Bug#340583: CVE-2005-3745: Cross-Site-Scriping vulnerability

2005-11-24 Thread Moritz Muehlenhoff
Package: libstruts1.2-java Severity: grave Tags: security Justification: user security hole A Cross-Site-Scriping vulnerability has been found in the request handler for generating error messages. Please see http://www.securityfocus.com/archive/1/archive/1/417296/30/0/threaded for more details.

Bug#340582: CVE-2005-3747: Incorrect input validation of HTTP requests

2005-11-24 Thread Moritz Muehlenhoff
Package: jetty Version: 5.1.5rc1-6 Severity: grave Tags: security Justification: user security hole An input validation error when processing HTTP requests containing specially crafted characters can be exploited to display the source code of Java Server pages instead of an expected HTML

das etwas andere Fest

2005-11-24 Thread Weihnachten/Neujahr
Title: Weihnachten und Neujahr Gönnen Sie sich über Weihnachten und Neujahretwas ganz besonderes: einen Kurzurlaub mit Skilaufen in den Bergenund (und - nicht oder) Baden am Strand dazu eine tolle Sylvesterfeier hier anklicken eMail ___

concurrent-dfsg 1.3.4-1 MIGRATED to testing

2005-11-24 Thread Debian testing watch
FYI: The status of the concurrent-dfsg source package in Debian's testing distribution has changed. Previous version: (not in testing) Current version: 1.3.4-1 -- This email is automatically generated. See http://people.debian.org/~henning/trille/ for more information.