-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 9 Dec 2006 15:49:22 +0200 Source: enemies-of-carlotta Binary: enemies-of-carlotta Architecture: source all Version: 1.2.4-1 Distribution: unstable Urgency: high Maintainer: Lars Wirzenius <liw@iki.fi> Changed-By: Lars Wirzenius <liw@iki.fi> Description: enemies-of-carlotta - mailing list manager Changes: enemies-of-carlotta (1.2.4-1) unstable; urgency=high . * Security fix for CVE-2006-5875. There is no bug report for this, the problem was reported privately to me by Antti-Juhani Kaijanaho. * EoC did not correctly deal with SMTP level e-mail addresses that contain shell meta characters. This has been fixed by running /usr/sbin/sendmail via fork and exec, instead of os.popen. Files: 63e53fff20f54034d9c42a5df2e2bba4 648 mail optional enemies-of-carlotta_1.2.4-1.dsc 520587af499bd560bdd0fe202b36f937 76935 mail optional enemies-of-carlotta_1.2.4.orig.tar.gz d54707cfcb52a56a010a618ce9c214f9 4126 mail optional enemies-of-carlotta_1.2.4-1.diff.gz 2c7c77b13a04e1f95d7ac71edd2235d3 72022 mail optional enemies-of-carlotta_1.2.4-1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (GNU/Linux) iD8DBQFFgAF2H7uVvy2azI4RArXJAKCR0zyTGgPNG3f6CuDo15YExHiwBQCeIMXa Dw5gUpneYs+eFIIPVaIapAY= =0USR -----END PGP SIGNATURE----- Accepted: enemies-of-carlotta_1.2.4-1.diff.gz to pool/main/e/enemies-of-carlotta/enemies-of-carlotta_1.2.4-1.diff.gz enemies-of-carlotta_1.2.4-1.dsc to pool/main/e/enemies-of-carlotta/enemies-of-carlotta_1.2.4-1.dsc enemies-of-carlotta_1.2.4-1_all.deb to pool/main/e/enemies-of-carlotta/enemies-of-carlotta_1.2.4-1_all.deb enemies-of-carlotta_1.2.4.orig.tar.gz to pool/main/e/enemies-of-carlotta/enemies-of-carlotta_1.2.4.orig.tar.gz