-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 23 Aug 2019 21:41:53 +0100 Source: commons-beanutils Binary: libcommons-beanutils-java libcommons-beanutils-java-doc Architecture: source all Version: 1.9.2-1+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Debian Java Maintainers <pkg-java-maintainers@lists.alioth.debian.org> Changed-By: Chris Lamb <lamby@debian.org> Description: libcommons-beanutils-java - Apache Commons BeanUtils - Utility for manipulating Java beans libcommons-beanutils-java-doc - Apache Commons BeanUtils - Documentation Changes: commons-beanutils (1.9.2-1+deb8u1) jessie-security; urgency=high . * CVE-2019-10086: Fix an remote arbitrary code vulnerability where attackers could specify a malicious "class" parameter. Checksums-Sha1: 44de450273a9329066093faa289e0925a5eb0d01 2530 commons-beanutils_1.9.2-1+deb8u1.dsc 7817503fffe5c0f4d6b3ba7a840cea7f4eba199a 396910 commons-beanutils_1.9.2.orig.tar.gz 17bdda55d199b7c1ff7ab9e54bfd642ef573c0d2 5492 commons-beanutils_1.9.2-1+deb8u1.debian.tar.xz ac63a20c1b4c7c42544bbb410d1f56cf9db03539 216606 libcommons-beanutils-java_1.9.2-1+deb8u1_all.deb f331d8a7d3a331dcdf3265495b701289ac4644d4 1628774 libcommons-beanutils-java-doc_1.9.2-1+deb8u1_all.deb Checksums-Sha256: ba2c764455cd7ea99a0c56efaed78145c94a0a1d5cba23e3880050f0f844ed40 2530 commons-beanutils_1.9.2-1+deb8u1.dsc 91fccad3b65f278bad98df1aa8467f2d3df6095f41b2db39d2c12863fb2c0049 396910 commons-beanutils_1.9.2.orig.tar.gz 55e6f0f75950a8a41383c8458d6331c178c82e02b95fb3a473a4be4a00a63f2e 5492 commons-beanutils_1.9.2-1+deb8u1.debian.tar.xz 1d8a0ffe98c55f41421780199103390d9b24d5a4f50e1cf66a3181818bc05b9e 216606 libcommons-beanutils-java_1.9.2-1+deb8u1_all.deb 2106fca93928c9bb52ec2e8d7da15643f38d2366ba932898866858410f2da3b3 1628774 libcommons-beanutils-java-doc_1.9.2-1+deb8u1_all.deb Files: 4e96e5ff392ec2f0cc1c4b2e4d62cc7e 2530 java optional commons-beanutils_1.9.2-1+deb8u1.dsc 13233b217eca7af8abdfa66a20dcc020 396910 java optional commons-beanutils_1.9.2.orig.tar.gz 957714ef48e325b8bfdc0244e3d7ec3f 5492 java optional commons-beanutils_1.9.2-1+deb8u1.debian.tar.xz 29e7f3624e5282d126fe628a82521e1f 216606 java optional libcommons-beanutils-java_1.9.2-1+deb8u1_all.deb 0df43aef0a2067052647e2c052be720d 1628774 doc optional libcommons-beanutils-java-doc_1.9.2-1+deb8u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEwv5L0nHBObhsUz5GHpU+J9QxHlgFAl1hTjAACgkQHpU+J9Qx HlirbQ/5ATBmrZ1pVrur/4+KtSK97eQNfrmQHYTe6Mbn5l9vWgCI6oboIEm6rI6f UTiD6xOjWYO70UKHXfIVbJCWtB03KO65dogSWKd/8zoXvFuufj28fjh4/q26SsHs c7B+RbxKivNY3quPB7M7d7JLWwO8COt4JX5/X/6eNdPYFS4uZhlp1YLdCHCcyM3t BTh4iIQqJhtPWnlT3qQHAk6tITAX0UdKdXFNyG9K+oehaQEi158tx/Xxzf5Hwhh+ wYzP/oq29A81loDGYvpOy01K4c7FKCGErkwoUjbEA3ADgqYKoYutBjFTa8/Fo0nC /aydjHxkqlC26fy4ca+YFV39chdnv36vUvX84LOfbZ9JP4Gzhs4mA/qU1v/7DOtQ NcO4+I/c2C8VU8j0UmbotMSOetp1pzuoL1cIIc3QkigHNeoVQxaQSDm12Q8xLRL9 RowRDCYk0/iox18qBj77YooiW8/LYcDLhvGISMnUnXZ2iSR9nIKotQMtFPDUkdeM wzzZBsVRF/ZijDfCLkqUeGBUFVyMK17gBDfIXscQ/TKQXmadMDV8xgnsvfPW2jcf sxtQxNUGsncEfVs36gAEzmcRTQM/q1Xq0k9H3IPp/ZttJxS2XdMeQVt67+TejUaM nX8YdfT2ANTS/wOxMMkFvy21TLV+swz0kxMLMPZe3oYdnzidq40= =CCov -----END PGP SIGNATURE-----