Bug#339077: rar: Two security problems fixed in 3.51

2006-01-15 Thread Bastian Kleineidam
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hi, the changelog you are quoting is that of WinRAR, not rar for Linux. You can see that for example here: http://www.rarlab.com/rarnew.htm The Linux version 3.51 from http://www.rarsoft.com/rar/rarlinux-3.5.1.tar.gz has this changelog entry: Version

Bug#339077: rar: Two security problems fixed in 3.51

2005-11-14 Thread Moritz Muehlenhoff
Package: rar Severity: grave Tags: security Justification: user security hole RAR 3.51 fixes two unspecified security problems: | fixed two vulnerabilities, which could be exploited with | specially crafted ACE and UUE/XXE archives; Due to the non-free nature of rar I'm not sure whether rar 3.30