Comment 1 for bug 309837

Revision history for this message
Manny Vindiola (serialorder) wrote :

package ready for merge
package builds fine in pbuilder i386
please note this fixes a security vulnerability

courier-authlib (0.61.0-1+lenny1ubuntu1) jaunty; urgency=low

  * Merge from debian unstable (LP: #309837), remaining changes:
     -debian/courier-authdaemon.init: recreate /var/run/courier/authdaemon.

 -- Manny Vindiola <email address hidden> Fri, 19 Dec 2008 16:40:29 -0500

courier-authlib (0.61.0-1+lenny1) testing-security; urgency=high

  * Non-maintainer upload by the security team
  * Fix several sql-injection vulnerabilities in authpgsqllib.c by using
    PQsetClientEncoding() and PQescapeStringConn()
    Fixes: CVE-2008-2380

 -- Steffen Joeris <email address hidden> Mon, 08 Dec 2008 13:48:12 +0000