-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Tue, 04 Oct 2011 20:44:21 +0200 Source: icedove Binary: icedove icedove-dev icedove-dbg Architecture: kfreebsd-i386 Version: 3.0.11-1+squeeze5 Distribution: squeeze-security Urgency: high Maintainer: kfreebsd-i386 Build Daemon (field) Changed-By: Christoph Goehre Description: icedove - mail/news client with RSS and integrated spam filter support icedove-dbg - Debug Symbols for Icedove icedove-dev - Development files for Icedove Changes: icedove (3.0.11-1+squeeze5) stable-security; urgency=high . * [44577f9] backported patches from xulrunner fixes mfsa2011-{36-40} - MFSA 2011-36 aka CVE-2011-2995: Miscellaneous memory safety hazards (rv:7.0 / rv:1.9.2.23) - MFSA 2011-37 aka CVE-2011-2998: Integer underflow when using JavaScript RegExp - MFSA 2011-38 aka CVE-2011-2999: XSS via plugins and shadowed window.location object - MFSA 2011-39 aka CVE-2011-3000: Defense against multiple Location headers due to CRLF Injection - MFSA 2011-40 aka CVE-2011-2372, CVE-2011-3001: Code installation through holding down Enter Checksums-Sha1: 3f986d6cf053eca94e212990fdc4083205e9c7d5 11261434 icedove_3.0.11-1+squeeze5_kfreebsd-i386.deb fa7f375a77cb1e9c032a2167abc4c95f90304274 5311366 icedove-dev_3.0.11-1+squeeze5_kfreebsd-i386.deb b4b8fc9d4baf612e50229944ebf8ef82729b09be 69101124 icedove-dbg_3.0.11-1+squeeze5_kfreebsd-i386.deb Checksums-Sha256: f1336f4e7ae3d23d07145807ae44384fd620a6d3af8408c2c2c3a98fc851c679 11261434 icedove_3.0.11-1+squeeze5_kfreebsd-i386.deb d2e274d2381d5d943d7bc022134bb31b8790bcd2cb12557694e4fe5517f68580 5311366 icedove-dev_3.0.11-1+squeeze5_kfreebsd-i386.deb 0fc9f4934cf2c26f930f6b2a952558f233df660c39b2990cc88854d7df1a9274 69101124 icedove-dbg_3.0.11-1+squeeze5_kfreebsd-i386.deb Files: 79a2cae045c2d8b1eed289fd72c97c11 11261434 mail optional icedove_3.0.11-1+squeeze5_kfreebsd-i386.deb efb013217f75ce8d11f7896aed299b91 5311366 mail optional icedove-dev_3.0.11-1+squeeze5_kfreebsd-i386.deb abe0d8f3ae567b453b464a2df718056f 69101124 debug extra icedove-dbg_3.0.11-1+squeeze5_kfreebsd-i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/kFreeBSD) iQIcBAEBAgAGBQJOi4W3AAoJEEL2rX1rgBbu2k4P/2LMjESV63mUzpErEPwzqR6Q MtsnDSsOm3Yx2Qeap0kpGA8fcV1xnCT1vbeXrnGQQStbW35m7MpoYSZvL089bkA1 eaE1XlsWAURcH6DJJohFesWGtYlbuFKJRVt2yJ8C0XboQapWKRWR7uYnNDyTbHeu /dyZsnld5l88HX+KZLP5otGxRmBTISzrlPUOZtIJbG+pxbznjMoWtthRrtUPSAsM eV7jpERT2cN3uMewEufbfOYbao07EY6nBBIywS7s0b9+jUrctaiKRhzVhkMfcgQQ 511o7+nZvsT1LckK/Y10s2Fc44haPx9hFemhRHxwcf/5udvluE0K2LP47852KH+h FMhs19QBSlFoUrcdShiyjc5+vmZ6ZC96Xb2fe61ZDbD4YjFlUYfMZ3th4SkP1DGP igOIg/rRY+ZwwlbQLGcl6gOYhQnbw58k8YD1xBNeTnCtl5vyuq0fUn0MHXGCEBJl 6ifngFQ76CwMeylKgrsodnBbU4MEwMJ0tok+bfWDVMjl2xGJMFqxmf9kUGrhopzC Qfe5IUNucGLZ3QhnrqoEmHPyDue4FC9kkNy+e5yvS5LmURtF0Xj5Pog/tEPDwXp0 xgccrtaIucjmAViLb7wEW5GVeKJrFYK+n+vxJC0sZhzU4PTLtc4/zLp9/pxnQJBZ YNgdNVKxaKnBZosIF9NS =gZKK -----END PGP SIGNATURE-----