Format: 1.8 Date: Fri, 18 Jun 2010 08:20:03 -0400 Source: fastjar Binary: fastjar Architecture: armel Version: 2:0.98-1ubuntu0.10.04.1 Distribution: lucid Urgency: low Maintainer: Ubuntu/armel Build Daemon Changed-By: Marc Deslauriers Description: fastjar - Jar creation utility Launchpad-Bugs-Fixed: 540575 Changes: fastjar (2:0.98-1ubuntu0.10.04.1) lucid-security; urgency=low . * SECURITY UPDATE: directory traversal vulnerabilities (LP: #540575) - jartool.c (extract_jar): Fix up checks for traversal to parent directories, disallow absolute paths, make the code slightly more efficient. (patch from trunk) - CVE-2010-0831 * Additional patches from the trunk: - jartool.c (read_entries): Properly zero-terminate filename. - jartool.c (add_file_to_jar): Fix write return value check. Checksums-Sha1: 51b268634d51adc78d8d0e8f15437855b7ae3247 47650 fastjar_0.98-1ubuntu0.10.04.1_armel.deb Checksums-Sha256: 95965b95efbec3c788a79484f34f958494ca6597b0e59f84cb7cbacc3f0c9cce 47650 fastjar_0.98-1ubuntu0.10.04.1_armel.deb Files: 0fb3e7a8b86de2115c95fa62d39212ea 47650 misc extra fastjar_0.98-1ubuntu0.10.04.1_armel.deb Original-Maintainer: Matthias Klose