfbKRP 3ixogWjIuoqwKLRBYDhpDMI= =0v+z -----END PGP SIGNATURE----- Accepted: pstotext_1.9-1sarge2.diff.gz to pool/main/p/pstotext/pstotext_1.9-1sarge2.diff.gz pstotext_1.9-1sarge2.dsc to pool/main/p/pstotext/pstotext_1.9-1sarge2.dsc pstotext_1.9-1sarge2_i386.deb to pool/main/p/pstotext/pstotext_1.9-1sarge2_i386.deb