Uploaded cgiemail 1.6-9 (sparc) to ftp-master
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Sun, 13 Jan 2002 21:43:54 -0500
Source: cgiemail
Binary: cgiemail
Architecture: sparc
Version: 1.6-9
Distribution: unstable
Urgency: high
Maintainer: Debian/sparc Build Daemon <buildd@sparc.debian.org>
Changed-By: Thomas Smith <tgs@debian.org>
Description:
cgiemail - CGI Form-to-Mail converter
Changes:
cgiemail (1.6-9) unstable; urgency=high
.
* Fixed one of two major security holes. I am going to orphan the package
now, because I am not up to fixing the other one. Fixed one is line 185
of cgilibcso.c, and I am not sure if I got it quite right (it should be
safe though). Unfixed one is that attackers can read your cgi scripts,
which may contain sensitive data.
* This is all Bug#129104, but it does not close it as there is the other
hole.
Files:
35421686bbf07e9af7e2b2fec47ffa0b 31740 web optional cgiemail_1.6-9_sparc.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: Processed by Mailcrypt 3.5.6 <http://mailcrypt.sourceforge.net/>
iEYEARECAAYFAjxEQ2EACgkQgD/uEicUG7CqEgCfR4E/RrVqBCc+JJlVvR6P7Kto
jaIAn2+3diNGpeyjf45Fgk1ZVktdb4LO
=DmYo
-----END PGP SIGNATURE-----
Reply to: