-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Thu, 1 Sep 2005 07:46:12 +0200 Source: gcvs Binary: gcvs Architecture: source i386 Version: 1.0final-5sarge1 Distribution: stable-security Urgency: high Maintainer: Martin Schulze <joey@debian.org> Changed-By: Martin Schulze <joey@infodrom.org> Description: gcvs - Graphical frontend for CVS Changes: gcvs (1.0final-5sarge1) stable-security; urgency=high . * Non-maintainer upload by the Security Team * Switched to using tempfile to prevent symlink attacks [cvsunix/src/cvsbug.sh, CAN-2005-2693] * Applied patch by Marcus Meissner to prevent symlink attacks via removed files [cvsunix/src/cvsbug.sh, CAN-2005-2693] Files: 6a7ee2cd172ecd0bd49c93bc7a6eab39 671 devel optional gcvs_1.0final-5sarge1.dsc 642c8333853aeb87e8137bb26314ec9b 2936168 devel optional gcvs_1.0final.orig.tar.gz 1b65f0c6d7340daa0fa6f864b7688bd7 10583 devel optional gcvs_1.0final-5sarge1.diff.gz e2a2fe10efe306b54258fdf11b72f275 727660 devel optional gcvs_1.0final-5sarge1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (GNU/Linux) iD8DBQFDFp4CW5ql+IAeqTIRAsRZAJ4/ApJBwnDx2t9GkNBm8hIKR3lmcgCgjtNb /mIFxsK0r5r2ljk+2DtpK3Q= =mOF2 -----END PGP SIGNATURE----- Accepted: gcvs_1.0final-5sarge1.diff.gz to pool/main/g/gcvs/gcvs_1.0final-5sarge1.diff.gz gcvs_1.0final-5sarge1.dsc to pool/main/g/gcvs/gcvs_1.0final-5sarge1.dsc gcvs_1.0final-5sarge1_i386.deb to pool/main/g/gcvs/gcvs_1.0final-5sarge1_i386.deb