-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 16 Jan 2005 15:45:23 +0100 Source: vdr Binary: vdr vdr-kbd vdr-daemon vdr-rcu vdr-lirc Architecture: source i386 Version: 1.0.0-1woody2 Distribution: stable-security Urgency: high Maintainer: Martin Schulze <joey@debian.org> Changed-By: Martin Schulze <joey@infodrom.org> Description: vdr - Video Disk Recorder for DVB-S cards, base package vdr-daemon - Server version of Video Disk Recorder for DVB-S cards vdr-kbd - Video Disk Recorder for DVB-S cards with keyboard control vdr-lirc - Video Disk Recorder for DVB-S cards with IR remote control vdr-rcu - Video Disk Recorder for DVB-S cards with RCU control Changes: vdr (1.0.0-1woody2) stable-security; urgency=high . * Non-maintainer upload by the Security Team * Fixed arbitrary file overwrite vulnerability by switching from fopen() to open()+fdreopen() and O_CREAT|O_EXCL [debian/patches/security-z50_CAN-2005-0071_fopen, CAN-2005-0071] Files: b948b3b68a18e5f909dd9479a9841f8a 580 misc extra vdr_1.0.0-1woody2.dsc 3e2a7e792b21258a56bfb54ff7aee702 431964 misc extra vdr_1.0.0-1woody2.tar.gz a881e0f34fdf75cbb9444221412f29e3 68802 misc extra vdr_1.0.0-1woody2_i386.deb 37f7d263a57337e6a5087944e15e9f46 152562 misc extra vdr-kbd_1.0.0-1woody2_i386.deb 1b08452b0cb57abe74024521fbca4c32 153020 misc extra vdr-lirc_1.0.0-1woody2_i386.deb b0f7570129a1cd8c0594258750207cba 154642 misc extra vdr-rcu_1.0.0-1woody2_i386.deb a43a1eba9ed48ca81f4953cc2bb17236 151954 misc extra vdr-daemon_1.0.0-1woody2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.5 (GNU/Linux) iD8DBQFB7/9JW5ql+IAeqTIRAqonAJ0TVrPTThvSiod9TLoxJ8iL2/V4AQCeO31W 5OzHtknu//t3hNL+8QQAIDQ= =JZLM -----END PGP SIGNATURE----- Accepted: vdr-daemon_1.0.0-1woody2_i386.deb to pool/main/v/vdr/vdr-daemon_1.0.0-1woody2_i386.deb vdr-kbd_1.0.0-1woody2_i386.deb to pool/main/v/vdr/vdr-kbd_1.0.0-1woody2_i386.deb vdr-lirc_1.0.0-1woody2_i386.deb to pool/main/v/vdr/vdr-lirc_1.0.0-1woody2_i386.deb vdr-rcu_1.0.0-1woody2_i386.deb to pool/main/v/vdr/vdr-rcu_1.0.0-1woody2_i386.deb vdr_1.0.0-1woody2.dsc to pool/main/v/vdr/vdr_1.0.0-1woody2.dsc vdr_1.0.0-1woody2.tar.gz to pool/main/v/vdr/vdr_1.0.0-1woody2.tar.gz vdr_1.0.0-1woody2_i386.deb to pool/main/v/vdr/vdr_1.0.0-1woody2_i386.deb -- To UNSUBSCRIBE, email to debian-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org