Accepted foomatic-db-engine 2.9-20030423-1 (i386 source all)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Wed, 23 Apr 2003 19:34:10 -0500
Source: foomatic-db-engine
Binary: foomatic-bin foomatic-db-engine
Architecture: source i386 all
Version: 2.9-20030423-1
Distribution: unstable
Urgency: high
Maintainer: Chris Lawrence <lawrencc@debian.org>
Changed-By: Chris Lawrence <lawrencc@debian.org>
Description:
foomatic-bin - linuxprinting.org printer support - transition package
foomatic-db-engine - linuxprinting.org printer support - programs
Closes: 189497
Changes:
foomatic-db-engine (2.9-20030423-1) unstable; urgency=high
.
* New upstream release. (Same as 3.0.0rc2)
* Package description improved. (Closes: #189497)
* From the upstream changelog:
- Security bug in string and password options fixed: In Foomatic
3.0.0rc1 the user could use arbitrary characters in a string option,
so there was for example possible that for an option supposed to be
inserted into the filter command line a user could enter a string
like "|| rm -rf * ||".
.
This is now blocked by the possibility to specify in the Foomatic
data which characters are allowed and/or a regular expression, which
has to be matched by the string, in the Foomatic data for a string or
password option. See the section "String and Password Options" in the
README file of the "foomatic-db-engine" package for more details.
.
(This only affects the 2.9 series of foomatic. woody is unaffected.)
Files:
0a8acc47964a01db4d08a7f478f73124 962 text optional foomatic-db-engine_2.9-20030423-1.dsc
ec378dbcc75270be48b6040551af1407 269996 text optional foomatic-db-engine_2.9-20030423.orig.tar.gz
cc24985ab67b90cb1720819e67372725 31952 text optional foomatic-db-engine_2.9-20030423-1.diff.gz
8b4b2eca1a17ed5603a9a840040f6577 232826 text optional foomatic-db-engine_2.9-20030423-1_i386.deb
42258bfc8665f44db332033f6de35791 42576 text optional foomatic-bin_2.9-20030423-1_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
iQEXAwUBPqczr1xpg5e5AmZiFAJ2OwQAwlhSEUnMbVqxeUrkNPnTSqc28aBaJlXl
0GrVYZ8CTP3tjoKnBfQhidiQGjZBgsPHrAB/WddBxeBnGwhu54zW8TV9bMQtATTU
ejMDpir7lb7kKR/GcFJEOKFqE6hGOvI02QhzFQ4oNITQXFgOL6n4gIdcWRwFTRLg
CTOce3rZIi0D/jn3NW5dRYLPfbGspWCNZrrAs80GIBT8Uet5X+7cK4Rad624mpGS
lGtL/mOzrYmmKk/mKcCmjhlQdtrO1PNJIDwQ3AHxJ/zRLSznSzVcQbqnu/AQasKT
15x2LuTCnNkAJr9E+89ysv4DsyA9JMGifq80FImktOvyQ59gLaQNwPpV
=ajGV
-----END PGP SIGNATURE-----
Accepted:
foomatic-bin_2.9-20030423-1_all.deb
to pool/main/f/foomatic-db-engine/foomatic-bin_2.9-20030423-1_all.deb
foomatic-db-engine_2.9-20030423-1.diff.gz
to pool/main/f/foomatic-db-engine/foomatic-db-engine_2.9-20030423-1.diff.gz
foomatic-db-engine_2.9-20030423-1.dsc
to pool/main/f/foomatic-db-engine/foomatic-db-engine_2.9-20030423-1.dsc
foomatic-db-engine_2.9-20030423-1_i386.deb
to pool/main/f/foomatic-db-engine/foomatic-db-engine_2.9-20030423-1_i386.deb
foomatic-db-engine_2.9-20030423.orig.tar.gz
to pool/main/f/foomatic-db-engine/foomatic-db-engine_2.9-20030423.orig.tar.gz
Reply to: