Accepted cpio 2.12+dfsg-9+deb10u1 (source) into oldstable
- To: dispatch@tracker.debian.org, debian-lts-changes@lists.debian.org
- Subject: Accepted cpio 2.12+dfsg-9+deb10u1 (source) into oldstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Sun, 04 Jun 2023 15:30:21 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: cpio_2.12+dfsg-9+deb10u1_source.changes
- Debian-source: cpio
- Debian-suite: oldstable
- Debian-version: 2.12+dfsg-9+deb10u1
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.seger; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=3DRN6vqW0jFlTdVbkoxX0Vpn+9NOK0WNBy/TO1Y2+Lc=; b=iC/ngbFK89ytMhg+pImK6GQWuX AJNygCiuopXF0ZmtVElc+XRTafeUqcF/PqEqhgQtnmgpi2x5xIuGaQAaMivdr1h917QgsaDrXj5RF LMS4zFhFsmPhNCf6RS2JQR2uH+XnL0OzVG4umq+ftmBf41+f4DsayQgSKzRBzzjEUme4ePrKq52xz ddzsSOtm9zdN5muQHZy3Qnz1NxlKLx1+iaRGi03vfJ7LlHjiAVuHsA8VVY1PWCed17K2yjrGP+N1D /LJ1HK3J/UjxwdGd1zXJ91thAb8YQapgkBQpjhpWS0SOqsOA6d3WaRLvI15R+og5dA7+0cSPJ4nbf vZPnFuQA==;
- Mail-followup-to: debian-lts@lists.debian.org
- Message-id: <E1q5pgT-005mIJ-HZ@seger.debian.org>
- Reply-to: debian-lts@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sun, 04 Jun 2023 18:01:54 +0300
Source: cpio
Architecture: source
Version: 2.12+dfsg-9+deb10u1
Distribution: buster-security
Urgency: medium
Maintainer: Anibal Monsalve Salazar <anibal@debian.org>
Changed-By: Adrian Bunk <bunk@debian.org>
Changes:
cpio (2.12+dfsg-9+deb10u1) buster-security; urgency=medium
.
* Non-maintainer upload by the LTS Security Team.
* CVE-2019-14866: Improper validation of input files when generating
tar archives.
* CVE-2021-38185: Arbitrary code via crafted pattern file.
Checksums-Sha1:
2fb0fd0e4b3fd89c8e97081aebd0519df557e5a5 1939 cpio_2.12+dfsg-9+deb10u1.dsc
7002b7d8e5d890f40d0e2dc8aa1cfb56258e4236 1241589 cpio_2.12+dfsg.orig.tar.bz2
43345068fa328f8ffb5a1e7dcc21ba2779e1ccaf 30448 cpio_2.12+dfsg-9+deb10u1.debian.tar.xz
Checksums-Sha256:
84b94b550ac07f92a78a0f9450621273f0c224672c76674fc4953bbf83668e6a 1939 cpio_2.12+dfsg-9+deb10u1.dsc
f27a009166b26925802030d87b99b7113014691bfa081260878aee076dc01183 1241589 cpio_2.12+dfsg.orig.tar.bz2
ab6dfbf8db0be8b53747bf837c3ab23cd5025cb35a074deaaf0cdd42769aa58a 30448 cpio_2.12+dfsg-9+deb10u1.debian.tar.xz
Files:
44601e2ef8d47202aad3fb1fdefe852b 1939 utils important cpio_2.12+dfsg-9+deb10u1.dsc
cb761902199835a2a7be756d836679a1 1241589 utils important cpio_2.12+dfsg.orig.tar.bz2
c347c3d3169886e8e8148e545d908514 30448 utils important cpio_2.12+dfsg-9+deb10u1.debian.tar.xz
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEEOvp1f6xuoR0v9F3wiNJCh6LYmLEFAmR8qqsACgkQiNJCh6LY
mLGQbQ/+IDi+4znSDeeh2KybFJB7H9scBxlxefIJch8Glk3hmmShZLulLbWdqP1w
Unx618dywYq5FaCgvRbSLUAdx8JBC7Q/JM1HiNWrO/wxy16qjVj+ExjRNBlyg0Hd
koVmH4DMoe4cWjh/Skf6ebo8IDh1pM9WEf4WbWSfaNqhpxO3Aw4R8ExFBadSyi/U
GdPDSPdMnluFcG9PAOgnTu4/4h9gaJjjQ3Ebeor5YrN6e2ZW6F4yCy+Cb+13akso
H9AEFe2ub4AcZ/yegKKVccsHdqFi71LmNEN9rBlE8R60nbgL60lVC3dSXphi0A7r
oKq6ZJWGBGYt6+0pZcKtHbRfICEjjYvN+ELcTVqL/WjWBxggEhpAii4sul7Dab3I
7lDWgrTpk2nqV7WYWtjUNceUKUdtl3t2WRHOnQnXIqoUeN4STp/knnjxXgJ8KH8k
WI4FbhoPlRHoCdW3n4KbWyQHOGdWK7iPMWA8fcl+z9aB7vBS/+SMAIs9gJxho7au
srH2Lu2vB/NMSNt5EWU955gBgdZfVNUHcQ396C5L1TXUXqStok4VV0W/ucOf3jFT
j6U8clp8O/TNWSLzqNNQlScwd0+bh60c/W4RQOA2ZeQD/cnWoDxPX88sxwxp7aCN
anhZMkDXzN4TtKKlgmdVhztCzfBVnGYBfy8LZTfcy1BscTZs5ic=
=25kV
-----END PGP SIGNATURE-----