-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 02 Mar 2011 18:22:20 +0100 Source: icedove Binary: icedove icedove-dev icedove-dbg Architecture: kfreebsd-i386 Version: 3.0.11-1+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: kfreebsd-i386 Build Daemon (field) Changed-By: Christoph Goehre Description: icedove - mail/news client with RSS and integrated spam filter support icedove-dbg - Debug Symbols for Icedove icedove-dev - Development files for Icedove Changes: icedove (3.0.11-1+squeeze1) stable-security; urgency=high . * [2bf1366] backported patches from xulrunner fixes mfsa2011-{01-08,10} - MFSA 2011-01 aka CVE-2011-0053: Miscellaneous memory safety hazards (rv:1.9.2.14/ 1.9.1.17) - MFSA 2011-02 aka CVE-2011-0051: Recursive eval call causes confirm dialogs to evaluate to true - MFSA 2011-03 aka CVE-2011-0055: Use-after-free error in JSON.stringify - MFSA 2011-04 aka CVE-2011-0054: Buffer overflow in JavaScript upvarMap - MFSA 2011-05 aka CVE-2011-0056: Buffer overflow in JavaScript atom map - MFSA 2011-06 aka CVE-2011-0057: Use-after-free error using Web Workers - MFSA 2011-07 aka CVE-2011-0058: Memory corruption during text run construction (Windows) - MFSA 2011-08 aka CVE-2010-1585: ParanoidFragmentSink allows javascript: URLs in chrome documents - MFSA 2011-10 aka CVE-2011-0059: CSRF risk with plugins and 307 redirects Checksums-Sha1: 34e1daecc3457c7ecec0e44e496ba1b8561dd17b 11255624 icedove_3.0.11-1+squeeze1_kfreebsd-i386.deb f24bc984587ff9fb939a3972a182e1e42f2c88fe 5309082 icedove-dev_3.0.11-1+squeeze1_kfreebsd-i386.deb 8426143bad74fde7a4063ec280d8710cd025872e 69074298 icedove-dbg_3.0.11-1+squeeze1_kfreebsd-i386.deb Checksums-Sha256: 3ca7193adf54cdc651157b13bd30b75968367c2798b9ec7352875473f9757603 11255624 icedove_3.0.11-1+squeeze1_kfreebsd-i386.deb d3915dd49c33e04fe94c92f90ccebaf10abafc0d2a14ae66eb7ae30c5076bfcb 5309082 icedove-dev_3.0.11-1+squeeze1_kfreebsd-i386.deb 068fa24c9a5a7f39260ccbc5bbdc90a91273fe98e1784dba923598ebc056e973 69074298 icedove-dbg_3.0.11-1+squeeze1_kfreebsd-i386.deb Files: a047d78fb23da4d67b89fc27d09aac87 11255624 mail optional icedove_3.0.11-1+squeeze1_kfreebsd-i386.deb 1e9eab86290a76f24b752061ee58a840 5309082 mail optional icedove-dev_3.0.11-1+squeeze1_kfreebsd-i386.deb 99e7c7b6bc11d3ccef9d85eaa98f78c8 69074298 debug extra icedove-dbg_3.0.11-1+squeeze1_kfreebsd-i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk11ci4ACgkQXm3vHE4uylpMtQCgwit5mI+J8DTfXtX+T4OcOElW zdcAn3cRInmUfkad8z14KzRtHR9cz0hK =355i -----END PGP SIGNATURE-----