[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Uploaded cgiemail 1.6-9 (sparc) to ftp-master



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Sun, 13 Jan 2002 21:43:54 -0500
Source: cgiemail
Binary: cgiemail
Architecture: sparc
Version: 1.6-9
Distribution: unstable
Urgency: high
Maintainer: Debian/sparc Build Daemon <buildd@sparc.debian.org>
Changed-By: Thomas Smith <tgs@debian.org>
Description: 
 cgiemail   - CGI Form-to-Mail converter
Changes: 
 cgiemail (1.6-9) unstable; urgency=high
 .
   * Fixed one of two major security holes.  I am going to orphan the package
     now, because I am not up to fixing the other one.  Fixed one is line 185
     of cgilibcso.c, and I am not sure if I got it quite right (it should be
     safe though).  Unfixed one is that attackers can read your cgi scripts,
     which may contain sensitive data.
   * This is all Bug#129104, but it does not close it as there is the other
     hole.
Files: 
 35421686bbf07e9af7e2b2fec47ffa0b 31740 web optional cgiemail_1.6-9_sparc.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: Processed by Mailcrypt 3.5.6 <http://mailcrypt.sourceforge.net/>

iEYEARECAAYFAjxEQ2EACgkQgD/uEicUG7CqEgCfR4E/RrVqBCc+JJlVvR6P7Kto
jaIAn2+3diNGpeyjf45Fgk1ZVktdb4LO
=DmYo
-----END PGP SIGNATURE-----



Reply to: