-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 20 May 2008 14:08:54 +0200 Source: gnome-peercast Binary: gnome-peercast Architecture: source amd64 Version: 0.5.4-1.1etch0 Distribution: stable-security Urgency: high Maintainer: Takuo KITAME <kitame@debian.org> Changed-By: Romain Beauxis <toots@rastageeks.org> Description: gnome-peercast - PeerCast user interface for GNOME includes peercast core Changes: gnome-peercast (0.5.4-1.1etch0) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Fixed CVE-2007-6454: | Heap-based buffer overflow in the handshakeHTTP function in servhs.cpp | in PeerCast 0.1217 and earlier, and SVN 344 and earlier, allows remote | attackers to cause a denial of service and possibly execute arbitrary | code via a long SOURCE request. * Fixed CVE-2008-2040: | stack-based buffer overfow in the | HTTP::getAuthUserPass function leading | to remote DoS or arbitrary code execution | if peercast is configured to use http-basic | authentication Files: e2d40d2cd79ac54cefb00a6fa9b747d2 956 gnome optional gnome-peercast_0.5.4-1.1etch0.dsc e689715d8e70cdb0ce684ccce063a58f 800116 gnome optional gnome-peercast_0.5.4.orig.tar.gz a17daf736115641d4ab3a6c41aa152c3 3104 gnome optional gnome-peercast_0.5.4-1.1etch0.diff.gz 33d4c4fd7bed425a4cee0268e44dcc20 257812 gnome optional gnome-peercast_0.5.4-1.1etch0_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iQEVAwUBSDLh3gC5aaocqV0ZAQJisgf+LqRBcPqtnhwCWBMz2/JbgUHYNXB/Oe0E uB0Ee/E9/YjV1COdiM0HAeC0XQCoSH06RoPpuzgHuBntV5EkdzbV2SqDdB51TWji V54G7pn+kwMwzvDdYaK33q7eNvFE63LjsnyumezxeH7V0jxRMOPdwRFmUK7ncc3R QWbkJqQGqccAAOSOW+HtSW6DoiJkgpQKgsweeBvn/XN6WBWVWJn93nVba776sMQI 1e35jc3P8+07XDbsM1XLDGbbTz3cjnKLvZWYugfEWvBgx1zzPMNU3XLLiUSqDCTt Oqz+WUIg0hystQQ309w/OPPqYgsE4s3wi2Q1IT3xTWQxcH87B+AOkA== =9WLG -----END PGP SIGNATURE----- Accepted: gnome-peercast_0.5.4-1.1etch0.diff.gz to pool/main/g/gnome-peercast/gnome-peercast_0.5.4-1.1etch0.diff.gz gnome-peercast_0.5.4-1.1etch0.dsc to pool/main/g/gnome-peercast/gnome-peercast_0.5.4-1.1etch0.dsc gnome-peercast_0.5.4-1.1etch0_amd64.deb to pool/main/g/gnome-peercast/gnome-peercast_0.5.4-1.1etch0_amd64.deb