-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 10 Dec 2007 16:42:03 +0100 Source: emacs22 Binary: emacs22-el emacs22-gtk emacs22-bin-common emacs22-nox emacs22 emacs22-common emacs Architecture: source all i386 Version: 22.1+1-2.1+lenny1 Distribution: testing-security Urgency: high Maintainer: Rob Browning <rlb@defaultvalue.org> Changed-By: Nico Golde <nion@debian.org> Description: emacs - The GNU Emacs editor (metapackage) emacs22 - The GNU Emacs editor emacs22-bin-common - The GNU Emacs editor's shared, architecture dependent files emacs22-common - The GNU Emacs editor's shared, architecture independent infrastru emacs22-el - GNU Emacs LISP (.el) files emacs22-gtk - The GNU Emacs editor (with GTK user interface) emacs22-nox - The GNU Emacs editor (without X support) Closes: 455432 Changes: emacs22 (22.1+1-2.1+lenny1) testing-security; urgency=high . * Non-maintainer upload by testing-security team. * This update addresses the following security issue: - CVE-2007-6109: A stack-based buffer overflow in the format function when dealing with high precision values could lead to arbitrary code execution. Added upstream patch (CVE-2007-6109.diff) to fix this (Closes: #455432). Files: eb4735cee3ae4b45de29082b55e6ce3d 951 editors optional emacs22_22.1+1-2.1+lenny1.dsc 79f7f120a19e11a695dd1b601fd17ec4 49336 editors optional emacs22_22.1+1-2.1+lenny1.diff.gz 11b96b2b7748f0a77bb6281ccb264fa9 18634 editors optional emacs_22.1+1-2.1+lenny1_all.deb 3114aefa1694af6b60f66d52e2b00021 14348738 editors optional emacs22-common_22.1+1-2.1+lenny1_all.deb a4f0587e110182fc493f3115d3fd45b3 11186702 editors optional emacs22-el_22.1+1-2.1+lenny1_all.deb e818871e13c917d962cd4b4759e1ec85 2565234 editors optional emacs22_22.1+1-2.1+lenny1_i386.deb 63822f5bb63b0f9297be68862411e02c 2318060 editors optional emacs22-nox_22.1+1-2.1+lenny1_i386.deb d3d5293251b736874e18c4424c65053e 2562370 editors optional emacs22-gtk_22.1+1-2.1+lenny1_i386.deb 3fb6984e3aa7629706f71ee0f2a6ccaf 161260 editors optional emacs22-bin-common_22.1+1-2.1+lenny1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFHXYidHYflSXNkfP8RArtNAJ44jwkC4MuHL5vBQs9Ijo4MLARp3wCfd3E/ vUGmXYUSooLycBcvJwL4YFU= =KyiD -----END PGP SIGNATURE----- Accepted: emacs22-bin-common_22.1+1-2.1+lenny1_i386.deb to pool/main/e/emacs22/emacs22-bin-common_22.1+1-2.1+lenny1_i386.deb emacs22-common_22.1+1-2.1+lenny1_all.deb to pool/main/e/emacs22/emacs22-common_22.1+1-2.1+lenny1_all.deb emacs22-el_22.1+1-2.1+lenny1_all.deb to pool/main/e/emacs22/emacs22-el_22.1+1-2.1+lenny1_all.deb emacs22-gtk_22.1+1-2.1+lenny1_i386.deb to pool/main/e/emacs22/emacs22-gtk_22.1+1-2.1+lenny1_i386.deb emacs22-nox_22.1+1-2.1+lenny1_i386.deb to pool/main/e/emacs22/emacs22-nox_22.1+1-2.1+lenny1_i386.deb emacs22_22.1+1-2.1+lenny1.diff.gz to pool/main/e/emacs22/emacs22_22.1+1-2.1+lenny1.diff.gz emacs22_22.1+1-2.1+lenny1.dsc to pool/main/e/emacs22/emacs22_22.1+1-2.1+lenny1.dsc emacs22_22.1+1-2.1+lenny1_i386.deb to pool/main/e/emacs22/emacs22_22.1+1-2.1+lenny1_i386.deb emacs_22.1+1-2.1+lenny1_all.deb to pool/main/e/emacs22/emacs_22.1+1-2.1+lenny1_all.deb