Package: libchm-bin
Version: 0.37-3
Severity: important
Tags: security
Justification: security

chmlib-bin in sarge may need an update too. 

Details from freshmeat:

http://freshmeat.net/projects/chmlib/?branch_id=22229&release_id=229733


> Release focus: Minor bugfixes
> Changes: This release bugs that were preventing a few files from being
> readable. Security updates were made to the "extract_chmLib" example
> program. automake is now used. Miscellaneous other patches were
> incorporated. 

Details from the website:

http://morte.jedrea.com/~jedwin/projects/chmlib/

> Third, it includes a quick fix for a security hazard Sven Tantau
> located in one of the example programs (extract_chmLib would extract
> filenames containing ".." as a path element, allowing overwriting of
> any file to which the user has write access).

-- System Information:
Debian Release: unstable
  APT prefers unstable
  APT policy: (500, 'unstable'), (1, 'experimental')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.16-2-k7
Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8)

Versions of packages libchm-bin depends on:
ii  libc6                         2.3.6-15   GNU C Library: Shared libraries
ii  libchm1                       0.37-3     library for dealing with Microsoft

-- 
bye,
pabs

http://wiki.debian.org/PaulWise

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to