Accepted firehol 1.214-4 (source)

Martin Pitt martin.pitt at ubuntu.com
Wed Mar 30 07:00:03 CST 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Origin: Debian/unstable
Format: 1.7
Date: Wed,  30 Mar 2005 13:57:43 +0100
Source: firehol
Binary: firehol
Architecture: source
Version: 1.214-4
Distribution: hoary
Urgency: high
Maintainer: Alexander Wirt <formorer at debian.org>
Changed-By: Martin Pitt <martin.pitt at ubuntu.com>
Description: 
 firehol    - An easy to use but powerful iptables stateful firewall
Closes: 289211 290728 291041 291667 291680 293900
Changes: 
 firehol (1.214-4) unstable; urgency=low
 .
   * Fixed another securityhole until I have finished the next version 
     of the firehol package (sometime at the weekend).
     (Closes: #293900)
 .
 firehol (1.214-3) unstable; urgency=high
 .
   * firehol.sh, firehol-lib.sh: Removed -p parameters from calls to mkdir.
     This should properly fix the security problem in #291680. Also made
     sure that the temporary directory is not removed on exit if we did
     not create it (removing someone else's directories is rude, even
     if they might be trying to crack the system).
     Thanks to Lars Wirzenius for that patch.
     Note: This fixes the security hole mentioned in CAN-2005-0225
 .
 firehol (1.214-2) unstable; urgency=high
 .
   * Makes wget and curl check fail silently because the normal user
     will never need it. Added wget | curl to recommends.
     (Closes: #291041)
   * Allow additional argumentens for init script (Closes: #290728)
     Thanks to Peter Marschall for the patch
   * Fixed security bug in the tempdir creation (Closes: #291680)
     Thanks to Sam Couter for pointing to it
   * Fixed wrong named variable in the lan-gateway.conf example
     (Closes: #289211)
   * Added the possibility to wait for an interface if set in
     /etc/default/firehol. See README.Debian for more infos 
     (Closes: #291667) Thanks again to Sam Couter for the patch.
Files: 
 e59406718ef5aa4b2fce45757902d2a9 578 net optional firehol_1.214-4.dsc
 4dd14f5a0957b16333630c8875ad228c 4705 net optional firehol_1.214-4.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iQEVAwUBQkqiRwF4adwMEr3XAQLF3QgArYZfPm7r+Fr8RYNatQMm1C6FFcZIAvH2
VpC72CpbsMAl0iKtaDh6WesVzdXDzmBazXsRSaWgq7wWEqVZFnseT7i7CGf5PFmu
biSlV8anO/1+EZAP7/QFPSKLBZzJl3FthrUMJwNub4sNHLHYdGZZ8lRl+Y9yu+zj
S3Qw9OqsKcOgU8UbjQNjpJ3RC1qJ+KCbOY0vXPll/Xp7KgmWVB8mnQUxLUMO0VGC
QcpOb++wPywNXmaZC6pG0fX54mHcKNsowxLSpzJWDMChkG8HGHWJzKso0lscLltz
1XAkS9PltmqtN0WnADgbizdE97ocCONYO/3aFYGUvyAG/+/rnzfwAg==
=ZD6+
-----END PGP SIGNATURE-----


Accepted:
firehol_1.214-4.diff.gz
  to pool/universe/f/firehol/firehol_1.214-4.diff.gz
firehol_1.214-4.dsc
  to pool/universe/f/firehol/firehol_1.214-4.dsc




More information about the hoary-changes mailing list