[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Accepted ucf 3.0043+deb11u2 (source) into oldstable-security



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 16 Jan 2025 16:53:58 +0000
Source: ucf
Architecture: source
Version: 3.0043+deb11u2
Distribution: bullseye-security
Urgency: high
Maintainer: Manoj Srivastava <srivasta@debian.org>
Changed-By: Chris Lamb <lamby@debian.org>
Closes: 1089015
Changes:
 ucf (3.0043+deb11u2) bullseye-security; urgency=high
 .
   * Non-maintainer by the Debian LTS team.
   * Prevent a potential command-injection vulnerability by initialising a
     variable that is passed, unfiltered, to the "eval" shell function.
     (Closes: #1089015)
   * Deliberately uploading with a version number that skips over +deb11u1 due
     to a conflict with a previous upload:
     https://lists.debian.org/debian-lts/2025/01/msg00030.html
   * Add a debian/salsa-ci.yml.
Checksums-Sha1:
 7b48d2dca23b3d84e515a87190d429759bf24829 1554 ucf_3.0043+deb11u2.dsc
 07e3a49064ccb4b715cecda84b7b5716a0e7ac08 70864 ucf_3.0043+deb11u2.tar.xz
 82dbc619aa619b017f343e1db3536a91b1178e9c 5948 ucf_3.0043+deb11u2_amd64.buildinfo
Checksums-Sha256:
 729df649cb262cf7a023dcf9028e657c15ad6ede2e1a1900cbe51eb1fc627aff 1554 ucf_3.0043+deb11u2.dsc
 a4e6d85e60bd0ad5c936ce61b8b89e3daa2da1f37fa6045e2cd4381583b1fb3f 70864 ucf_3.0043+deb11u2.tar.xz
 505a1780b87e4c3708f61f25c1eaa75ce4909895fdf7de8ff900592eca233fff 5948 ucf_3.0043+deb11u2_amd64.buildinfo
Files:
 2a40eb6e71a362ba82e492d6b5bb9f05 1554 utils standard ucf_3.0043+deb11u2.dsc
 b6aaf5588f35b71f118565b48c7ce9da 70864 utils standard ucf_3.0043+deb11u2.tar.xz
 6a3030e5909d8f0419ac395a1467bb7d 5948 utils standard ucf_3.0043+deb11u2_amd64.buildinfo

-----BEGIN PGP SIGNATURE-----
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=hZbX
-----END PGP SIGNATURE-----

Attachment: pgpVyOA4jp5hM.pgp
Description: PGP signature


Reply to: