Installed: gnofin_0.6.1-3.diff.gz to dists/potato/main/source/utils/gnofin_0.6.1-3.diff.gz replacing gnofin_0.6.1-2.diff.gz gnofin_0.6.1-3.diff.gz to dists/woody/main/source/utils/gnofin_0.6.1-3.diff.gz replacing gnofin_0.6.1-2.diff.gz gnofin_0.6.1-3.dsc to dists/potato/main/source/utils/gnofin_0.6.1-3.dsc replacing gnofin_0.6.1-2.dsc gnofin_0.6.1-3.dsc to dists/woody/main/source/utils/gnofin_0.6.1-3.dsc replacing gnofin_0.6.1-2.dsc gnofin_0.6.1-3_i386.deb to dists/potato/main/binary-i386/utils/gnofin_0.6.1-3.deb replacing gnofin_0.6.1-2.deb gnofin_0.6.1-3_i386.deb to dists/woody/main/binary-i386/utils/gnofin_0.6.1-3.deb replacing gnofin_0.6.1-2.deb -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.6 Date: Fri, 11 Feb 2000 01:48:44 +0100 Source: gnofin Binary: gnofin Architecture: source i386 Version: 0.6.1-3 Distribution: frozen unstable Urgency: medium Maintainer: Torsten Landschoff <torsten@debian.org> Description: gnofin - GNOME financial manager Closes: 57767 Changes: gnofin (0.6.1-3) frozen unstable; urgency=medium . * Applied patch from Darin fixing the /tmp insecurity (closes: #57767). This is a grave security problem which does only occur when importing Quicken files. I can't test the patch but I figure it is better to break the Quicken import than having a security hole. . Thanks for Colin Phipps for reporting this bug. Files: 20431617304179a9f096bfc8762ef12a 558 utils optional gnofin_0.6.1-3.dsc 74abd2cc8aa9659a4ce19a670cfb19b5 4811 utils optional gnofin_0.6.1-3.diff.gz f6d49da53f9ef3f2a856a4c6de8c5d66 41454 utils optional gnofin_0.6.1-3_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.1 (GNU/Linux) Comment: For info see http://www.gnupg.org iD8DBQE4o4A2dQgHtVUb5EcRAnwOAJ0UUbJ1nvsI/y8U430jUgtxNS3lNwCdFppN LcgqNwvQprkiK6RTmStEDZA= =ulnd -----END PGP SIGNATURE-----