Uploaded slrn 0.9.6.2-9 (m68k) to erlangen
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.6
Date: Thu, 22 Jun 2000 18:26:33 -0700
Source: slrn
Binary: slrn slrnpull
Architecture: m68k
Version: 0.9.6.2-9
Distribution: unstable
Urgency: low
Maintainer: Debian/m68k Build Daemon <buildd@kullervo.informatik.uni-erlangen.de>
Description:
slrn - threaded news reader (fast for slow links)
slrnpull - pulls a small newsfeed from an NNTP server
Changes:
slrn (0.9.6.2-9) unstable; urgency=low
.
* Applied a patch from
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=12750 to fix
dozens of potential buffer overrun holes in slrn and slrnpull. These
include local environment variable overruns which Debian should not be
vulnerable to, since nothing in this package is installed setuid or
setgid (unlike Red Hat). It also includes theoretical remote exploits by
poisening newsgroup data. All theoretical, so I am not uploading it to
frozen, but I might as well apply the patch.
Files:
3d8ff3ebc64120d135e0b7ee7efd2424 189974 news optional slrn_0.9.6.2-9_m68k.deb
286b35878b0c40c335a7845d967845e2 65764 news optional slrnpull_0.9.6.2-9_m68k.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.0 (SunOS)
Comment: Processed by Mailcrypt 3.5.5 and Gnu Privacy Guard <http://www.gnupg.org/>
iEYEARECAAYFAjlYZJIACgkQcS3JWD3FdvdTUACfdJs30/aBqDGBRIaxHJpRYZ88
IroAn38OHLd3JjEaPyQJnivLcNnsq77C
=5O3S
-----END PGP SIGNATURE-----
Reply to: