-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 11 Jun 2007 09:16:41 +1000 Source: jffnms Binary: jffnms Architecture: source all Version: 0.8.3dfsg.1-2.1etch1 Distribution: stable-security Urgency: high Maintainer: Craig Small <csmall@debian.org> Changed-By: Craig Small <csmall@debian.org> Description: jffnms - web-based Network Management System (NMS) for IP networks Changes: jffnms (0.8.3dfsg.1-2.1etch1) stable-security; urgency=high . * Security Bug Fix * Removes Javascript and SQL injectection bug which allows authentication to be bypassed [CVE-2007-3204, CVE-2007-3190, CVE-2007-3189] * Information disclosure files removed * Backdoor authentication files removed Files: 7a46a6cdefe38535235aa87dd8e6279c 609 web extra jffnms_0.8.3dfsg.1-2.1etch1.dsc 6be7ef656cf0eea1d133a0bc71a4bba2 547656 web extra jffnms_0.8.3dfsg.1.orig.tar.gz cf3fd349e3012b93a4d20711730b26f6 76283 web extra jffnms_0.8.3dfsg.1-2.1etch1.diff.gz 94ec8551e3eaa20ae277a5aab47043ee 550292 web extra jffnms_0.8.3dfsg.1-2.1etch1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFGtRCZwM/Gs81MDZ0RAiMAAKC/3BaQHfXeNV05lvLhSaXDDjifOgCfSrJj HkeXh7SSkq5xOsaCuq55Qkc= =pLz0 -----END PGP SIGNATURE----- Accepted: jffnms_0.8.3dfsg.1-2.1etch1.diff.gz to pool/main/j/jffnms/jffnms_0.8.3dfsg.1-2.1etch1.diff.gz jffnms_0.8.3dfsg.1-2.1etch1.dsc to pool/main/j/jffnms/jffnms_0.8.3dfsg.1-2.1etch1.dsc jffnms_0.8.3dfsg.1-2.1etch1_all.deb to pool/main/j/jffnms/jffnms_0.8.3dfsg.1-2.1etch1_all.deb