-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sat, 6 Dec 2003 18:43:11 +0100 Source: screen Binary: screen Architecture: source i386 Version: 4.0.2-0.1 Distribution: unstable Urgency: medium Maintainer: J.H.M. Dassen (Ray) <jdassen@debian.org> Changed-By: J.H.M. Dassen (Ray) <jdassen@debian.org> Description: screen - a terminal multiplexor with VT100/ANSI terminal emulation Closes: 222420 Changes: screen (4.0.2-0.1) unstable; urgency=medium . * NMU * New upstream release. No upstream changelog found. ansi.c has been changed to fix CAN-2003-0972, a signed integer overflow that allowed for arbitrary code execution as group utmp (or as root on systems where screen was installed setuid root). (Addresses #222385 for sid) * [debian/rules] Changed the order of chmod/chown of the screen binary and the run directory to chown, chmod as chown no longer preserves setuid and setgid bits as of coreutils 5.0.1. (Closes: #222420) Files: 41e815dd4388508c81ac7848b07e518a 624 misc optional screen_4.0.2-0.1.dsc ed68ea9b43d9fba0972cb017a24940a1 840519 misc optional screen_4.0.2.orig.tar.gz b1225e9de848291c71491151f111dc8a 51165 misc optional screen_4.0.2-0.1.diff.gz 674803d18d688d7202664c3b71c10f31 580428 misc optional screen_4.0.2-0.1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQE/0hcqbTEMl+oVcvERArisAKC3BFKhv8FeAHRfw/TXp00GigOsFwCfQtZK vE2vzkc6vJpi7gW48bROMHM= =VlG2 -----END PGP SIGNATURE----- Accepted: screen_4.0.2-0.1.diff.gz to pool/main/s/screen/screen_4.0.2-0.1.diff.gz screen_4.0.2-0.1.dsc to pool/main/s/screen/screen_4.0.2-0.1.dsc screen_4.0.2-0.1_i386.deb to pool/main/s/screen/screen_4.0.2-0.1_i386.deb screen_4.0.2.orig.tar.gz to pool/main/s/screen/screen_4.0.2.orig.tar.gz -- To UNSUBSCRIBE, email to debian-devel-changes-request@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org