Accepted libconfuse 3.3-3 (source) into unstable
- To: debian-devel-changes@lists.debian.org
- Subject: Accepted libconfuse 3.3-3 (source) into unstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Mon, 12 Sep 2022 21:25:20 +0000
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.fasolo; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=Mm0sK9A8PkKtqzlwH1VSsinhckR0sz0Z/SjyXZM+qZs=; b=noI4MLJQ6Mt+RwJI9GFdVGGjDI ADd2iLmmqCG2zloI0kC9LtbpIN0sx9OPPmzOXf+U6feMmSduSq8XXNlNPBhCVyhfo+qWJ/Ika4kc2 WnnCyEsKip6ipLK1RMXBKHNhpjNHP/kwmsuG3Wf8SmQKkNQg+FtbjfCgYYMJrWySLLD2K08evsMPH r2O0ldUcG+JDevjMHRPlSk7gZngT9+I6girfc9In4l1kx0iZvlSbzAcABobZKgUJXQbd9McbQOXvL eAIinkZqsco87zHfq6xjNDlcZp+zwQ/vpM1MWZ9e6y3+7B4ejeCDaeN3qN5jr1JIp/U6wV6uvbzmb h/tXzg6A==;
- Mail-followup-to: debian-devel@lists.debian.org
- Message-id: <E1oXqvg-001tJu-Ua@fasolo.debian.org>
- Reply-to: debian-devel@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Mon, 12 Sep 2022 23:08:48 +0200
Source: libconfuse
Architecture: source
Version: 3.3-3
Distribution: unstable
Urgency: high
Maintainer: Aurelien Jarno <aurel32@debian.org>
Changed-By: Aurelien Jarno <aurel32@debian.org>
Closes: 993178 1019596
Changes:
libconfuse (3.3-3) unstable; urgency=high
.
* Urgency set to high due to the security issue.
* Add debian/patches/CVE-2022-40320.patch from upstream to fix a heap-based
buffer over-read in cfg_tilde_expand (CVE-2022-40320). Closes: #1019596.
* Enable hardening flags. Closes: #993178.
* Bumped Standards-Version to 4.6.1 (no changes).
Checksums-Sha1:
67b0915e6086a3291b48dfb3ef766304c9b4126c 2061 libconfuse_3.3-3.dsc
956a70abccb77b2beb6a08437e241c18bdf4635d 7644 libconfuse_3.3-3.debian.tar.xz
55bc511eea8a2d931636b755ddb3c2df620bd8cd 5849 libconfuse_3.3-3_source.buildinfo
Checksums-Sha256:
6b711e4cedfd3f032c921b96ee854fdbbcd7df2160f9d2ffde3a728baee63f7f 2061 libconfuse_3.3-3.dsc
eee86195d579e2ee121c2404d0014391b9bb3192c1963a8ea2559f921d99eb3b 7644 libconfuse_3.3-3.debian.tar.xz
ac175a6a19050ac02822b281833f800d21ea8ea4cd512831f7b389965ae34af1 5849 libconfuse_3.3-3_source.buildinfo
Files:
befc5fb7d2c69d9c4423a16403f135e1 2061 libs optional libconfuse_3.3-3.dsc
46f4f2e86b1a1f4b721464a2e4e85a46 7644 libs optional libconfuse_3.3-3.debian.tar.xz
3d1f5f20741b533f808cd0f7c66fda9d 5849 libs optional libconfuse_3.3-3_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=QQtN
-----END PGP SIGNATURE-----