-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 20 Jan 2005 20:00:21 +0100 Source: enscript Binary: enscript Architecture: source i386 Version: 1.6.4-6 Distribution: unstable Urgency: high Maintainer: Michael Fedrowitz <michaelf@debian.org> Changed-By: Michael Fedrowitz <michaelf@debian.org> Description: enscript - Converts ASCII text to Postscript, HTML, RTF or Pretty-Print Changes: enscript (1.6.4-6) unstable; urgency=high . * [SECURITY] Applied the following patches from the Debian Security Team: - [CAN-2004-1184] Corrected handling of user supplied input (filename, title) when executing shell commands. - [CAN-2004-1185] Commented out code that will permit EPS files to be provided as arbitrary programs to be executed. - [CAN-2004-1186] Fixed buffer overflows. Files: c2a39ed0d746b8aa27b19ab9a5e8141e 610 text optional enscript_1.6.4-6.dsc cad8ee85e9b0de284bcda2f5b6e9c66b 20307 text optional enscript_1.6.4-6.diff.gz 9a6324b15e33972ae74ba128c71d8a7a 477140 text optional enscript_1.6.4-6_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.5 (GNU/Linux) iD8DBQFB8ALPvpyGjQRgTrgRAqssAJ9x4MfOtV7dHyldS81Z8o/q6mT2jwCdEM/9 6+/2EdrL7LVj4DWmBU4hvNo= =Vz9p -----END PGP SIGNATURE----- Accepted: enscript_1.6.4-6.diff.gz to pool/main/e/enscript/enscript_1.6.4-6.diff.gz enscript_1.6.4-6.dsc to pool/main/e/enscript/enscript_1.6.4-6.dsc enscript_1.6.4-6_i386.deb to pool/main/e/enscript/enscript_1.6.4-6_i386.deb -- To UNSUBSCRIBE, email to debian-devel-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org