-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 03 May 2019 20:53:53 +0200 Source: phpbb3 Binary: phpbb3 phpbb3-l10n Architecture: source all Version: 3.0.12-5+deb8u3 Distribution: jessie-security Urgency: high Maintainer: phpBB packaging team <phpbb-l@lists.a-eskwadraat.nl> Changed-By: Markus Koschany <apo@debian.org> Description: phpbb3 - full-featured, skinnable non-threaded web forum phpbb3-l10n - additional language files for phpBB Changes: phpbb3 (3.0.12-5+deb8u3) jessie-security; urgency=high . * Non-maintainer upload by the LTS team. * Fix CVE-2019-9826: Colin Snover discovered a denial-of-service vulnerability in phpBB3, a full-featured web forum. Previous versions allowed users to run searches that might result in long execution times and load on larger boards when using the fulltext native search engine. To combat this, further restrictions were introduced on search queries. Checksums-Sha1: d17c3db726271386c7d30413d17e94f7d4535aae 15560 phpbb3_3.0.12-5+deb8u3.dsc b66e1d6e22965b997fb5fc668eb4080d300a4cf0 98884 phpbb3_3.0.12-5+deb8u3.debian.tar.xz 10594bd62ce7d511098bea36fdd074c95de56097 1510120 phpbb3_3.0.12-5+deb8u3_all.deb 2cb7f89875836db009fecedfd46ad6fce3269dea 5741744 phpbb3-l10n_3.0.12-5+deb8u3_all.deb Checksums-Sha256: 284647888faf4c063de7ce575216e09c21ae7f45e0c3bf645d847dc1147ab6cc 15560 phpbb3_3.0.12-5+deb8u3.dsc b4a16f456c3eb3c5a9550294e72333210cb64aa9c08ef01d60fba13c0f636798 98884 phpbb3_3.0.12-5+deb8u3.debian.tar.xz badd2f28f77898012f303851a9976ac1f3153850f34d7543f2ab725e3a6e0c47 1510120 phpbb3_3.0.12-5+deb8u3_all.deb 92ccb339c4f1089dc271c919cab245e2d12af728e2fd05c18815d8d97ac6b870 5741744 phpbb3-l10n_3.0.12-5+deb8u3_all.deb Files: 8d704ff30039fbf55c5c2b9d5874a0cb 15560 web optional phpbb3_3.0.12-5+deb8u3.dsc a1a39ee7c762a006849ee7bafa1da63d 98884 web optional phpbb3_3.0.12-5+deb8u3.debian.tar.xz e7ee85f81bec2c401264e46e7433f4a5 1510120 web optional phpbb3_3.0.12-5+deb8u3_all.deb 550dcf84148f2d32f1f83c199c3b3650 5741744 localization optional phpbb3-l10n_3.0.12-5+deb8u3_all.deb -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAlzNbnpfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1Hkmf8P+gJ7tguzbD9bIImxopyVivT/QxH0S8PaHFRH ymVWOyhuZ04uvKzPVIL4/qIQ4o3xyXtmIg5n0swiUg+StDLn8dNpY4BsjGON1q13 KVVKhLOmMzLpCcFvW2pi/8d40/OOoPsivryJFPsLhyZmQ5pOBGEVfh2qqet9DyFt j4qaWz1LM/PSEiyiG2Y5dMjflqfE36EeUGumnA/81PNnjZLati4kSuzVobt4yHgJ enYUQebknmX2OajcxFHWlKP6m6BDl+sjnm2dE0VCGhioS2e8SFXskUR3R18WnFNe uFkid0yh2nc/6QpsoI/lwQxcs13LHcdfNPrMQjIdNiJFVAblRuqTnEfNK/WZSZX8 ZZy0P+jb+zvlSHM83KT1Ern8jUogHrgVj8hrMnyiFGzQJjsuWWGsI6YbULsUflxU CuHMg0AM29frIzlI+OyYIavUfaWw7If4PQAUL84tYLsuz8lACD4gLx4y05RAJ5F1 faVsGS7Ns2psigTpp0fbJNAMjA6BOiCckOuxZMsA/7zIHqSAQtTO7sfmPoYXjKpu DwOP6AWVGhJpJBY3Q5NG+/U5VvXqzQiLKhMlcDknrbmLIm3TYn3JPJMvkM9m3ymf OvMOeYnaW57iopOI8+1Xlvhju/E1K+pGbVz1KqbzgXo7fDCLt4cjIDuNYUvCbSJM gYFh7jrE =e0u3 -----END PGP SIGNATURE-----