-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 22 Dec 2007 18:49:05 +0000 Source: eggdrop Binary: eggdrop-data eggdrop Architecture: source i386 all Version: 1.6.17-3sarge1 Distribution: oldstable-security Urgency: high Maintainer: Guilherme de S. Pastore <gpastore@colband.com.br> Changed-By: Steffen Joeris <white@debian.org> Description: eggdrop - Advanced IRC Robot eggdrop-data - Architecture independent files for eggdrop Changes: eggdrop (1.6.17-3sarge1) oldstable-security; urgency=high . * Non-maintainer upload by the security team * Fix stack based buffer-overflow in mod/server.mod/servrmsg.c, which allows user-assisted, remote IRC servers to execute arbitrary code via a long private message Fixes: CVE-2007-2807 Files: b3522add4d8a7d6ca05072fa2e733509 651 net extra eggdrop_1.6.17-3sarge1.dsc a0f9befca240072e45cd57908bb819d0 1030413 net extra eggdrop_1.6.17.orig.tar.gz cfaa50371d39bd8e2994e37fecc6ff86 36928 net extra eggdrop_1.6.17-3sarge1.diff.gz bb84e646defd5d2f29eef07a4bcddc35 410510 net extra eggdrop-data_1.6.17-3sarge1_all.deb f3a8dde2d859cbd72cfa8a50ef7c500d 470438 net extra eggdrop_1.6.17-3sarge1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHb3Th62zWxYk/rQcRAv/9AKCDTfr0FyPDku2vGB+tBuKtWZw/VQCeOVGW A8fz8gQmkC5Kr6nzX4KlbBo= =U2Ko -----END PGP SIGNATURE----- Accepted: eggdrop-data_1.6.17-3sarge1_all.deb to pool/main/e/eggdrop/eggdrop-data_1.6.17-3sarge1_all.deb eggdrop_1.6.17-3sarge1.diff.gz to pool/main/e/eggdrop/eggdrop_1.6.17-3sarge1.diff.gz eggdrop_1.6.17-3sarge1.dsc to pool/main/e/eggdrop/eggdrop_1.6.17-3sarge1.dsc eggdrop_1.6.17-3sarge1_i386.deb to pool/main/e/eggdrop/eggdrop_1.6.17-3sarge1_i386.deb