+ Roundcube: Arbitrary code execution
+ A vulnerability in Roundcube could result in arbitrary code
+ execution, SQL injection, or reading of arbitrary files.
+
+ roundcube
+ February 11, 2014
+ February 11, 2014: 1
+ 488954
+ remote
+
+
+ 0.9.5
+ 0.8.7
+ 0.9.5
+
+
+
+ Roundcube is a browser-based multilingual IMAP client with an
+ application-like user interface.
+
+
+
+ A vulnerability in steps/utils/save_pref.inc allows remote attackers to
+ use the _session parameter to change configuration settings.
+
+
+
+ A remote attacker could possibly execute arbitrary code with the
+ privileges of the process, inject SQL code, or read arbitrary files.
+
+
+
+ There is no known workaround at this time.
+
+
+ All Roundcube 0.9 users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=mail-client/roundcube-0.9.5"
+
+
+ All Roundcube 0.8 users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=mail-client/roundcube-0.8.7"
+
+
+
+
+ CVE-2013-6172
+
+
+ pinkbyte
+
+
+ pinkbyte
+
+
diff --git a/metadata/glsa/timestamp.chk b/metadata/glsa/timestamp.chk
index 281dcfd2e293..87a6545b148e 100644
--- a/metadata/glsa/timestamp.chk
+++ b/metadata/glsa/timestamp.chk
@@ -1 +1 @@
-Tue, 11 Feb 2014 05:37:03 +0000
+Tue, 11 Feb 2014 11:37:04 +0000
diff --git a/metadata/md5-cache/app-admin/eselect-1.4 b/metadata/md5-cache/app-admin/eselect-1.4
index 8e74a69d5882..85ee8f8b082b 100644
--- a/metadata/md5-cache/app-admin/eselect-1.4
+++ b/metadata/md5-cache/app-admin/eselect-1.4
@@ -4,11 +4,11 @@ DESCRIPTION=Gentoo's multi-purpose configuration and management tool
EAPI=4
HOMEPAGE=http://wiki.gentoo.org/wiki/Project:Eselect
IUSE=doc emacs vim-syntax
-KEYWORDS=~alpha ~amd64 ~arm ~arm64 hppa ia64 ~m68k ~mips ~ppc ~ppc64 ~s390 ~sh ~sparc ~x86 ~ppc-aix ~amd64-fbsd ~sparc-fbsd ~x86-fbsd ~x64-freebsd ~x86-freebsd ~hppa-hpux ~ia64-hpux ~x86-interix ~amd64-linux ~arm-linux ~ia64-linux ~x86-linux ~ppc-macos ~x64-macos ~x86-macos ~m68k-mint ~sparc-solaris ~sparc64-solaris ~x64-solaris ~x86-solaris
+KEYWORDS=alpha ~amd64 ~arm ~arm64 hppa ia64 ~m68k ~mips ~ppc ~ppc64 ~s390 ~sh ~sparc ~x86 ~ppc-aix ~amd64-fbsd ~sparc-fbsd ~x86-fbsd ~x64-freebsd ~x86-freebsd ~hppa-hpux ~ia64-hpux ~x86-interix ~amd64-linux ~arm-linux ~ia64-linux ~x86-linux ~ppc-macos ~x64-macos ~x86-macos ~m68k-mint ~sparc-solaris ~sparc64-solaris ~x64-solaris ~x86-solaris
LICENSE=GPL-2+ || ( GPL-2+ CC-BY-SA-2.5 )
PDEPEND=emacs? ( app-emacs/eselect-mode ) vim-syntax? ( app-vim/eselect-syntax )
RDEPEND=!app-admin/eselect-news sys-apps/sed || ( sys-apps/coreutils sys-freebsd/freebsd-bin app-misc/realpath ) sys-apps/file sys-libs/ncurses
SLOT=0
SRC_URI=http://dev.gentoo.org/~ulm/eselect/eselect-1.4.tar.xz
_eclasses_=bash-completion-r1 db412e427e3317ffd3e15f17df269c5e eutils 40081e8c7e7f7c4f9db349a1d6d52925 multilib fac675dcccf94392371a6abee62d909f toolchain-funcs 48b38a216afb92db6314d6c3187abea3
-_md5_=c90e97cedd82331c4f8344c348046d2d
+_md5_=0bd3be95d694bda56bce45611c6ae169
diff --git a/metadata/md5-cache/app-emacs/sokoban-1.4 b/metadata/md5-cache/app-emacs/sokoban-1.4
new file mode 100644
index 000000000000..080edfe70c2f
--- /dev/null
+++ b/metadata/md5-cache/app-emacs/sokoban-1.4
@@ -0,0 +1,12 @@
+DEFINED_PHASES=compile configure install postinst postrm prepare setup unpack
+DEPEND=>=virtual/emacs-21
+DESCRIPTION=Implementation of Sokoban for Emacs
+EAPI=5
+HOMEPAGE=http://elpa.gnu.org/packages/sokoban.html
+KEYWORDS=~amd64 ~x86
+LICENSE=GPL-3+
+RDEPEND=>=virtual/emacs-21
+SLOT=0
+SRC_URI=http://elpa.gnu.org/packages/sokoban-1.4.tar
+_eclasses_=elisp ae11b438eee6c692e6c94c9a86999514 elisp-common cec01e54df1bfd2fcca76a13ce2b2d27 eutils 40081e8c7e7f7c4f9db349a1d6d52925 multilib fac675dcccf94392371a6abee62d909f toolchain-funcs 48b38a216afb92db6314d6c3187abea3
+_md5_=24fffa954d8b78e131c898da76ca0e69
diff --git a/metadata/md5-cache/app-text/aspell-0.60.6.1 b/metadata/md5-cache/app-text/aspell-0.60.6.1
index a717d068d51e..911273810241 100644
--- a/metadata/md5-cache/app-text/aspell-0.60.6.1
+++ b/metadata/md5-cache/app-text/aspell-0.60.6.1
@@ -11,4 +11,4 @@ RDEPEND=>=sys-libs/ncurses-5.2 nls? ( virtual/libintl ) !=app-dicts/aspell-en-0.
SLOT=0
SRC_URI=mirror://gnu/aspell/aspell-0.60.6.1.tar.gz
_eclasses_=autotools d76ee21296238133bd2df8dea7f33a05 eutils 40081e8c7e7f7c4f9db349a1d6d52925 flag-o-matic 9a539029fe1d390c1828ff633baf26b5 libtool b9b3340e3a19510f0d9f05cfccbf209f multilib fac675dcccf94392371a6abee62d909f multiprocessing c2d96fb38f2596209e98fceda58ba1ed toolchain-funcs 48b38a216afb92db6314d6c3187abea3
-_md5_=34cc3bbc9506ee9e465c24a7e7505b60
+_md5_=4b1713b27034b4705dcf1962110a0d48
diff --git a/metadata/md5-cache/dev-libs/elfutils-0.158 b/metadata/md5-cache/dev-libs/elfutils-0.158
index 94513f81dcea..d27911a83cc6 100644
--- a/metadata/md5-cache/dev-libs/elfutils-0.158
+++ b/metadata/md5-cache/dev-libs/elfutils-0.158
@@ -4,10 +4,10 @@ DESCRIPTION=Libraries/utilities to handle ELF objects (drop in replacement for l
EAPI=4
HOMEPAGE=https://fedorahosted.org/elfutils/
IUSE=bzip2 lzma nls static-libs test +threads +utils zlib abi_x86_32 abi_x86_64 abi_x86_x32 abi_mips_n32 abi_mips_n64 abi_mips_o32
-KEYWORDS=~alpha ~amd64 ~arm arm64 hppa ia64 ~m68k ~mips ~ppc ~ppc64 ~s390 ~sh ~sparc ~x86 ~amd64-linux ~arm-linux ~x86-linux
+KEYWORDS=alpha ~amd64 ~arm arm64 hppa ia64 ~m68k ~mips ~ppc ~ppc64 ~s390 ~sh ~sparc ~x86 ~amd64-linux ~arm-linux ~x86-linux
LICENSE=GPL-2-with-exceptions
RDEPEND=zlib? ( >=sys-libs/zlib-1.2.2.3[abi_x86_32(-)?,abi_x86_64(-)?,abi_x86_x32(-)?,abi_mips_n32(-)?,abi_mips_n64(-)?,abi_mips_o32(-)?] ) bzip2? ( app-arch/bzip2[abi_x86_32(-)?,abi_x86_64(-)?,abi_x86_x32(-)?,abi_mips_n32(-)?,abi_mips_n64(-)?,abi_mips_o32(-)?] ) lzma? ( app-arch/xz-utils[abi_x86_32(-)?,abi_x86_64(-)?,abi_x86_x32(-)?,abi_mips_n32(-)?,abi_mips_n64(-)?,abi_mips_o32(-)?] ) !dev-libs/libelf abi_x86_32? ( !<=app-emulation/emul-linux-x86-baselibs-20130224-r11 !app-emulation/emul-linux-x86-baselibs[-abi_x86_32(-)] )
SLOT=0
SRC_URI=https://fedorahosted.org/releases/e/l/elfutils/0.158/elfutils-0.158.tar.bz2 https://fedorahosted.org/releases/e/l/elfutils/0.158/elfutils-portability.patch -> elfutils-0.158-portability.patch https://fedorahosted.org/releases/e/l/elfutils/0.158/elfutils-robustify.patch -> elfutils-0.158-robustify.patch
_eclasses_=eutils 40081e8c7e7f7c4f9db349a1d6d52925 flag-o-matic 9a539029fe1d390c1828ff633baf26b5 multibuild 56d4120419072116417e8de1bd1040ff multilib fac675dcccf94392371a6abee62d909f multilib-build 198e1c7095dbce1ca2848aed0f96bf60 multilib-minimal a481090a413ba6970bd9643494ef982f multiprocessing c2d96fb38f2596209e98fceda58ba1ed toolchain-funcs 48b38a216afb92db6314d6c3187abea3
-_md5_=f9a84e611f48506e12520cf520d48e17
+_md5_=7c3d51a977e714593cd0076a4bc48181
diff --git a/metadata/md5-cache/dev-perl/Test-SharedFork-0.210.0 b/metadata/md5-cache/dev-perl/Test-SharedFork-0.210.0
index 84d5e8121c5a..d8eaf46675ee 100644
--- a/metadata/md5-cache/dev-perl/Test-SharedFork-0.210.0
+++ b/metadata/md5-cache/dev-perl/Test-SharedFork-0.210.0
@@ -4,10 +4,10 @@ DESCRIPTION=fork test
EAPI=4
HOMEPAGE=http://search.cpan.org/dist/Test-SharedFork/
IUSE=test
-KEYWORDS=~amd64 ~hppa ~ppc ~ppc64 ~x86
+KEYWORDS=~amd64 hppa ~ppc ~ppc64 ~x86
LICENSE=|| ( Artistic GPL-1 GPL-2 GPL-3 )
RDEPEND=|| ( >=dev-lang/perl-5.16