puppet_2.7.18-3~bpo60+1_amd64.changes ACCEPTED into squeeze-backports
Accepted:
puppet-common_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/puppet-common_2.7.18-3~bpo60+1_all.deb
puppet-el_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/puppet-el_2.7.18-3~bpo60+1_all.deb
puppet_2.7.18-3~bpo60+1.debian.tar.gz
to main/p/puppet/puppet_2.7.18-3~bpo60+1.debian.tar.gz
puppet_2.7.18-3~bpo60+1.dsc
to main/p/puppet/puppet_2.7.18-3~bpo60+1.dsc
puppet_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/puppet_2.7.18-3~bpo60+1_all.deb
puppetmaster-common_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/puppetmaster-common_2.7.18-3~bpo60+1_all.deb
puppetmaster-passenger_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/puppetmaster-passenger_2.7.18-3~bpo60+1_all.deb
puppetmaster_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/puppetmaster_2.7.18-3~bpo60+1_all.deb
vim-puppet_2.7.18-3~bpo60+1_all.deb
to main/p/puppet/vim-puppet_2.7.18-3~bpo60+1_all.deb
Changes:
puppet (2.7.18-3~bpo60+1) squeeze-backports; urgency=high
.
* Backport to squeeze-backports.
.
puppet (2.7.18-3) unstable; urgency=high
.
* Add patch to fix puppet vulnerabilities (CVE-2013-1640, CVE-2013-1652,
CVE-2013-1653, CVE-2013-1654, CVE-2013-1655, CVE-2013-2275)
- CVE-2013-1640 - Remote code execution on master from authenticated
clients
- CVE-2013-1652 - Insufficient input validation
- CVE-2013-1653 - Remote code execution
- CVE-2013-1654 - Protocol downgrade
- CVE-2013-1655 - Unauthenticated remote code execution risk
- CVE-2013-2275 - Incorrect default report ACL
Override entries for your package:
puppet-common_2.7.18-3~bpo60+1_all.deb - optional admin
puppet-el_2.7.18-3~bpo60+1_all.deb - optional admin
puppet_2.7.18-3~bpo60+1.dsc - source admin
puppet_2.7.18-3~bpo60+1_all.deb - optional admin
puppetmaster-common_2.7.18-3~bpo60+1_all.deb - optional admin
puppetmaster-passenger_2.7.18-3~bpo60+1_all.deb - optional admin
puppetmaster_2.7.18-3~bpo60+1_all.deb - optional admin
vim-puppet_2.7.18-3~bpo60+1_all.deb - optional admin
Announcing to debian-backports-changes@lists.debian.org
Thank you for your contribution to backports.debian.org archive.
to backports.debian.org archive.
Reply to: