-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Wed, 28 Mar 2007 23:52:17 +0200 Source: zope2.9 Binary: zope2.9-sandbox zope2.9 Architecture: source amd64 all Version: 2.9.6-4etch1 Distribution: testing-proposed-updates Urgency: high Maintainer: Debian/Ubuntu Zope Team <pkg-zope-developers@lists.alioth.debian.org> Changed-By: Jérémy Bobbio <lunar@debian.org> Description: zope2.9 - Open Source Web Application Server zope2.9-sandbox - sandbox instance for the zope2.9 web application server Closes: 415564 Changes: zope2.9 (2.9.6-4etch1) testing-proposed-updates; urgency=high . * SECURITY UPDATE: Prevent privileges elevation through misuse of HTTP GET. Refs: http://www.zope.org/Products/Zope/Hotfix-2007-03-20/announcement/view CVE-2007-0240 (Closes: #415564) Files: df49b5dbec5a925d40d62441ff21689a 870 web optional zope2.9_2.9.6-4etch1.dsc 0349d7839f6ee72dac469910ee1cfa85 16448 web optional zope2.9_2.9.6-4etch1.diff.gz 779b74a4c6b449bf6367605d2e0156a8 6952424 web optional zope2.9_2.9.6-4etch1_amd64.deb 3e22fb97bb28707ac22514e403326c3d 11740 web optional zope2.9-sandbox_2.9.6-4etch1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (GNU/Linux) iD8DBQFGCvG42PUjs9fQ72URAjebAJsF7W25htKdrz+bJshTTZEh3H4EAgCfT66k DEOAl/5Pfn63zn2JVrQOyK4= =4HTh -----END PGP SIGNATURE----- Accepted: zope2.9-sandbox_2.9.6-4etch1_all.deb to pool/main/z/zope2.9/zope2.9-sandbox_2.9.6-4etch1_all.deb zope2.9_2.9.6-4etch1.diff.gz to pool/main/z/zope2.9/zope2.9_2.9.6-4etch1.diff.gz zope2.9_2.9.6-4etch1.dsc to pool/main/z/zope2.9/zope2.9_2.9.6-4etch1.dsc zope2.9_2.9.6-4etch1_amd64.deb to pool/main/z/zope2.9/zope2.9_2.9.6-4etch1_amd64.deb