[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted mozilla-thunderbird 1.0.7-1 (source i386)



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Sat, 1 Oct 2005 17:00:00 +0100
Source: mozilla-thunderbird
Binary: mozilla-thunderbird-dev mozilla-thunderbird-inspector mozilla-thunderbird mozilla-thunderbird-typeaheadfind mozilla-thunderbird-offline
Architecture: source i386
Version: 1.0.7-1
Distribution: unstable
Urgency: high
Maintainer: Alexander Sack <asac@debian.org>
Changed-By: Alexander Sack <asac@debian.org>
Description: 
 mozilla-thunderbird - Mozilla Thunderbird standalone mail client
 mozilla-thunderbird-dev - mozilla thunderbird development files
 mozilla-thunderbird-inspector - mozilla thunderbird dom inspector extension
 mozilla-thunderbird-offline - mozilla thunderbird offline extension
 mozilla-thunderbird-typeaheadfind - mozilla thunderbird typeaheadfind extension
Changes: 
 mozilla-thunderbird (1.0.7-1) unstable; urgency=high
 .
   * MFSA-2005-57: IDN heap overrun
     Summary: Tom Ferris reported a Firefox crash when processing a domain
 	     name consisting solely of soft-hyphen characters.
     Closes: -
     CVE-Ids: CAN-2005-2871
     Bugzilla: 307259
     Issues addressed:
       + CAN-2005-2871 - IDN heap overrun
   * MFSA-2005-58: Accumulated vendor advisory for multiple vulnerabilities
     Summary: Fixes for multiple vulnerabilities with an overall severity
 	     of "critical" have been released in Mozilla Firefox 1.0.7 and
 	     the Mozilla Suite 1.7.12
     Closes: -
     CVE-Ids: CAN-2005-2701 CAN-2005-2702 CAN-2005-2703 CAN-2005-2704
 	     CAN-2005-2705 CAN-2005-2706 CAN-2005-2707
     Bugzilla: 300936 296134 297078 302263 299518 303213 304754 306261
 	      306804 291178 300853 301180 302100
     Issues addressed:
       + CAN-2005-2701 - Heap overrun in XBM image processing
       + CAN-2005-2702 - Crash on "zero-width non-joiner" sequence
       + CAN-2005-2703 - XMLHttpRequest header spoofing
       + CAN-2005-2704 - Object spoofing using XBL <implements>
       + CAN-2005-2705 - JavaScript integer overflow
       + CAN-2005-2706 - Privilege escalation using about: scheme
       + CAN-2005-2707 - Chrome window spoofing
       + Regression fixes
   * MFSA-2005-59: Command-line handling on Linux allows shell execution
     -> was addressed in 1.0.6-4 already. Reverting upstream changes
         to mozilla/mail/mozilla.in by copying debian/mozilla.in_1.0.6 over
         to allow our patches to still apply. debian/patches/01_old_mozilla.in.dpatch
Files: 
 32c4e14419b30f4d84d9f235cf17dc3d 941 mail optional mozilla-thunderbird_1.0.7-1.dsc
 6db01051ce21d9faadd119a1b88383b7 32910701 mail optional mozilla-thunderbird_1.0.7.orig.tar.gz
 51585d964cec776249a0ad9208204719 105680 mail optional mozilla-thunderbird_1.0.7-1.diff.gz
 18e2b1c3746aa214618831b367963341 10621728 mail optional mozilla-thunderbird_1.0.7-1_i386.deb
 9045bc5947313f0d881bc204764f82c6 28358 mail optional mozilla-thunderbird-offline_1.0.7-1_i386.deb
 2e05bf3a6bf6ede0886326a90fd849a4 140728 mail optional mozilla-thunderbird-inspector_1.0.7-1_i386.deb
 5753c48b945641bce02d35bf53a1b615 79694 mail optional mozilla-thunderbird-typeaheadfind_1.0.7-1_i386.deb
 e388af35a3d6676b7cdcf4f35f3a7ee6 3490378 mail optional mozilla-thunderbird-dev_1.0.7-1_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFDPnY8v8pLOKgkuT8RAud5AJsE6dPKgjbL17FZuOz2o2MRmrC+ywCgtI3w
qaq/YvaiuHXCKXkSbMz2uM4=
=T6XV
-----END PGP SIGNATURE-----


Accepted:
mozilla-thunderbird-dev_1.0.7-1_i386.deb
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird-dev_1.0.7-1_i386.deb
mozilla-thunderbird-inspector_1.0.7-1_i386.deb
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird-inspector_1.0.7-1_i386.deb
mozilla-thunderbird-offline_1.0.7-1_i386.deb
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird-offline_1.0.7-1_i386.deb
mozilla-thunderbird-typeaheadfind_1.0.7-1_i386.deb
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird-typeaheadfind_1.0.7-1_i386.deb
mozilla-thunderbird_1.0.7-1.diff.gz
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.7-1.diff.gz
mozilla-thunderbird_1.0.7-1.dsc
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.7-1.dsc
mozilla-thunderbird_1.0.7-1_i386.deb
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.7-1_i386.deb
mozilla-thunderbird_1.0.7.orig.tar.gz
  to pool/main/m/mozilla-thunderbird/mozilla-thunderbird_1.0.7.orig.tar.gz



Reply to: