Thank you for your contribution to Debian.
Accepted:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Tue, 01 Jul 2025 01:32:04 +0200
Source: dpkg
Binary: dpkg dpkg-dbgsym dselect dselect-dbgsym libdpkg-dev
Architecture: loong64
Version: 1.22.21
Distribution: unstable
Urgency: medium
Maintainer: Dpkg Developers <debian-dpkg@lists.debian.org>
Changed-By: Guillem Jover <guillem@debian.org>
Description:
dpkg - Debian package management system
dselect - Debian package management front-end
libdpkg-dev - Debian package management static library
Closes: 1107971 1108192
Changes:
dpkg (1.22.21) unstable; urgency=medium
.
[ Guillem Jover ]
* dpkg-deb: Fix cleanup for control member with restricted directories.
Fixes CVE-2025-6297. Reported by zhutyra on HackerOne.
* Perl modules:
- Dpkg::BuildDriver::DebianRules: Fix uninitialized Perl variables.
Closes: #1107971
- Dpkg::BuildDriver::DebianRules: Fix R³ dpkg/target/<target> values
handling.
- Dpkg::BuildTree: Fix needs_root() for R³ with implementation specific
keywords. See #1107971.
* Code internals:
- libdpkg: Do not segfault when adding triggers in no-act mode.
Closes: #1108192
Checksums-Sha1:
205bfc7cf5117ec6c0a5b9c807018472229bc642 1454492 dpkg-dbgsym_1.22.21_loong64.deb
815b64414dbfad1528765f95f079c1860fb858f2 7335 dpkg_1.22.21_loong64.buildinfo
91777710bbe435f065cc408da161e1d56cc9576f 1530648 dpkg_1.22.21_loong64.deb
3d14b60b9eb8f7cc0019c1a4a00080282b95afdb 287440 dselect-dbgsym_1.22.21_loong64.deb
6f557eff0c7e156cea31a736c4904288d924708a 576344 dselect_1.22.21_loong64.deb
ec257547f590057d073d413c383c11150b744479 504988 libdpkg-dev_1.22.21_loong64.deb
Checksums-Sha256:
8cee9e9e2483d90dc170d65221e5eb2d6f5ecc7d427ef8ba317c2b9db4637770 1454492 dpkg-dbgsym_1.22.21_loong64.deb
9fd9972a47c0d2ff190a3d9e7abda1649dd61f81697ef77467c765c5eae7b39f 7335 dpkg_1.22.21_loong64.buildinfo
1235dab3736b803ae2ae6250da26246818f34cb3c0b31076fb35ab3452457cdb 1530648 dpkg_1.22.21_loong64.deb
bf71162ee62d694d1b1b0a4fd0d6518cb4e936b46c85118b55ccb312fb212ae0 287440 dselect-dbgsym_1.22.21_loong64.deb
666f34b9b7f49c4506f595a194dbf9a49d8fe9783391d94364f76c8b85022982 576344 dselect_1.22.21_loong64.deb
a113e11337492ba6fddfe58908fc9c63b69ec5db87536b927a54a67de54f7091 504988 libdpkg-dev_1.22.21_loong64.deb
Files:
f7deeae7a6af0702ccb6535fd39a399e 1454492 debug optional dpkg-dbgsym_1.22.21_loong64.deb
c4b260592b1d2b65554d9d7318f0c735 7335 admin required dpkg_1.22.21_loong64.buildinfo
c641aba9de62933b75164549b29c70ca 1530648 admin required dpkg_1.22.21_loong64.deb
90dfef90269c2f8b5e9b7e0e286de97e 287440 debug optional dselect-dbgsym_1.22.21_loong64.deb
b9599dd98d1660e22b97b6c911526635 576344 admin optional dselect_1.22.21_loong64.deb
f33e19d076173062d19cf460cfc6adf2 504988 libdevel optional libdpkg-dev_1.22.21_loong64.deb
-----BEGIN PGP SIGNATURE-----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=mtDu
-----END PGP SIGNATURE-----
Attachment:
pgp0oYMELNju_.pgp
Description: PGP signature