-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 28 Aug 2007 09:45:12 -0700 Source: tar Binary: tar Architecture: sparc_translations sparc Version: 1.15.1-2ubuntu2.2 Distribution: dapper-security Urgency: low Maintainer: Ubuntu/sparc Build Daemon Changed-By: Kees Cook Description: tar - GNU tar Changes: tar (1.15.1-2ubuntu2.2) dapper-security; urgency=low . * SECURITY UPDATE: directory traversal with malicious tar files. * src/names.c: adjust dot dot checking, patched inline. * References CVE-2007-4131 Files: f35f05eda6af9c7c71309b30c5b67ade 523738 base required tar_1.15.1-2ubuntu2.2_sparc.deb e2292e9c95ea208ccea7031e220c3aeb 745588 raw-translations - tar_1.15.1-2ubuntu2.2_sparc_translations.tar.gz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2.2 (GNU/Linux) iD8DBQFG1F8t0N0xjzyQZEIRAnGzAJ0TOPGa/cHt59y9iyG9ILL+6CUbIwCaAxsg WkzmN3m38Hc1g42Pr73EPzw= =ZcRN -----END PGP SIGNATURE-----