Accepted curl 7.88.1-7 (source) into unstable
- To: debian-devel-changes@lists.debian.org
- Subject: Accepted curl 7.88.1-7 (source) into unstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Tue, 21 Mar 2023 23:04:20 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: curl_7.88.1-7_source.changes
- Debian-source: curl
- Debian-suite: unstable
- Debian-version: 7.88.1-7
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.fasolo; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=dNklV3TTLOCvQTF619IdUnMBMEHbSIy7C1yKx5lwedY=; b=L2039FTx0+OnRYOfmw0lGoNFBY +3B3dN0s5dPJLSkG/kwo/XymFJOpW5fWg47wIhjVj0jmL70sw1y1tWTWgeVrq+j7RYjJAYFAxXwg6 kvw2Wfks2DVc+ccYN2MloNLZG+zvMqs2bwEKjs9P0wamr3OfDFvJvKXhaH1j+P7/DlL8Rjl+SBKoP 0+BesLplztX+1cCUh8YIcOGVmUUIj1SNJ6zD/q7M4WaLFDK1rCu2UpHAK+YSN55aXPcGuF5wkQTuM a49tKr/9CSTL9BB0xrptr6tXyuWf0FYNZ9PMfeh4enLZNZXLFfhLUy0CtIqeDU7nzO+MOgMraHLRY eBbZA7JA==;
- Mail-followup-to: debian-devel@lists.debian.org
- Message-id: <E1pel1g-0018fw-GL@fasolo.debian.org>
- Reply-to: debian-devel@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 21 Mar 2023 22:39:05 +0000
Source: curl
Architecture: source
Version: 7.88.1-7
Distribution: unstable
Urgency: medium
Maintainer: Alessandro Ghedini <ghedo@debian.org>
Changed-By: Samuel Henrique <samueloph@debian.org>
Changes:
curl (7.88.1-7) unstable; urgency=medium
.
* Bump Standards-Version to 4.6.2
* d/p/06_always-disable-valgrind.patch: Remove unused patch
* d/patches: Refresh all patches
* Import 5 new upstream patches fixing CVES:
- CVE-2023-27533: TELNET option IAC injection
- CVE-2023-27534: SFTP path ~ resolving discrepancy
- CVE-2023-27535: FTP too eager connection reuse
- CVE-2023-27536: GSS delegation too eager connection re-use
- CVE-2023-27537: HSTS double-free
- CVE-2023-27538: SSH connection too eager reuse still
Checksums-Sha1:
59a8af50416026cf1fba9e1754e3a56c2cb14ca0 3104 curl_7.88.1-7.dsc
fe6d1e7f3d0fafffaa0eedf62b25f338b1d438ba 44908 curl_7.88.1-7.debian.tar.xz
1d613c890fb119eb4724ef7a8b73b7b19b7b066c 12968 curl_7.88.1-7_amd64.buildinfo
Checksums-Sha256:
53d5c6a90af0ed94020cb89b5e65c9a79e6467be090663aee3d3bc7e2b356024 3104 curl_7.88.1-7.dsc
c874bb1abc1d4074749f711ebd4fc82331c5933f6420d2889d3d094ff92308ed 44908 curl_7.88.1-7.debian.tar.xz
3fcf61711b97f13e6170bec4f801e44db57d31edfb76e297649aed5d94c8541e 12968 curl_7.88.1-7_amd64.buildinfo
Files:
3ce78d492575a7a13a146935d5a569ff 3104 web optional curl_7.88.1-7.dsc
286138662ac9ffa632b17ea89a7c046d 44908 web optional curl_7.88.1-7.debian.tar.xz
9798327c950eb42f426dec7a44a9dbd3 12968 web optional curl_7.88.1-7_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=D591
-----END PGP SIGNATURE-----