Accepted curl 7.88.1-7 (source) into unstable
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Tue, 21 Mar 2023 22:39:05 +0000
Source: curl
Architecture: source
Version: 7.88.1-7
Distribution: unstable
Urgency: medium
Maintainer: Alessandro Ghedini <ghedo@debian.org>
Changed-By: Samuel Henrique <samueloph@debian.org>
Changes:
curl (7.88.1-7) unstable; urgency=medium
.
* Bump Standards-Version to 4.6.2
* d/p/06_always-disable-valgrind.patch: Remove unused patch
* d/patches: Refresh all patches
* Import 5 new upstream patches fixing CVES:
- CVE-2023-27533: TELNET option IAC injection
- CVE-2023-27534: SFTP path ~ resolving discrepancy
- CVE-2023-27535: FTP too eager connection reuse
- CVE-2023-27536: GSS delegation too eager connection re-use
- CVE-2023-27537: HSTS double-free
- CVE-2023-27538: SSH connection too eager reuse still
Checksums-Sha1:
59a8af50416026cf1fba9e1754e3a56c2cb14ca0 3104 curl_7.88.1-7.dsc
fe6d1e7f3d0fafffaa0eedf62b25f338b1d438ba 44908 curl_7.88.1-7.debian.tar.xz
1d613c890fb119eb4724ef7a8b73b7b19b7b066c 12968 curl_7.88.1-7_amd64.buildinfo
Checksums-Sha256:
53d5c6a90af0ed94020cb89b5e65c9a79e6467be090663aee3d3bc7e2b356024 3104 curl_7.88.1-7.dsc
c874bb1abc1d4074749f711ebd4fc82331c5933f6420d2889d3d094ff92308ed 44908 curl_7.88.1-7.debian.tar.xz
3fcf61711b97f13e6170bec4f801e44db57d31edfb76e297649aed5d94c8541e 12968 curl_7.88.1-7_amd64.buildinfo
Files:
3ce78d492575a7a13a146935d5a569ff 3104 web optional curl_7.88.1-7.dsc
286138662ac9ffa632b17ea89a7c046d 44908 web optional curl_7.88.1-7.debian.tar.xz
9798327c950eb42f426dec7a44a9dbd3 12968 web optional curl_7.88.1-7_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=D591
-----END PGP SIGNATURE-----
Reply to: