-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sun, 18 Dec 2011 20:44:15 +0100 Source: libpar-packer-perl Binary: libpar-packer-perl Architecture: ia64 Version: 1.006-1+squeeze1 Distribution: squeeze Urgency: low Maintainer: ia64 Build Daemon (caballero) Changed-By: Salvatore Bonaccorso Description: libpar-packer-perl - utility for creating PAR archives and stand-alone executables Closes: 650706 Changes: libpar-packer-perl (1.006-1+squeeze1) stable; urgency=low . * Team upload. * Add create-safe-temporary-directories.patch patch. Fixes CVE-2011-4114: PAR packed files are extracted to unsafe and predictable temporary directories. (Closes: #650706) * Bump (Build-)Depends on libpar-perl. Bump the dependencies to libpar-perl (>= 1.000-1+squeeze1) as this version contains the other half of the fix for CVE-2011-4114. * Add run_all_tests_using_a_nonce_PAR_TMPDIR.patch. Run all tests using a nonce PAR_TMPDIR (a leftover /tmp/par-USER directory from previous builds may now be considered "unsafe") Checksums-Sha1: b1e47de54be3534cabe60d77eeb478c453c081cb 2896766 libpar-packer-perl_1.006-1+squeeze1_ia64.deb Checksums-Sha256: f77aaef69dfdf6443fce52a2dfbe7d475b8776b748a7e78936142f1c4fc28611 2896766 libpar-packer-perl_1.006-1+squeeze1_ia64.deb Files: 75a4cea0aaad6f38033cfb4992500b8a 2896766 perl optional libpar-packer-perl_1.006-1+squeeze1_ia64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iD8DBQFO+3pyzN/kmwoKyScRAiP/AJ9mypJyTMUcEREhfg1iyTjG711VcACfVQeF ATeCS75KQgiQK5maFh5Mj8Q= =l15s -----END PGP SIGNATURE-----