-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 02 Mar 2011 18:22:20 +0100 Source: icedove Binary: icedove icedove-dev icedove-dbg Architecture: kfreebsd-amd64 Version: 3.0.11-1+squeeze1 Distribution: squeeze-security Urgency: high Maintainer: kfreebsd-amd64 Build Daemon (fano) Changed-By: Christoph Goehre Description: icedove - mail/news client with RSS and integrated spam filter support icedove-dbg - Debug Symbols for Icedove icedove-dev - Development files for Icedove Changes: icedove (3.0.11-1+squeeze1) stable-security; urgency=high . * [2bf1366] backported patches from xulrunner fixes mfsa2011-{01-08,10} - MFSA 2011-01 aka CVE-2011-0053: Miscellaneous memory safety hazards (rv:1.9.2.14/ 1.9.1.17) - MFSA 2011-02 aka CVE-2011-0051: Recursive eval call causes confirm dialogs to evaluate to true - MFSA 2011-03 aka CVE-2011-0055: Use-after-free error in JSON.stringify - MFSA 2011-04 aka CVE-2011-0054: Buffer overflow in JavaScript upvarMap - MFSA 2011-05 aka CVE-2011-0056: Buffer overflow in JavaScript atom map - MFSA 2011-06 aka CVE-2011-0057: Use-after-free error using Web Workers - MFSA 2011-07 aka CVE-2011-0058: Memory corruption during text run construction (Windows) - MFSA 2011-08 aka CVE-2010-1585: ParanoidFragmentSink allows javascript: URLs in chrome documents - MFSA 2011-10 aka CVE-2011-0059: CSRF risk with plugins and 307 redirects Checksums-Sha1: 945cfc2028c06bd1db2fadba7486a6b880296c4a 12629880 icedove_3.0.11-1+squeeze1_kfreebsd-amd64.deb ee6eb4a30921bbd47667f981c22e289c075017fe 5248162 icedove-dev_3.0.11-1+squeeze1_kfreebsd-amd64.deb 0887e21eac1540c5e10eb5616dc92c003ed7b6d7 68422880 icedove-dbg_3.0.11-1+squeeze1_kfreebsd-amd64.deb Checksums-Sha256: 3859f072fdae2ddee9a8aa19147b1a223e253cb88f3c289186a77362b46f13de 12629880 icedove_3.0.11-1+squeeze1_kfreebsd-amd64.deb bf1b3b58ffe3bc382a5187069d503d0bd2261d9414b3a309e0ad649e41d32fdd 5248162 icedove-dev_3.0.11-1+squeeze1_kfreebsd-amd64.deb 00361e7ad3cf2447c8f8a83b5bfff2168868426af0e09a7071543912b27e6f94 68422880 icedove-dbg_3.0.11-1+squeeze1_kfreebsd-amd64.deb Files: 37817e41941e354cdaa96192d94f1f88 12629880 mail optional icedove_3.0.11-1+squeeze1_kfreebsd-amd64.deb 5b8b2cdfe049845f45a66a5a7814a272 5248162 mail optional icedove-dev_3.0.11-1+squeeze1_kfreebsd-amd64.deb 1f5bcdd96fe3b6214d2ca03368ba6c1b 68422880 debug extra icedove-dbg_3.0.11-1+squeeze1_kfreebsd-amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAk11cosACgkQXm3vHE4uylpUkgCgwXadq0m5cAmmp17vTOIdI4QN qlwAoL1opoooE3XFPwyyuARl+Dv2gEyc =g/b2 -----END PGP SIGNATURE-----