-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Sun, 11 Mar 2007 10:45:03 -0500 Source: ktorrent Binary: ktorrent Architecture: sparc_translations sparc Version: 1.2-0ubuntu5.1 Distribution: dapper-security Urgency: low Maintainer: Ubuntu/sparc Build Daemon Changed-By: Richard A. Johnson Description: ktorrent - BitTorrent client for KDE Changes: ktorrent (1.2-0ubuntu5.1) dapper-security; urgency=low . * SECURITY UPDATE: allows .. in file name which could cause the user to overwrite files (if ran as root, system files). DoS or heap corruption possible if idx is to small (negative) or to large. * Add 'debian/patches/kubuntu_02_security_fix.diff': backported upstream fix * References http://websvn.kde.org/?view=rev&revision=640661 CVE-2007-1384 CVE-2007-1385 Files: 53bcc7c1baf8bf5a6d2f21fd4677ab34 759414 net optional ktorrent_1.2-0ubuntu5.1_sparc.deb c5f12931ee5d6084046d8d21d2d359a1 398082 raw-translations - ktorrent_1.2-0ubuntu5.1_sparc_translations.tar.gz Original-Maintainer: Joel Johnson -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFF9dzl0N0xjzyQZEIRAs2HAJ0bmWqZ6kx9pT3VUoXsZPPWoIRVsACgkPj4 LWcqteDv6u6iEYgq1oLXIU8= =WAVV -----END PGP SIGNATURE-----