-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 28 Oct 2019 19:22:23 +0530 Source: wordpress Binary: wordpress wordpress-l10n wordpress-theme-twentyfifteen wordpress-theme-twentyfourteen wordpress-theme-twentythirteen Architecture: source all Version: 4.1.28+dfsg-0+deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Craig Small <csmall@debian.org> Changed-By: Abhijith PA <abhijith@debian.org> Description: wordpress - weblog manager wordpress-l10n - weblog manager - language files wordpress-theme-twentyfifteen - weblog manager - twentytfifteen theme files wordpress-theme-twentyfourteen - weblog manager - twentyfourteen theme files wordpress-theme-twentythirteen - weblog manager - twentythirteen theme files Closes: 942459 Changes: wordpress (4.1.28+dfsg-0+deb8u1) jessie-security; urgency=medium . * Non-maintainer upload by the Debian LTS Team. * Fix CVE-2019-17669, CVE-2019-17670: Server Side Request Forgery (SSRF) vulnerability. * Fix CVE-2019-17671: unauthenticated view of contents due to mishandling of static query. * Fix CVE-2019-17675: CSRF. (Closes: #942459) Checksums-Sha1: bd5d1b9dcefccf0e00429d520177f5624acf8b01 2600 wordpress_4.1.28+dfsg-0+deb8u1.dsc 072b1a4db3b910a258dcfe04d1496640411bfa3f 10626136 wordpress_4.1.28+dfsg.orig.tar.xz 5ac22b91cfe05640886aad6308cf277ee55cc829 6077232 wordpress_4.1.28+dfsg-0+deb8u1.debian.tar.xz 8b61d5be83a5ef00137f39f63e59f89f5f9e0951 3097232 wordpress_4.1.28+dfsg-0+deb8u1_all.deb 11cfcd47d675bc955b99f07ed794b85c2909e9f8 4220620 wordpress-l10n_4.1.28+dfsg-0+deb8u1_all.deb 25aac48d9426b98d23ebc84bdce1f248c417ea4a 505390 wordpress-theme-twentyfifteen_4.1.28+dfsg-0+deb8u1_all.deb 75e27ac3eab4ea0a8d78503f5bd4347db36cb457 803682 wordpress-theme-twentyfourteen_4.1.28+dfsg-0+deb8u1_all.deb add29d9d73587c241251dbcd0561d355159b3694 323748 wordpress-theme-twentythirteen_4.1.28+dfsg-0+deb8u1_all.deb Checksums-Sha256: 5400bb7e5b4f5f8f733ab34ef15d7d6a91621a6c6ceaa8d1c0079eecc0963a9a 2600 wordpress_4.1.28+dfsg-0+deb8u1.dsc 0f4a68f714e65d94dd8d6a60c11b979bbf967f2adfce881ed58633c690a521b2 10626136 wordpress_4.1.28+dfsg.orig.tar.xz adc5df603f321b20e12278e322ee04e0575f088363d2502cc6c72c39fb0a2ffa 6077232 wordpress_4.1.28+dfsg-0+deb8u1.debian.tar.xz 9f90c8ef6efc71fc319d78b59cc94894be81208b6beada17ad8e323179faeee9 3097232 wordpress_4.1.28+dfsg-0+deb8u1_all.deb 6b124f27a6454682a1459a6a108d3253df148dd236e96c7aa620340626a2b924 4220620 wordpress-l10n_4.1.28+dfsg-0+deb8u1_all.deb e23f56fd8fdf073e003a39cca5a1d119023a8a9a5ec1408e27d3988b89c9c14a 505390 wordpress-theme-twentyfifteen_4.1.28+dfsg-0+deb8u1_all.deb f6b12a3f429efde704a4ed583b96c9d752d1700f3d943ef40d3a8a1b3ad3ef17 803682 wordpress-theme-twentyfourteen_4.1.28+dfsg-0+deb8u1_all.deb 46bea93262aa2784e4654bb08d1dfa21897ca17083ce5084ed2992ea8223e0a3 323748 wordpress-theme-twentythirteen_4.1.28+dfsg-0+deb8u1_all.deb Files: fb2a5791c30115c3007b6a2407dd818e 2600 web optional wordpress_4.1.28+dfsg-0+deb8u1.dsc 02a281adedbb6759276cbc97fdf30e1b 10626136 web optional wordpress_4.1.28+dfsg.orig.tar.xz 9ee7cc1e878812be97706eda12821f9e 6077232 web optional wordpress_4.1.28+dfsg-0+deb8u1.debian.tar.xz 991d9c77dd67b5d4f183ddeac0c3596d 3097232 web optional wordpress_4.1.28+dfsg-0+deb8u1_all.deb a7509aa385459e88b428607aca436e84 4220620 localization optional wordpress-l10n_4.1.28+dfsg-0+deb8u1_all.deb ef9ba63f187da8af727199c79d6656c5 505390 web optional wordpress-theme-twentyfifteen_4.1.28+dfsg-0+deb8u1_all.deb 4182be12799cf146e1498cf03165cdce 803682 web optional wordpress-theme-twentyfourteen_4.1.28+dfsg-0+deb8u1_all.deb a7382b867962bac89d08a95baa2ed284 323748 web optional wordpress-theme-twentythirteen_4.1.28+dfsg-0+deb8u1_all.deb -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEE7xPqJqaY/zX9fJAuhj1N8u2cKO8FAl3BgwoUHGFiaGlqaXRo QGRlYmlhbi5vcmcACgkQhj1N8u2cKO+/MA//ZFW+2tWz4WWCEBZqGSA6WOD9VNds pIIbuTotSzojHyBAv7oymEDYvCFc7ZE4vTJirtKK/yskx0OSpI556fTjv+/bLDym NXClQbyINYIPtb5w4k88x/Tr9EuhiRQB6pwiqbvYIUSiTICSHy3PUVAU/mtg/XOe iBpUjxLLQkdxwAiWhW1gX+3JB5x9a3vbu67kyPpMAkY272/bhvzryajGyvdtt68e yAKDhCB4XcGLHUzG5wXg6bCK/ku2tF69f2ky9VPx2D2QY2xCqvFCt7o/QwjUv3rM 38l3URbPPgr537DRgniy4YUTF+pmJ0W+SolIC2mTjI5ujWoH4ac/aWtnzoijGyF9 DShl1SW0oiPHX1dh6/2Nyy3ik9E8t91s4DIh1+KrH/1AY2YFCSI0pB6hLqX7aZr5 Z+afFq0S06m2D8FNwX4h51v0lfNt05tXWe1zHSBtIthSi/ukuXQ6/lxb7lVsHLj/ iKmCvpxiaWrzVYshpAnP/Grf2JTwbj+IMnRuoXvBBi43L5+F97kwIltz9aBonxng GYNEJqf7hn7n/6ltHlcjmbq/xhzas3M1ga8A6zSJK9StA170gFbz9/V1ocmI19Ll EW+Sw+UDwe9aGuadTrzB9JzRM/h5sK2e/uHerZlnv3tYoJlpyubKtASQoS4Nsw1+ N3/B83F4497B5B4= =jsdX -----END PGP SIGNATURE-----