-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 24 Mar 2008 15:13:00 +0100 Source: debian-goodies Binary: debian-goodies Architecture: source all Version: 0.23+sarge1 Distribution: oldstable-security Urgency: high Maintainer: Matt Zimmerman <mdz@debian.org> Changed-By: Thijs Kinkhorst <thijs@debian.org> Description: debian-goodies - Small toolbox-style utilities for Debian systems Closes: 440411 Changes: debian-goodies (0.23+sarge1) oldstable-security; urgency=high . * Non-maintainer upload by the security team. * Fix security bug that enables users to generate files in the filesystem with shell metacharacters and have the checkrestart script run external code (as root, since the script will only run as admin). (CVE-2007-3912, closes: 440411) Files: 37eb124fef7c9897ea41ec861ec740ff 819 utils optional debian-goodies_0.23+sarge1.dsc e0834e7e962fabc65362a60c73362585 11779 utils optional debian-goodies_0.23+sarge1.tar.gz c8bc8eab12c7e3f29e53f4172ee837a4 22488 utils optional debian-goodies_0.23+sarge1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iQEVAwUBR+e5Y2z0hbPcukPfAQLBLAgAjN7dJp97Yis19s5xaPKcxKDfFUWD5Fcf w4RFo1Y9v/A0ra0oP4zQMijI8og2kyMhcYQPDQyaQU5nr4oihjVqb/b5hpYDhe2Y T0ErjGTHkBdgYJf6+NX3DNmCbvAnhSKkk7hsCP1r0q/PJQW7cVupah8JpesmysE2 +9ULUqWK1iP6sfeGh6OfC7qonj8va2Gq1uYaxbLd8wHgs53qkaiZZjdcTGRTwKUy DSNwJVGz6KNFeiqFIsYDQz6HPtCMNhP/5UKquF2hvol6UHZXyNy89Feci544fIY9 p7MIE/hzPy30HxzR560rgDaZPHaOvqNpsqx7TdoIhkadNWO9paj2MA== =pm4Q -----END PGP SIGNATURE----- Accepted: debian-goodies_0.23+sarge1.dsc to pool/main/d/debian-goodies/debian-goodies_0.23+sarge1.dsc debian-goodies_0.23+sarge1.tar.gz to pool/main/d/debian-goodies/debian-goodies_0.23+sarge1.tar.gz debian-goodies_0.23+sarge1_all.deb to pool/main/d/debian-goodies/debian-goodies_0.23+sarge1_all.deb