-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 28 Aug 2007 09:45:12 -0700 Source: tar Binary: tar Architecture: ia64_translations ia64 Version: 1.15.1-2ubuntu2.2 Distribution: dapper-security Urgency: low Maintainer: Ubuntu/ia64 Build Daemon Changed-By: Kees Cook Description: tar - GNU tar Changes: tar (1.15.1-2ubuntu2.2) dapper-security; urgency=low . * SECURITY UPDATE: directory traversal with malicious tar files. * src/names.c: adjust dot dot checking, patched inline. * References CVE-2007-4131 Files: 589733b1fc00ae5d806dbe0a7d1ee4b3 595586 base required tar_1.15.1-2ubuntu2.2_ia64.deb 6be2a04b06895bd89c67666db27115d6 745618 raw-translations - tar_1.15.1-2ubuntu2.2_ia64_translations.tar.gz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFG1GC30N0xjzyQZEIRAn6ZAJ9pth28B8EvZumRN93lj5R2ddfd9gCfbNm1 PKxGJf4MgRzHPYnDg95Eiok= =ILcQ -----END PGP SIGNATURE-----