[ubuntu/hardy-security] newsbeuter_0.7-1ubuntu0.1_amd64_translations.tar.gz, newsbeuter, newsbeuter_0.7-1ubuntu0.1_i386_translations.tar.gz, newsbeuter_0.7-1ubuntu0.1_sparc_translations.tar.gz, newsbeuter_0.7-1ubuntu0.1_hppa_translations.tar.gz, newsbeuter_0.7-1ubuntu0.1_powerpc_translations.tar.gz, newsbeuter_0.7-1ubuntu0.1_lpia_translations.tar.gz, newsbeuter_0.7-1ubuntu0.1_ia64_translations.tar.gz 0.7-1ubuntu0.1 (Accepted)

Ubuntu Installer archive at ubuntu.com
Tue Sep 30 16:55:11 BST 2008


newsbeuter (0.7-1ubuntu0.1) hardy-security; urgency=low

  * SECURITY UPDATE: arbitrary code execution via crafted item URLS.
    - src/view.cpp: Escape single quotes in item URLs. Fixes arbitrary
      code execution. Patch from Debian.
    - References:
      + CVE-2008-3907

Date: Sat, 27 Sep 2008 11:01:24 +1000
Changed-By: William Grant <wgrant at ubuntu.com>
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
https://launchpad.net/ubuntu/hardy/+source/newsbeuter/0.7-1ubuntu0.1
-------------- next part --------------
Format: 1.7
Date: Sat, 27 Sep 2008 11:01:24 +1000
Source: newsbeuter
Binary: newsbeuter
Architecture: amd64_translations amd64 hppa_translations hppa i386_translations i386 ia64_translations ia64 lpia_translations lpia powerpc_translations powerpc source sparc_translations sparc
Version: 0.7-1ubuntu0.1
Distribution: hardy-security
Urgency: low
Maintainer: Ubuntu MOTU Developers <ubuntu-motu at lists.ubuntu.com>
Changed-By: William Grant <wgrant at ubuntu.com>
Description:
 newsbeuter - text mode rss feed reader with podcast support
Changes:
 newsbeuter (0.7-1ubuntu0.1) hardy-security; urgency=low
 .
   * SECURITY UPDATE: arbitrary code execution via crafted item URLS.
     - src/view.cpp: Escape single quotes in item URLs. Fixes arbitrary
       code execution. Patch from Debian.
     - References:
       + CVE-2008-3907
Files:
 2bb426bff19e83da14b7d9561e7399b6 27163 raw-translations - newsbeuter_0.7-1ubuntu0.1_amd64_translations.tar.gz
 dc680b412fbf17e13aef922cc379385b 364214 net optional newsbeuter_0.7-1ubuntu0.1_amd64.deb
 0a6256c890eced26345207002e44d3a7 27167 raw-translations - newsbeuter_0.7-1ubuntu0.1_hppa_translations.tar.gz
 5042679a1c7a9cebc24b765d26d13418 444110 net optional newsbeuter_0.7-1ubuntu0.1_hppa.deb
 be6f38246f59bfeefb506b879eb1a3a1 27165 raw-translations - newsbeuter_0.7-1ubuntu0.1_i386_translations.tar.gz
 508433fcf20eaaa3df63fd5bb07f9557 339954 net optional newsbeuter_0.7-1ubuntu0.1_i386.deb
 9f6c4068c8913569cbe86d31b7963a63 27170 raw-translations - newsbeuter_0.7-1ubuntu0.1_ia64_translations.tar.gz
 824bc20f9fb42150552f82295adb5374 491970 net optional newsbeuter_0.7-1ubuntu0.1_ia64.deb
 3dbcc7e3c527111519490b92d00d1fda 27166 raw-translations - newsbeuter_0.7-1ubuntu0.1_lpia_translations.tar.gz
 e13ca3564a16476b9e24a50f2f15c6e9 347580 net optional newsbeuter_0.7-1ubuntu0.1_lpia.deb
 c6415420e39904a86723ff25882f908d 27165 raw-translations - newsbeuter_0.7-1ubuntu0.1_powerpc_translations.tar.gz
 c10b00ef7a7c3a1977d26d3719ec3314 354660 net optional newsbeuter_0.7-1ubuntu0.1_powerpc.deb
 c53936b99b1e2631bca13aec8d3145ac 762 net optional newsbeuter_0.7-1ubuntu0.1.dsc
 f93e15e1237af16dc40a76963b1c7752 3371 net optional newsbeuter_0.7-1ubuntu0.1.diff.gz
 836ff9556cde5f942f0b0b19a4730d49 27164 raw-translations - newsbeuter_0.7-1ubuntu0.1_sparc_translations.tar.gz
 ade2f7d448b20bda24a3dab5bac32d9e 391896 net optional newsbeuter_0.7-1ubuntu0.1_sparc.deb
Original-Maintainer: Nico Golde <nion at debian.org>


More information about the Hardy-changes mailing list