-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 20 Jan 2020 15:27:02 +0100 Source: rexical Architecture: source Version: 1.0.7-1 Distribution: unstable Urgency: medium Maintainer: Debian Ruby Extras Maintainers <pkg-ruby-extras-maintainers@lists.alioth.debian.org> Changed-By: Cédric Boutillier <boutil@debian.org> Closes: 940905 Changes: rexical (1.0.7-1) unstable; urgency=medium . [ Utkarsh Gupta ] * Add salsa-ci.yml . [ Cédric Boutillier ] * New upstream version 1.0.7 + CVE-2019-5477: prefer File.open to Kernel.open to avoid command injection vulnerability (Closes: #940905) * Use https:// in Vcs-* fields * Run wrap-and-sort on packaging files * Use secure copyright file specification URI. * Bump debhelper from old 9 to 12. * Set debhelper-compat version in Build-Depends. * Set upstream metadata fields: Bug-Database, Bug-Submit, Repository, Repository-Browse. * Add rubocop_out.patch to not run rubocop during tests Checksums-Sha1: ef4700251b907190bf2d1f899c8f492bc3b74a99 1669 rexical_1.0.7-1.dsc 9925974812a30a36e15ba769d9b1b7f91bc42abf 17852 rexical_1.0.7.orig.tar.gz df302ac3bd6143e6517391f25ee06c2cdcf5f496 5840 rexical_1.0.7-1.debian.tar.xz 352f3fead392841b91d16f936695c9d7b0cce43c 13641 rexical_1.0.7-1_source.buildinfo Checksums-Sha256: e10170a2b928f1525d8c1ca88117add7197e25e71f8dc1d76d855b94672e150e 1669 rexical_1.0.7-1.dsc 940e65d383d521ecf6e2a01848d1194d320d872bf61ec59912106ed56c9789cf 17852 rexical_1.0.7.orig.tar.gz cd60b8dc50c76237b18ad0db7e6a7ecfcb4a7f5975634b075eb4509661646453 5840 rexical_1.0.7-1.debian.tar.xz 2ba301b9490b86d04e2f41baddca8ea4c3fac202d0faa37795cab40df4fa93cd 13641 rexical_1.0.7-1_source.buildinfo Files: b171b575faa07cb4175f4a006d5d429e 1669 ruby optional rexical_1.0.7-1.dsc 5d2f25170b5d3c9a0f60e86ac4953ef8 17852 ruby optional rexical_1.0.7.orig.tar.gz c9680e4d1a9a5d95c81408e8dc9f3daa 5840 ruby optional rexical_1.0.7-1.debian.tar.xz 935ae8b46e55511c493dc8f6c811e8c7 13641 ruby optional rexical_1.0.7-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEnM1rMZ2/jkCrGr0aia+CtznNIXoFAl4lybgACgkQia+CtznN IXoYpgf/f3asm2NubNT9iYi/wglrst8kIefnHv3m2gynIazSZq9Wk+xTnrB245vQ xAmw5jyjDJJG+DdUiGGTzqN9VIOg7hZw9yCp3ec0Trrt49QDUOIGqQyoxw8KEkJL Z4BZmkX0+IasNlPCVHwbahQ+CSysQxJvFCmaioVa1wB/4obfOIFCrx2sLPYrNTUl m7sSK1xoEvYtED9WUQw78y6i3dCe+gL/4T9j7d7yTp45JKZGIXJt5+f79ZDf93FB 00YQWQsOcxd5nsGNi/V0Ol4s8wCfkpbe5XUOe3fvvv/hgvP7vldZqPzLzqSszGJX ElOYFI0jXHxS8aQb473FnHLYZlZRCA== =jVCK -----END PGP SIGNATURE-----