Accepted ruby-git 1.2.8-1+deb10u1 (source) into oldstable
- To: debian-lts-changes@lists.debian.org, dispatch@tracker.debian.org
- Subject: Accepted ruby-git 1.2.8-1+deb10u1 (source) into oldstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Sun, 29 Jan 2023 20:20:23 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: ruby-git_1.2.8-1+deb10u1_source.changes
- Debian-source: ruby-git
- Debian-suite: oldstable
- Debian-version: 1.2.8-1+deb10u1
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.seger; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=6shqWQ2Wdkyu1LS/oCQVxC73HVSshtjP0vm1Mu9NEFo=; b=NIvopVyWTFOLwpJ8s6fAsJ+htR PPIGabfirDXuFu+H8rmaXBegiOtMzFLJ2NpJeyMWJo9mXXn9iQK6zviffoOuzKSFuf2hXYqh3abJt vWkXxPnCOY7a6+/p34EQ6yMNe02Nih8+IZpn/BO+Xenqrr3YaXvO4T/CgWQdgAb3aCDeGpGLzbceB rfFKyS4zyyo7XzM5+YBhO2QRiOaLBCfE+qBfQuZnFwuco7ADgnRuK2zTf5S7zbhJ/C/9QbpnUdzW2 F60G4RJlt2YNwVq0tIhjb7P5Cnrc87vOAsFGR2sskBDrOp2VLhOKDFxdA6p8/JcGGvi51dbT6udcw IFpdaBjw==;
- Mail-followup-to: debian-lts@lists.debian.org
- Message-id: <E1pMEA3-002OPd-JR@seger.debian.org>
- Reply-to: debian-lts@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Sun, 29 Jan 2023 19:20:59 +0530
Source: ruby-git
Architecture: source
Version: 1.2.8-1+deb10u1
Distribution: buster-security
Urgency: high
Maintainer: Michael Schutte <michi@debian.org>
Changed-By: Utkarsh Gupta <utkarsh@debian.org>
Closes: 1009926
Changes:
ruby-git (1.2.8-1+deb10u1) buster-security; urgency=high
.
* Non-maintainer upload by the LTS team.
* Add patch to address command line injection in Git::Lib#fetch.
(Fixes: CVE-2022-25648) (Closes: #1009926)
* Add patch to properly unescape diff paths and in ls-files do not unescape
file paths with eval. (Fixes: CVE-2022-46648, CVE-2022-47318)
Checksums-Sha1:
9be7e532f9bac2783214deedcc95457ab1e3361b 2023 ruby-git_1.2.8-1+deb10u1.dsc
4be1e9e6d42d1090bbf4247f4598dbca7109184b 103877 ruby-git_1.2.8.orig.tar.gz
72fe304c3510f5a4563a00f871f31d026f01272f 5884 ruby-git_1.2.8-1+deb10u1.debian.tar.xz
99f01fffd3ccad57e89bf24b87fe059d256d2d33 14168 ruby-git_1.2.8-1+deb10u1_source.buildinfo
Checksums-Sha256:
d911b89cf9e561c012fcaa7e5cb049dedc4e603d1aa4975c2c8486038774f4af 2023 ruby-git_1.2.8-1+deb10u1.dsc
512813b6d56d2f357623c3d1a28935ad3deae53101fb13fb362a2ea04596f9c9 103877 ruby-git_1.2.8.orig.tar.gz
64cea0e07c3563d4180973650b29bf369a4980b6da954480c75bbda1b0ee4b87 5884 ruby-git_1.2.8-1+deb10u1.debian.tar.xz
ef4354284b4e14358732188bb8fb34e694ba9bfc45fa4d104a2aa0c4d976454b 14168 ruby-git_1.2.8-1+deb10u1_source.buildinfo
Files:
6127a4f7b8be0a7e8b8bec130f6ab49b 2023 ruby optional ruby-git_1.2.8-1+deb10u1.dsc
ee1d0254441c5a2e6a258b63085631be 103877 ruby optional ruby-git_1.2.8.orig.tar.gz
1cfb4f030ba462117491c4f6fc745c45 5884 ruby optional ruby-git_1.2.8-1+deb10u1.debian.tar.xz
d1f0d6f9bab8ac2ee33e97a4af280ded 14168 ruby optional ruby-git_1.2.8-1+deb10u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQJHBAEBCAAxFiEEbJ0QSEqa5Mw4X3xxgj6WdgbDS5YFAmPW0BATHHV0a2Fyc2hA
ZGViaWFuLm9yZwAKCRCCPpZ2BsNLlquJD/9DujkX4C6rriVJ/BWe55BW3ee3bLe+
eaJaTO79hMbsjn2Gm7u/wVCWHd6qTef4GKJtogkTajBs0uYEkApAptE2h++0S37H
9tuI4TP4S0IgfCTxvR/BNjK09pOrH3SjQv28zqEePIuKF0T9f/MkgAd+BGz+8+qe
1dSJNtk6ARPL/yChwA9tK1oBY4B/j+P8QMgPigbPa/kbaSZ0f/sEFQQrZHNTDnn2
fvEOL2Qykb9QSVLHGWIEvdwUH9y1f3hm/a4Rcvwm/ws5G50uok8USRkwjJ/0SR3y
X0dJMd5Rt0c3Mb02rDQo4qmzT/q/MdMzEvhVtWs4I1TKYgkIHz/b2FLSqfl/lbOh
f/jGZ69VuGSnOcVODhcrw2/J11fx0mtJxp1GW/ty8vI2b97UuCIzQsFCgpCUyWu0
+rSmj0biibkIs7/cOaYbpsU6lPdbvdYgvPiE/AcTs/mUTIWC2H6tjzgADLmzCHEt
o+NKISNlBNCCFjwvU9+gThb0cRPh4hVEvtLmTA7yjlc0N1yBIN7TRGOylTz5WIhB
129vcTymbIgyGzu63uReCh7amm7w3DfS+kwhXod8l/nL9sJG8s9n7XR3RUI9SXGS
rhG2iXo5tQxAiGj/XjzcFii/7vBzbmdJVccCYFpk79AJtvipqZQtC3HIBHnAvoEm
YfDbc13aGT4dwg==
=Pg77
-----END PGP SIGNATURE-----