+---------------------------------+
| Distribution: Debian | ----------------------------//
+---------------------------------+
* Debian: New squirrelmail package fixes several vulnerabilities
1st, February, 2005
Upstream developers noticed that an unsanitised variable could
lead to cross site scripting.
http://www.linuxsecurity.com/content/view/118141
* Debian: New prozilla packages fix arbitrary code execution
1st, February, 2005
Several buffer overflows have been discovered in prozilla, a
multi-threaded download accelerator which could be exploited by a
remote attacker to execute arbitrary code on the victim's machine.
An exploit for prozilla is already in the wild.
http://www.linuxsecurity.com/content/view/118148
* Debian: New cpio packages fix insecure file permissions
2nd, February, 2005
http://www.linuxsecurity.com/content/view/118163