-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 19 May 2006 08:22:47 +0000 Source: phpbb2 Binary: phpbb2-languages phpbb2-conf-mysql phpbb2 Architecture: source all Version: 2.0.13+1-6sarge3 Distribution: stable-security Urgency: high Maintainer: Jeroen van Wolffelaar <jeroen@wolffelaar.nl> Changed-By: Moritz Muehlenhoff <jmm@debian.org> Description: phpbb2 - A fully featured and skinneable flat (non-threaded) webforum phpbb2-conf-mysql - Automatic configurator for phpbb2 on MySQL database phpbb2-languages - phpBB2 additional languages Changes: phpbb2 (2.0.13+1-6sarge3) stable-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix arbitrary web script execution through missing input sanitising in Font Colour 3 variables. (CVE-2006-1896) Files: 517bf7f4c266f26f3ef9a9be6d7c571f 719 web optional phpbb2_2.0.13+1-6sarge3.dsc 01f4762f95f68fb8c1681ee9d4d6faa1 65253 web optional phpbb2_2.0.13+1-6sarge3.diff.gz 702da4887fbdc27a06cc519c9f02363f 525642 web optional phpbb2_2.0.13-6sarge3_all.deb ab27da20ca8360e5ea735ee02664ecb5 37594 web extra phpbb2-conf-mysql_2.0.13-6sarge3_all.deb 31ea4f9837234335e35cc42fbc906ec1 2873158 web optional phpbb2-languages_2.0.13-6sarge3_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.3 (GNU/Linux) iD8DBQFEbY4VXm3vHE4uyloRAg7FAKDWpd8E/5rNsxIxzylbrhefHmdo2gCfebXp WXz7tZBl069gy2og1AcF+PE= =ZjQ5 -----END PGP SIGNATURE----- Accepted: phpbb2-conf-mysql_2.0.13-6sarge3_all.deb to pool/main/p/phpbb2/phpbb2-conf-mysql_2.0.13-6sarge3_all.deb phpbb2-languages_2.0.13-6sarge3_all.deb to pool/main/p/phpbb2/phpbb2-languages_2.0.13-6sarge3_all.deb phpbb2_2.0.13+1-6sarge3.diff.gz to pool/main/p/phpbb2/phpbb2_2.0.13+1-6sarge3.diff.gz phpbb2_2.0.13+1-6sarge3.dsc to pool/main/p/phpbb2/phpbb2_2.0.13+1-6sarge3.dsc phpbb2_2.0.13-6sarge3_all.deb to pool/main/p/phpbb2/phpbb2_2.0.13-6sarge3_all.deb