Format: 1.7 Date: Wed, 09 Mar 2011 16:10:18 +0800 Source: dtc Binary: dtc-common dtc dtc-postfix-courier dtc-toaster Architecture: all i386_translations Version: 0.25.3-2ubuntu1.1 Distribution: hardy Urgency: low Maintainer: Ubuntu/i386 Build Daemon Changed-By: Thomas Goirand Description: dtc - web control panel for admin and accounting hosting services dtc-common - web control panel for admin and accounting hosting services (comm dtc-postfix-courier - web control panel for admin and accounting hosting services (more dtc-toaster - web control panel for admin and accounting hosting services (meta Closes: 614302 Changes: dtc (0.25.3-2ubuntu1.1) hardy-security; urgency=low . * SECURITY UPDATE: - CVE-2011-0434: SQL injection in bw_per_month.php graph - CVE-2011-0435: Bandwidth information disclosure in bw_per_month.php graph. - CVE-2011-0436: Passwords being emailed to the admin in clear text (Closes: #614302). - CVE-2011-0437: Removed dangerous SQL old unused code for ssh accounts management. Files: 1e933889f4507fc5e4d9870a5c5dbb4c 9927322 admin extra dtc-common_0.25.3-2ubuntu1.1_all.deb a2c30a4a6d8fbbfbe8f7d8025308bd23 38458 admin extra dtc_0.25.3-2ubuntu1.1_all.deb aacb14a5a19c215927425ff06cb42166 38360 admin extra dtc-postfix-courier_0.25.3-2ubuntu1.1_all.deb c07f394b5601cd7cb0f3d2482c0d4a7d 20976 admin extra dtc-toaster_0.25.3-2ubuntu1.1_all.deb 10b47f3584b1ea5d90acf3e5f637f92c 36536 raw-translations - dtc_0.25.3-2ubuntu1.1_i386_translations.tar.gz Original-Maintainer: Thomas Goirand