Accepted php-guzzlehttp-psr7 1.4.2-0.1+deb10u2 (source) into oldoldstable
- To: dispatch@tracker.debian.org, debian-lts-changes@lists.debian.org
- Subject: Accepted php-guzzlehttp-psr7 1.4.2-0.1+deb10u2 (source) into oldoldstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Sun, 31 Dec 2023 22:40:19 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: php-guzzlehttp-psr7_1.4.2-0.1+deb10u2_source.changes
- Debian-source: php-guzzlehttp-psr7
- Debian-suite: oldoldstable
- Debian-version: 1.4.2-0.1+deb10u2
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.seger; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=UgrPJ8EQisOGcvmb3MChsfVHsIGO92aNohsCsw3QhlY=; b=KSReAYu+AMdzcTmyf9MjFeQm3O vNrgoBR7u1wx1VtypqI+t7OTsNNHKVHC4OFcnPHcQlPtafCgwDW1TLM6GiT04rujf29UoMu7tMOD6 O5CEKFEnaAZr8w0RcN6Zxbk9VkoVWpOlNyltq30PEf69jbqymqGRxkFZxfKJLADIU7nBA/+tqWXhB XzbVGrhcLt7V4sRN9pQjJ2daaQgzZKjkH+KZ56NBoN7Lw53WcF7RPfOxido8xCCSnKNlISbFFBHLw /vjWUfuAXqOFH/yr+pwOJwzzQEtbDEI/zENZzYm/lD937/yFqxjcD8Z1xExPJVqMCygT8pPjEpbOC gP+uN0/Q==;
- Mail-followup-to: debian-lts@lists.debian.org
- Message-id: <E1rK4Tj-003yeq-Bu@seger.debian.org>
- Reply-to: debian-lts@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sun, 31 Dec 2023 20:54:01 +0100
Source: php-guzzlehttp-psr7
Architecture: source
Version: 1.4.2-0.1+deb10u2
Distribution: buster-security
Urgency: high
Maintainer: Debian PHP PEAR Maintainers <pkg-php-pear@lists.alioth.debian.org>
Changed-By: Guilhem Moulin <guilhem@debian.org>
Closes: 1034581
Changes:
php-guzzlehttp-psr7 (1.4.2-0.1+deb10u2) buster-security; urgency=high
.
* Non-maintainer upload by the LTS Security Team.
* Fix CVE-2023-29197: Improper header parsing. An attacker could sneak in a
newline (\n) into both the header names and values. This is a follow-up
to CVE-2022-24775 where the fix was incomplete. (Closes: #1034581)
Checksums-Sha1:
df74a918f79d299a942a2e2a96eedcf36dfee092 2109 php-guzzlehttp-psr7_1.4.2-0.1+deb10u2.dsc
274b4dbef5e8eee15139b62b56a82fd916ceeb3f 40470 php-guzzlehttp-psr7_1.4.2.orig.tar.gz
213c5d1c7f878521a945149dffe6c552ee8a90dc 5712 php-guzzlehttp-psr7_1.4.2-0.1+deb10u2.debian.tar.xz
8ed4391accee13512b44d0249d69c60e7d060678 6386 php-guzzlehttp-psr7_1.4.2-0.1+deb10u2_amd64.buildinfo
Checksums-Sha256:
f52b965e7526ff0ae3a03dd7ccb47b1842433b8c55d6c39c3e6d00b9a35d8965 2109 php-guzzlehttp-psr7_1.4.2-0.1+deb10u2.dsc
13a13f6816a9162b4c1101221c9bf5637932c553a32e71ae5ab8854375ecafdf 40470 php-guzzlehttp-psr7_1.4.2.orig.tar.gz
69cc4cd7abb5296c3d6ce48ddf251b9c63cf2b7dfd2ad4fa5491299e9ccc804c 5712 php-guzzlehttp-psr7_1.4.2-0.1+deb10u2.debian.tar.xz
fb547fc85781b33f81cd429a25d39d3dc5d405e2a6e94a3900e5267cf3d4d6d9 6386 php-guzzlehttp-psr7_1.4.2-0.1+deb10u2_amd64.buildinfo
Files:
ae463a3358dc6a1b52dcdd5f51e55177 2109 php optional php-guzzlehttp-psr7_1.4.2-0.1+deb10u2.dsc
476be136b9605d7525d31b3f0fafcf7c 40470 php optional php-guzzlehttp-psr7_1.4.2.orig.tar.gz
15f1196f29c94bd423701deb6acce3be 5712 php optional php-guzzlehttp-psr7_1.4.2-0.1+deb10u2.debian.tar.xz
c162052bc4a7b009a783e9cd4404cb58 6386 php optional php-guzzlehttp-psr7_1.4.2-0.1+deb10u2_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=fyQ0
-----END PGP SIGNATURE-----