[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted otrs2 5.0.24-1~bpo9+1 (source all) into stretch-backports



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Thu, 30 Nov 2017 09:54:44 +0100
Source: otrs2
Binary: otrs2 otrs
Architecture: source all
Version: 5.0.24-1~bpo9+1
Distribution: stretch-backports
Urgency: high
Maintainer: Patrick Matthäi <pmatthaei@debian.org>
Changed-By: Patrick Matthäi <pmatthaei@debian.org>
Description:
 otrs       - Open Ticket Request System (OTRS 5)
 otrs2      - Open Ticket Request System
Closes: 882370
Changes:
 otrs2 (5.0.24-1~bpo9+1) stretch-backports; urgency=high
 .
   * Rebuild for stretch-backports.
 .
 otrs2 (5.0.24-1) unstable; urgency=high
 .
   * New upstream release.
     - This fixes OSA-2017-07, also known as CVE-2017-16664: An attacker who is
       logged into OTRS as an agent can request special URLs from OTRS which can
       lead to the execution of shell commands with the permissions of the web
       server user.
       Closes: #882370
   * Merge 3.3.18-1+deb8u1, 3.3.18-1+deb8u2, 5.0.16-1+deb9u2, 5.0.16-1+deb9u3
     and 5.0.23-1~bpo9+1 changelog.
   * Use secure URI in debian/watch and for the homepage field.
   * Bump Standards-Version to 4.1.1 (no changes required).
Checksums-Sha1:
 24cbeeba5032094518d275e5330112f4121260f9 1840 otrs2_5.0.24-1~bpo9+1.dsc
 8444fe941050238cc6aaf8e53d0de832731a6719 20661272 otrs2_5.0.24.orig.tar.bz2
 8174e4f660167c4e12a3218b51a05521e7061437 45792 otrs2_5.0.24-1~bpo9+1.debian.tar.xz
 887380c148c08dd9e903c6cffca0bcde24c60d8d 7437832 otrs2_5.0.24-1~bpo9+1_all.deb
 044c40b2581f18e2336f9a623e1240fc726249c3 7244 otrs2_5.0.24-1~bpo9+1_amd64.buildinfo
 7a63d0d347ca48b87777c686a9a33332a9a076ca 222918 otrs_5.0.24-1~bpo9+1_all.deb
Checksums-Sha256:
 31acd438c8603405ebfb3bdca2d16af27e38dac079d2575a4cb719e19432baa4 1840 otrs2_5.0.24-1~bpo9+1.dsc
 b7171baaf5252a763f858ea3ae3b44ad1024eb722834852dcddb0117d8cbf261 20661272 otrs2_5.0.24.orig.tar.bz2
 93a44964e25048659db03b9e815ffdc002e277ba84d2e0a92aad4c2889b4c707 45792 otrs2_5.0.24-1~bpo9+1.debian.tar.xz
 f308f35def43a4bec05133b8412a4aa40d041962f8cb877a9cee5029e0561962 7437832 otrs2_5.0.24-1~bpo9+1_all.deb
 463461fb23e21fc12d4e193484b82f6dca27be1f6cc04b19dcd4c258220caa4d 7244 otrs2_5.0.24-1~bpo9+1_amd64.buildinfo
 9a949021f7941b8423bbe519ffb5b8bb9acef848ca8aafa34c8fa1a7489ea83d 222918 otrs_5.0.24-1~bpo9+1_all.deb
Files:
 ccd91fef01f9ece98001cf36242ddd46 1840 non-free/web optional otrs2_5.0.24-1~bpo9+1.dsc
 e04711ff0b13d1b11475554b9ee6ee4d 20661272 non-free/web optional otrs2_5.0.24.orig.tar.bz2
 51a8d5de22bfe97e865cc244540208c0 45792 non-free/web optional otrs2_5.0.24-1~bpo9+1.debian.tar.xz
 aa2718a81eaf982099b4a3c5182dd7af 7437832 non-free/web optional otrs2_5.0.24-1~bpo9+1_all.deb
 cf617cfb7c0a849f2de8b9852498ecb3 7244 non-free/web optional otrs2_5.0.24-1~bpo9+1_amd64.buildinfo
 9121c7bd9b7c504aaf7fe1884024aae8 222918 non-free/web optional otrs_5.0.24-1~bpo9+1_all.deb

-----BEGIN PGP SIGNATURE-----
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=Ixac
-----END PGP SIGNATURE-----


Reply to: