lp:ubuntu/dapper-security/mutt

Created by James Westby and last modified
Get this branch:
bzr branch lp:ubuntu/dapper-security/mutt
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Development

Recent revisions

6. By Kees Cook

* SECURITY UPDATE: local arbitrary file overwrite when using temporary
  directories over NFS.
* Add debian/patches/patch-git-tempfile-race.patch from upstream.
* References
  http://dev.mutt.org/cgi-bin/gitweb.cgi?p=mutt/.git;a=commit;h=f6404a53a2b7a9a3b36d89def185e1192abdd108
  CVE-2006-5297 CVE-2006-5298

5. By Martin Pitt

* SECURITY UPDATE: Remote arbitrary code execution with crafted long
  namespace from malicous IMAP server.
* Add debian/patches/patch-git-browse_get_namespace-overflow.patch:
  - Limit length of namespace received from IMAP server to avoid buffer
    overflow.
  - Patch taken from upstream git:
    http://dev.mutt.org/cgi-bin/gitweb.cgi?p=mutt/.git;a=commit;
      h=dc0272b749f0e2b102973b7ac43dbd3908507540
* References:
  http://secunia.com/advisories/20810

4. By Martin Pitt

No-change upload to build against gnutls12.

3. By Martin Pitt

* Synchronize to Debian.
* Only Ubuntu change left: Depend on postfix instead of exim4 in
  debian/control.

2. By Marco d'Itri

Renamed patch-1.5.5.1.tt.compat-fix to patch-1.5.5.1.tt.compat.2-fix.
(Closes: #253048)

1. By Marco d'Itri

Import upstream version 1.5.6

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/mutt
This branch contains Public information 
Everyone can see this information.

Subscribers