Julien Cristau <[EMAIL PROTECTED]> writes: > elinks (0.11.1-1.4) unstable; urgency=high > . > * Non-maintainer security upload. > * Don't look for gettext message catalogs in ../po/ (closes: #417789). > Thanks, Arnaud Giersch! Reference: CVE-2007-2027.
A less paranoid fix has been checked in to elinks-0.11 and elinks-0.12 in Git. If you want to review it, now is the time. http://pasky.or.cz/gitweb.cgi?p=elinks.git;a=commit;h=928f364ba2803f98d71775dc03b694d6403c0754 http://pasky.or.cz/gitweb.cgi?p=elinks.git;a=commit;h=110c564af3c12f40743b7e1adcfd3a034d73b601
pgpSATJgKas92.pgp
Description: PGP signature