-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 28 Mar 2007 09:03:00 +0200 Source: xmms Binary: xmms-dev xmms Architecture: source i386 Version: 1:1.2.10+20061101-1etch1 Distribution: testing-security Urgency: high Maintainer: Daniel Baumann <daniel@debian.org> Changed-By: Daniel Baumann <dnaiel@debian.org> Description: xmms - Versatile X audio player xmms-dev - XMMS development static library and header files Closes: 416423 Changes: xmms (1:1.2.10+20061101-1etch1) testing-security; urgency=high . * Added patch from Kees Cook <kees@ubuntu.com> to address integer underflow CVE-2007-0654 and overflow CVE-2007-0653 in BMP loader (Closes: #416423). Files: 53f8f076ec0cf1d6885e54abfbcf8977 1015 sound optional xmms_1.2.10+20061101-1etch1.dsc 6e9e688169b3544558982479c44b213d 3565455 sound optional xmms_1.2.10+20061101.orig.tar.gz c111f08ee57b9130c7ce74169bae1a53 118018 sound optional xmms_1.2.10+20061101-1etch1.diff.gz 32d090355f079b7865baa1929fe6631b 2159502 sound optional xmms_1.2.10+20061101-1etch1_i386.deb 73df76232bc6795b5fb7792ec403c8ad 448102 devel optional xmms-dev_1.2.10+20061101-1etch1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFGCriF+C5cwEsrK54RAh1kAJ0cPvlqmtilRVx8y1qiVoNPyBLUaACfftBm YmUHS2kjvhVGoCfIwzHnYrU= =YviZ -----END PGP SIGNATURE----- Accepted: xmms-dev_1.2.10+20061101-1etch1_i386.deb to pool/main/x/xmms/xmms-dev_1.2.10+20061101-1etch1_i386.deb xmms_1.2.10+20061101-1etch1.diff.gz to pool/main/x/xmms/xmms_1.2.10+20061101-1etch1.diff.gz xmms_1.2.10+20061101-1etch1.dsc to pool/main/x/xmms/xmms_1.2.10+20061101-1etch1.dsc xmms_1.2.10+20061101-1etch1_i386.deb to pool/main/x/xmms/xmms_1.2.10+20061101-1etch1_i386.deb