found 410580 1:3.5.2-0.1 thanks According to http://security-tracker.debian.net/tracker/CVE-2007-0855 unrar in sarge and etch is vulnerable As I understand, no updates by security team are done to nonfree packages. But could update put into point release?
-- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]