-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 11 Mar 2007 10:45:03 -0500 Source: ktorrent Binary: ktorrent Architecture: powerpc_translations powerpc Version: 1.2-0ubuntu5.1 Distribution: dapper-security Urgency: low Maintainer: Ubuntu/powerpc Build Daemon Changed-By: Richard A. Johnson Description: ktorrent - BitTorrent client for KDE Changes: ktorrent (1.2-0ubuntu5.1) dapper-security; urgency=low . * SECURITY UPDATE: allows .. in file name which could cause the user to overwrite files (if ran as root, system files). DoS or heap corruption possible if idx is to small (negative) or to large. * Add 'debian/patches/kubuntu_02_security_fix.diff': backported upstream fix * References http://websvn.kde.org/?view=rev&revision=640661 CVE-2007-1384 CVE-2007-1385 Files: 59620e287be8fa5f39725c579516d580 790462 net optional ktorrent_1.2-0ubuntu5.1_powerpc.deb 4bf2b2fd9091aeec8129fb302680b6fc 398091 raw-translations - ktorrent_1.2-0ubuntu5.1_powerpc_translations.tar.gz Original-Maintainer: Joel Johnson -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFF9drj0N0xjzyQZEIRAmpyAJ4vdM95ULBj1mDux2V21vAqBYebhgCgiwDN 3NlASLpsn5V3sQkcYY7F4jM= =0+zC -----END PGP SIGNATURE-----