-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 07 Feb 2020 15:27:15 +0100 Source: otrs2 Binary: otrs otrs2 Architecture: source all Version: 6.0.26-1 Distribution: unstable Urgency: high Maintainer: Patrick Matthäi <pmatthaei@debian.org> Changed-By: Patrick Matthäi <pmatthaei@debian.org> Description: otrs - Open Ticket Request System (OTRS 6) otrs2 - Open Ticket Request System Changes: otrs2 (6.0.26-1) unstable; urgency=high . * New upstream release. - Fixes CVE-2019-11358, also known as OSA-2020-05: OTRS use jquery version 3.2.1, which is vulnerable to the prototype pollution attack. Checksums-Sha1: 50622808603e176d635460d1638e4cd21657d1f0 1817 otrs2_6.0.26-1.dsc 0f1a5d5d19b44181c5eabb4e0e2456de600b9d3e 25631469 otrs2_6.0.26.orig.tar.bz2 2bb851f8c3e4ac749879f93a362c5f72f8d4bee8 30600 otrs2_6.0.26-1.debian.tar.xz 33a0a82c9ff63c3ba4555f996fd809bc25539723 9809540 otrs2_6.0.26-1_all.deb 561933a9ccd63b72c70c3280c653e38a6bfe5428 6677 otrs2_6.0.26-1_amd64.buildinfo 33514ee8b3a3775716aa3693e39b5d5035e00f63 256836 otrs_6.0.26-1_all.deb Checksums-Sha256: 0f90f69912bc6d48926a9f537f489a18e659152d61257ef71c322e49425a6079 1817 otrs2_6.0.26-1.dsc ca52a396e8b7691b7fd94778274a86df683b0d96194d46c76cac9df46a985f19 25631469 otrs2_6.0.26.orig.tar.bz2 02a4c921f92e4b01f4e7afdb03a920bd02258c1a6664c5ab32cb5219445400b7 30600 otrs2_6.0.26-1.debian.tar.xz 8d25fb605881413222019936325b1a469ceba3515978c7c63be3b174f72fc1d6 9809540 otrs2_6.0.26-1_all.deb 19c96067cfb43bf2a8ae3c83a4d28b7ce74e4fe13f994fd60339a81d21f387cc 6677 otrs2_6.0.26-1_amd64.buildinfo 19d1a6ed3ed6ca53e339d02ef358d1458a65391e1cb87f0a104951c26199043d 256836 otrs_6.0.26-1_all.deb Files: b9cf9adff395aee7abf998d64e525181 1817 non-free/web optional otrs2_6.0.26-1.dsc da7a99201bd0a2a640441b3eef3a3815 25631469 non-free/web optional otrs2_6.0.26.orig.tar.bz2 150f733a2e21398437598f7a0aa92ec9 30600 non-free/web optional otrs2_6.0.26-1.debian.tar.xz 44122e24e2911da2ce5861671373cf1b 9809540 non-free/web optional otrs2_6.0.26-1_all.deb 23bb8109caa251b7069cf804356c3eb2 6677 non-free/web optional otrs2_6.0.26-1_amd64.buildinfo 6145801ac2552c6f847c50b428f3c2d1 256836 non-free/web optional otrs_6.0.26-1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEWKA9xYJCWk3IuQ4TEtmwSpDL2OQFAl49dOkACgkQEtmwSpDL 2OSc6w/7BuvtpKo1SvjU5WawCHTKONDokEGpy9JeoAymcN6Zv8s0n/7738aL6Jo2 ssYmXGUEONct/ehdqB53Dy4wHzCQ375+uJPKT5p36C7j28kz9hbW3fqt60niq1mo Sdkr5Pi3XzT6Xx06eWgNL9FIatuPkbhQSud+1zWGgEq6dnfUI7m/9kM1xTy2JUHx EKxSxZUOGxp2eimYq4cAnl8otcfNaFL6BRjBugh/emKyWHplEnqf25tf469L1wqN 3YfgPhbEbJiYb/qUrFfLpxdZaXLNykjPa3OENrzqEgULWq9n04+o/W9T0j9HxT7A OAYb2+xKXkf97ZQpjrK78qJK+c7Zl4qswFz7XGgxNIZdWae7cPeRThikqorc/1SE hhJAGL6b8d9i/17XoIMUJ6DfhAhUJ9FWZZccTI2XqbP0zkaYDrUGYrqWu6dWXXtr 20yndGJ2reljhbvO94tnpkkIJdsYKsraekohsqNz/r8PpR/M5maLSYcgF93ntHam +jLP7YGD4bMdx8rZQ+VBbOZlbY3E2X0s0qgm0Lvbm+0vT7zK7V+7jsvoy1ajdJ4c PswZvaAElpVyUSh7WCzNFRRJYj5qstZQ1WfsmJAHvelTJ8luQRLW6Npga2Fhub3b /jJ4ZYGodunf6UNRle0//H7loGgO0dSPymCLK9v7Cw5Inx4uwXA= =hzFR -----END PGP SIGNATURE-----