Accepted tar 1.14-2.3 (source i386)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Thu, 30 Nov 2006 17:16:37 -0500
Source: tar
Binary: tar
Architecture: source i386
Version: 1.14-2.3
Distribution: stable-security
Urgency: high
Maintainer: noahm@debian.org
Changed-By: Noah Meyerhans <noahm@debian.org>
Description:
tar - GNU tar
Changes:
tar (1.14-2.3) stable-security; urgency=high
.
* Non-maintainer upload by the Security Team.
* Fix arbitrary file overwrite vulnerability in the handling of
GNUTYPE_NAMES records in tar files. CVE-2006-6097
Files:
85503d4264d7b39c7969051c3661fa96 554 base required tar_1.14-2.3.dsc
d6513454cbe12eec5908c2b41253f843 51004 base required tar_1.14-2.3.diff.gz
c764b0894f6c3317a78124177cfed9fe 499560 base required tar_1.14-2.3_i386.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
iD8DBQFFb5fQYrVLjBFATsMRAvq9AKCCkZYDTHUgI9ip3w4iPdhgv3LzigCePRTS
TKGsYWH2VhnMQScIyFTJB1w=
=TEc+
-----END PGP SIGNATURE-----
Accepted:
tar_1.14-2.3.diff.gz
to pool/main/t/tar/tar_1.14-2.3.diff.gz
tar_1.14-2.3.dsc
to pool/main/t/tar/tar_1.14-2.3.dsc
tar_1.14-2.3_i386.deb
to pool/main/t/tar/tar_1.14-2.3_i386.deb
Reply to: