-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 11 Mar 2007 10:45:03 -0500 Source: ktorrent Binary: ktorrent Architecture: i386_translations i386 Version: 1.2-0ubuntu5.1 Distribution: dapper-security Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Richard A. Johnson Description: ktorrent - BitTorrent client for KDE Changes: ktorrent (1.2-0ubuntu5.1) dapper-security; urgency=low . * SECURITY UPDATE: allows .. in file name which could cause the user to overwrite files (if ran as root, system files). DoS or heap corruption possible if idx is to small (negative) or to large. * Add 'debian/patches/kubuntu_02_security_fix.diff': backported upstream fix * References http://websvn.kde.org/?view=rev&revision=640661 CVE-2007-1384 CVE-2007-1385 Files: 9d33c77836ca569ac77e5cb1e43727e5 756604 net optional ktorrent_1.2-0ubuntu5.1_i386.deb 2b02b1fa26a8549ded806a2ddd828461 397836 raw-translations - ktorrent_1.2-0ubuntu5.1_i386_translations.tar.gz Original-Maintainer: Joel Johnson -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFF9dpY0N0xjzyQZEIRAiBMAJ95FUsr/eER4m9VJvhqiXv85j1GvgCeLwfM M2vOkbh+B5bi13YaYkZiKxo= =OSGr -----END PGP SIGNATURE-----