-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.6 Date: Thu, 1 Aug 2002 21:11:02 +0200 Source: mpack Binary: mpack Architecture: source i386 Version: 1.5-5potato2 Distribution: oldstable-security Urgency: high Maintainer: Martin Schulze Description: mpack - Tools for encoding/decoding MIME messages. Changes: mpack (1.5-5potato2) oldstable-security; urgency=high . * Fix buffer overflow in parsing of MIME headers. (1.5-5potato1) * Do not accept disposition filenames like "../a". Security impact is limited because only a single leading "../" was accepted. (reported by Herbert Xu) Files: 96670945b237c260638c859e38e8aaaa 527 mail standard mpack_1.5-5potato2.dsc 60abfda1db9175fdee0efe10d8bebf9b 3200 mail standard mpack_1.5-5potato2.diff.gz 77de4d66ac154790edcae66113b7a639 34576 mail standard mpack_1.5-5potato2_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQE9SYqCW5ql+IAeqTIRAi3zAJwM2cvIHe2GiXowZq66lbvUQszykQCfdi2t GtGznv5F/D1hXMzrBMQVrLk= =tw2n -----END PGP SIGNATURE-----