-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Fri, 8 Feb 2002 03:30:35 +0100 Source: uucp Binary: uucp Architecture: source i386 Version: 1.06.1-17 Distribution: unstable Urgency: high Maintainer: Peter Palfrader <weasel@debian.org> Changed-By: Peter Palfrader <weasel@debian.org> Description: uucp - Unix to Unix Copy Program Closes: 132753 Changes: uucp (1.06.1-17) unstable; urgency=high . * Fixed exploit that allowed to gain uid.guid uucp.uucp again: The patch used in 1.06.1-11potato1 did fix the original exploit but not variations of it. Reversed old patch and using the one by Ian Taylor. Hopefully this fixes the issue correctly (Closes: #132753). * Applied Alex King's second patch which fixes a pam issue: | When I was reviewing the code though, I realise I have made a basic | error. I did not check the return code of the misc_conv function I | called. This will probably make very little difference, but to be | correct I have included a patch to fix it. Files: 71f6079a6c3567f51481420fe07f4c1b 599 comm extra uucp_1.06.1-17.dsc ebb58a4c5fc3affd6d0f97ca81123f4a 30310 comm extra uucp_1.06.1-17.diff.gz 40f8fa5a638ecd72e3074e6ba2051af0 690524 comm extra uucp_1.06.1-17_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (GNU/Linux) Comment: For info see http://www.gnupg.org iD8DBQE8Yzrd3nqvbpTAnH8RArORAKDKIuQmTmBdYa99tCrBXtxW8X0k6QCdFFO3 QJYo35iOV246QtBge6+FwiA= =KKGL -----END PGP SIGNATURE----- Installed: uucp_1.06.1-17.diff.gz to pool/main/u/uucp/uucp_1.06.1-17.diff.gz uucp_1.06.1-17.dsc to pool/main/u/uucp/uucp_1.06.1-17.dsc uucp_1.06.1-17_i386.deb to pool/main/u/uucp/uucp_1.06.1-17_i386.deb