-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 11 Aug 2025 18:41:57 +0200 Source: libnet-dropbox-api-perl Architecture: source Version: 1.9-3 Distribution: unstable Urgency: medium Maintainer: Debian Perl Group <pkg-perl-maintainers@lists.alioth.debian.org> Changed-By: gregor herrmann <gregoa@debian.org> Closes: 1102147 Changes: libnet-dropbox-api-perl (1.9-3) unstable; urgency=medium . * Team upload. * Add patch CVE-2024-58036.patch, taken from upstream pull request. Fixes CVE-2024-58036: "Net::Dropbox::API 1.9 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure". (Closes: #1102147) * Update test and runtime dependencies for CVE-2024-58036.patch. * Update debian/upstream/metadata. * Declare compliance with Debian Policy 4.7.2. * Annotate test-only build dependencies with <!nocheck>. * Add empty debian/tests/pkg-perl/syntax-skip to enable more autopkgtests. Checksums-Sha1: 3f6450ff4b139b264433625b9f563338ee1bffd0 2737 libnet-dropbox-api-perl_1.9-3.dsc e3186f25ac056dd62054525aa4304834b4a22093 3816 libnet-dropbox-api-perl_1.9-3.debian.tar.xz Checksums-Sha256: 112cc11e907f495be2833c949cb3f24e65c37b366da55600c017e39a73385d15 2737 libnet-dropbox-api-perl_1.9-3.dsc c266637f0af92bc6a43c1cd3137d54aaaf815af4431575e42a00cb2e1da35427 3816 libnet-dropbox-api-perl_1.9-3.debian.tar.xz Files: 9af881f3f8a768f371326746174f6d42 2737 perl optional libnet-dropbox-api-perl_1.9-3.dsc d558aacc41c803fac9eb8d71f18d9d89 3816 perl optional libnet-dropbox-api-perl_1.9-3.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEE0eExbpOnYKgQTYX6uzpoAYZJqgYFAmiaHd5fFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEQx RTEzMTZFOTNBNzYwQTgxMDREODVGQUJCM0E2ODAxODY0OUFBMDYACgkQuzpoAYZJ qgbsvA/+LdB0aDCsCF5kvnuPQTBgqxomp40pHszLoig/gVqOiVnxGSt101P9sHV3 461ae+5Ygz0vj1aIz5s/XQC5awjYDuWIr4bGuziYGMzSC4++1Ts18erzxp4k8nYZ i46MgXvUg2EBfoQs6IpEhcHmL2oXGaJjxjc4dOiVTR1hzKYyseC1wCPDNS2zk+kG F7pqMJIUIY9th8t5cacgZYe3fRHzLOV3XhoekEzsh6+vWV9B4QLuns9Wix9cxyqu WR5Z85iDp0GVZDqeBlRuC+k48PuEVe6IyMAdWABC8bfALVu9G0prlnxLh8+I6Zx5 Cy2V2JaXYztZw0pwhJj9Qh/xojkCmkWK2oCR7BEXip0vT/vhVnk1eBZUtUJwvA21 Dc4xvPgtQ2pNyT7aKSD22xpCb2XbvIRSUvPY+OkQyM4zqPVZ5aK6Xuo+lFJmrJVR jPd02Gtx0iwuhcTbh4I3XMEY5tgbvYkfcoGm7UKk4px6lDWgbd69rUYTpF90veiR klu3kRKjuKv0MXxLqL6TWjthgLDwaIvH3Mx6wGCbv92hNr0A6UaJlhXYkjCUUH0e UifUoDE1X3nTRLqssB7RTdLyDO0QLwropsCDTEr66AiAAZh1ipbEGx5c7Qt+5Aca bl4L9loqSeSKH24kPS9VvqevcKKQq/x05w69hwDhbVOBzyvtl5E= =cAwF -----END PGP SIGNATURE-----
Attachment:
pgp_Isw0jN8Fo.pgp
Description: PGP signature