-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 06 Oct 2020 15:57:07 -0400 Source: tigervnc Binary: tigervnc-common tigervnc-scraping-server tigervnc-standalone-server tigervnc-xorg-extension tigervnc-viewer Architecture: source Version: 1.7.0+dfsg-7+deb9u2 Distribution: stretch-security Urgency: high Maintainer: TigerVNC Packaging Team <pkg-tigervnc-devel@lists.alioth.debian.org> Changed-By: Roberto C. Sánchez <roberto@debian.org> Description: tigervnc-common - Virtual network computing; Common software needed by servers tigervnc-scraping-server - Virtual network computing server performing X screen scraping tigervnc-standalone-server - Standalone virtual network computing server tigervnc-viewer - Virtual network computing client for X tigervnc-xorg-extension - Virtual network computing X server extension Closes: 971272 Changes: tigervnc (1.7.0+dfsg-7+deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the LTS Team. * Fix CSecurityTLS.cxx. TLS certificates are stored as authorities, meaning that the owner of a certificate could impersonate any server after a client had added an exception. (CVE-2020-26117) (Closes: #971272) Checksums-Sha1: 9de6b94ec00dff70475a9dae55bab1297120d45e 4666 tigervnc_1.7.0+dfsg-7+deb9u2.dsc 705f13d1a9d08c9560bd3bf15ffb7795721e5a32 925944 tigervnc_1.7.0+dfsg.orig.tar.xz bf81f9bdd76d21f1f4a6d22a9b53a1ed8856ff92 70816 tigervnc_1.7.0+dfsg-7+deb9u2.debian.tar.xz 08868a84990b065ef0d8ffbe9aa5542e82ed84d0 16557 tigervnc_1.7.0+dfsg-7+deb9u2_amd64.buildinfo Checksums-Sha256: 8c731c51bfe53c6ca246b78e6099c222d569da1f25af0f1751df709445f84f02 4666 tigervnc_1.7.0+dfsg-7+deb9u2.dsc dd73aabd9ca713bdda61e9b623cf24a474052ac63916fc11f92cdeae0c388440 925944 tigervnc_1.7.0+dfsg.orig.tar.xz 0d4ee5242c549793c45a219401922a2275781b09337f34a2d79b8ecc74172419 70816 tigervnc_1.7.0+dfsg-7+deb9u2.debian.tar.xz d8717044e4e35b9002e5c486e8c79cdd322ea9aee6aee3fddd911d1dc06f0d35 16557 tigervnc_1.7.0+dfsg-7+deb9u2_amd64.buildinfo Files: f35559bbe6f6049991049cc25bdbdfc7 4666 x11 optional tigervnc_1.7.0+dfsg-7+deb9u2.dsc 280997838dc1b74c9ca8cbfc29e5e190 925944 x11 optional tigervnc_1.7.0+dfsg.orig.tar.xz 20197978be2278bd0aedd5f6463abbd2 70816 x11 optional tigervnc_1.7.0+dfsg-7+deb9u2.debian.tar.xz fa5973d92bf05e40cad16770eef5a826 16557 x11 optional tigervnc_1.7.0+dfsg-7+deb9u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEz9ERzDttUsU/BH8iLNd4Xt2nsg8FAl981/gACgkQLNd4Xt2n sg9oIg/7BDmcodJNwLMPxGtN1YtB2WtF4Hnar2vY3l5iaZQJ2TG0Pkr6vprMmfYs 6BAlWxw6/9L6S+jaQeC9DhTMaGmknwnCSSbApm+oi0z8Ngk53sWofAYACeyLsbb+ lj25U5XpMsHdcVPHQUzhxfS0vQxFad2qiWMcclDeNgy/Cj/TpaK7AeounHN/7Wrh 8p9L75prmacdcEcaXx0md958pLx9ffp0v7JswVrSz1apo6n9vd+DsteFLtUz6Tvy Voap/NnWCST6UJuHCmqIurSrKU6+xUQF+XrmsvHOP/jkf4rV7Uff3UWGp01XpIL2 6V4ffPAbpoXWU+FqvMyquiGZ0GG6V4ZbEi3jdtNjDDZypqPlETztvuDN3N2P7vEi Df/K9ifIPXdQ9ayRVp5qyBu8XasRVI+hUSSZ8MsdKFVQBddYfw/Hwup1Jr3rD0q5 EjYpQT/X8M4mTt13gRO3AG7Ut6RwV0ddHQAZOkHOMI79wEM+YchGTN55j+lpybQt UF5imHR6A3gKAkauR95FoIlgNN6vbn5JxdPcxPaTYHaVUOCsroiL0v0aHAEs8v/u g8cwuoNswObLXPqIZmW2WBAaWLlSVsSvJdQlhYzuGPCJMdEjhAgzuekUoljL8SzV 3MWtMs5vQBN83cWV2d7mhFvSuVN5RtumYjLctoC1aYkEEM4sSmY= =HZz4 -----END PGP SIGNATURE-----