[ubuntu/karmic] znc 0.074-1 (Accepted)

Ubuntu Installer archive at ubuntu.com
Sat Aug 15 18:16:49 BST 2009


znc (0.074-1) unstable; urgency=high

  * New upstream release.
    - Bump urgency to high. This release fixes an high-impact directory
      traversal buf, where unpriviliged users can save about DCC SEND files on
      the server with the rights of the znc process. The attacker could also
      use the exploit to get a shell on the server.
      Closes: #537977
    - Use c-ares for DNS resolving, add libc-ares-dev and pkg-config as
      build-dependency.
  * Merge 0.058-2+lenny2, 0.058-2+lenny3, 0.070-1~bpo40+1 and 0.070-1~bpo50+1
    changelog.
  * Bump Standards-Version to 3.8.2 (no changes needed).

Date: Sat,  15 Aug 2009 18:10:51 +0100
Changed-By: Krzysztof Klimonda <kklimonda at syntaxhighlighted.com>
Maintainer: Patrick Matthäi <pmatthaei at debian.org>
Origin: Debian/testing
https://launchpad.net/ubuntu/karmic/+source/znc/0.074-1
-------------- next part --------------
Origin: Debian/testing
Format: 1.7
Date: Sat,  15 Aug 2009 18:10:51 +0100
Source: znc
Binary: znc, znc-dbg, znc-dev, znc-perl, znc-webadmin
Architecture: source
Version: 0.074-1
Distribution: karmic
Urgency: high
Maintainer: Patrick Matthäi <pmatthaei at debian.org>
Changed-By: Krzysztof Klimonda <kklimonda at syntaxhighlighted.com>
Description: 
 znc        - an advanced IRC bouncer
Closes: 537977
Changes: 
 znc (0.074-1) unstable; urgency=high
 .
   * New upstream release.
     - Bump urgency to high. This release fixes an high-impact directory
       traversal buf, where unpriviliged users can save about DCC SEND files on
       the server with the rights of the znc process. The attacker could also
       use the exploit to get a shell on the server.
       Closes: #537977
     - Use c-ares for DNS resolving, add libc-ares-dev and pkg-config as
       build-dependency.
   * Merge 0.058-2+lenny2, 0.058-2+lenny3, 0.070-1~bpo40+1 and 0.070-1~bpo50+1
     changelog.
   * Bump Standards-Version to 3.8.2 (no changes needed).
Files: 
 990a443d2c2dd859be81894e90632c50 8632 net optional znc_0.074-1.diff.gz
 378187acd114769f8f97ef2d4b19da25 401554 net optional znc_0.074.orig.tar.gz
 07f231b6eca8c40d841e0d2cf1d53f2d 1047 net optional znc_0.074-1.dsc


More information about the Karmic-changes mailing list