Hello,
wget 1.9.1-12 fixes symlink attack (CAN-2004-2014) (Debian bug#308622).
changelog:
wget (1.9.1-12) unstable; urgency=high
* reverted symlink patch from Adam
(closes: Bug#310318)
* applied backported patch from Hrvoje Niksic/upstream from wget 1.10
to fix symlink attack (CAN-2004-2014)
(closes: #308622)
* added missing CAN numbers to -11 changelog
(http://lists.debian.org/debian-release/2005/05/msg00385.html)
the first was a little broken NMU for CAN-2004-2014
the second is the fix
the third is just a changelog change
Please approve for sarge.
--
Noèl Köthe <noel debian.org
Attachment:
signature.asc
Description: This is a digitally signed message part