-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 18 Dec 2005 15:41:52 -0500 Source: util-vserver Binary: util-vserver Architecture: source i386 Version: 0.30.204-5sarge3 Distribution: stable-security Urgency: high Maintainer: Ola Lundqvist <opal@debian.org> Changed-By: Micah Anderson <micah@debian.org> Description: util-vserver - tools for Virtual private servers and context switching Closes: 329090 Changes: util-vserver (0.30.204-5sarge3) stable-security; urgency=high . * [CVE-2005-4347]: Barrier code fixed to prohibits chroot escapes when using a 2.4 kernel patched with debian package kernel-patch-vserver 1.9.5.4. If you are using a patched kernel prior to this version, you must update the kernel in addition to these tools. (Closes: #329090) * [CVE-2005-4418]: Default policy fixed to assume all unknown capabilities are insecure, rather than trust unknown capabilities by default. Files: e32069a5ca2ef2bc87794cd6c2160821 752 net optional util-vserver_0.30.204-5sarge3.dsc d0bb2cd998a73905189ee24b5f46dd0d 115947 net optional util-vserver_0.30.204-5sarge3.diff.gz b315f375b1cef48da1b644dec18f22bd 677831 net optional util-vserver_0.30.204.orig.tar.gz 56831faa6fa6d76c601fee78251f50eb 398794 net optional util-vserver_0.30.204-5sarge3_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2 (GNU/Linux) iD8DBQFDqcAqW5ql+IAeqTIRAvduAJ9hOCrndy4yfpEpez8a8bsGvZ3FmgCfcgp4 lZX866qw+ugr0vCRReXiX8w= =/+2d -----END PGP SIGNATURE----- Accepted: util-vserver_0.30.204-5sarge3.diff.gz to pool/main/u/util-vserver/util-vserver_0.30.204-5sarge3.diff.gz util-vserver_0.30.204-5sarge3.dsc to pool/main/u/util-vserver/util-vserver_0.30.204-5sarge3.dsc util-vserver_0.30.204-5sarge3_i386.deb to pool/main/u/util-vserver/util-vserver_0.30.204-5sarge3_i386.deb