Bug#644147: pu: package libdigest-perl/1.16-1+squeeze1

2011-10-11 Thread Adam D. Barratt
tag 644149 + pending tag 644147 + pending thanks On Tue, 2011-10-04 at 21:33 +0100, Adam D. Barratt wrote: > On Mon, 2011-10-03 at 12:29 +0200, Ansgar Burchardt wrote: > > the last upstream release of libdigest-perl (1.17) contains a fix for an > > unsafe use of eval[1]: the argument to Digest->ne

Bug#644147: pu: package libdigest-perl/1.16-1+squeeze1

2011-10-04 Thread Adam D. Barratt
tag 644149 + lenny confirmed tag 644147 + squeeze confirmed thanks On Mon, 2011-10-03 at 12:29 +0200, Ansgar Burchardt wrote: > the last upstream release of libdigest-perl (1.17) contains a fix for an > unsafe use of eval[1]: the argument to Digest->new($algo) was not > checked properly allowing c

Bug#644147: pu: package libdigest-perl/1.16-1+squeeze1

2011-10-03 Thread Ansgar Burchardt
Package: release.debian.org Severity: normal User: release.debian@packages.debian.org Usertags: pu Hi, the last upstream release of libdigest-perl (1.17) contains a fix for an unsafe use of eval[1]: the argument to Digest->new($algo) was not checked properly allowing code injection (in case t