[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted gnome-peercast 0.5.4-1.1etch0 (source amd64)



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Tue, 20 May 2008 14:08:54 +0200
Source: gnome-peercast
Binary: gnome-peercast
Architecture: source amd64
Version: 0.5.4-1.1etch0
Distribution: stable-security
Urgency: high
Maintainer: Takuo KITAME <kitame@debian.org>
Changed-By: Romain Beauxis <toots@rastageeks.org>
Description: 
 gnome-peercast - PeerCast user interface for GNOME includes peercast core
Changes: 
 gnome-peercast (0.5.4-1.1etch0) stable-security; urgency=high
 .
   * Non-maintainer upload by the Security Team.
   * Fixed CVE-2007-6454:
     | Heap-based buffer overflow in the handshakeHTTP function in servhs.cpp
     | in PeerCast 0.1217 and earlier, and SVN 344 and earlier, allows remote
     | attackers to cause a denial of service and possibly execute arbitrary
     | code via a long SOURCE request.
   * Fixed CVE-2008-2040:
     | stack-based buffer overfow in the
     | HTTP::getAuthUserPass function leading
     | to remote DoS or arbitrary code execution
     | if peercast is configured to use http-basic
     | authentication
Files: 
 e2d40d2cd79ac54cefb00a6fa9b747d2 956 gnome optional gnome-peercast_0.5.4-1.1etch0.dsc
 e689715d8e70cdb0ce684ccce063a58f 800116 gnome optional gnome-peercast_0.5.4.orig.tar.gz
 a17daf736115641d4ab3a6c41aa152c3 3104 gnome optional gnome-peercast_0.5.4-1.1etch0.diff.gz
 33d4c4fd7bed425a4cee0268e44dcc20 257812 gnome optional gnome-peercast_0.5.4-1.1etch0_amd64.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iQEVAwUBSDLh3gC5aaocqV0ZAQJisgf+LqRBcPqtnhwCWBMz2/JbgUHYNXB/Oe0E
uB0Ee/E9/YjV1COdiM0HAeC0XQCoSH06RoPpuzgHuBntV5EkdzbV2SqDdB51TWji
V54G7pn+kwMwzvDdYaK33q7eNvFE63LjsnyumezxeH7V0jxRMOPdwRFmUK7ncc3R
QWbkJqQGqccAAOSOW+HtSW6DoiJkgpQKgsweeBvn/XN6WBWVWJn93nVba776sMQI
1e35jc3P8+07XDbsM1XLDGbbTz3cjnKLvZWYugfEWvBgx1zzPMNU3XLLiUSqDCTt
Oqz+WUIg0hystQQ309w/OPPqYgsE4s3wi2Q1IT3xTWQxcH87B+AOkA==
=9WLG
-----END PGP SIGNATURE-----


Accepted:
gnome-peercast_0.5.4-1.1etch0.diff.gz
  to pool/main/g/gnome-peercast/gnome-peercast_0.5.4-1.1etch0.diff.gz
gnome-peercast_0.5.4-1.1etch0.dsc
  to pool/main/g/gnome-peercast/gnome-peercast_0.5.4-1.1etch0.dsc
gnome-peercast_0.5.4-1.1etch0_amd64.deb
  to pool/main/g/gnome-peercast/gnome-peercast_0.5.4-1.1etch0_amd64.deb


Reply to: