-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 10 Apr 2020 19:59:28 -0400 Source: php-horde-data Binary: php-horde-data Architecture: source all Version: 2.1.0-5+deb8u1 Distribution: jessie-security Urgency: high Maintainer: Horde Maintainers <pkg-horde-hackers@lists.alioth.debian.org> Changed-By: Roberto C. Sanchez <roberto@debian.org> Description: php-horde-data - ${phppear:summary} Closes: 951537 Changes: php-horde-data (2.1.0-5+deb8u1) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * Fix CVE-2020-8518: The Horde Application Framework contained a remote code execution vulnerability. An authenticated remote attacker could use this flaw to cause execution of uploaded CSV data. (Closes: #951537) Checksums-Sha1: d7c77bf8ae4d682439f1b2802624173a7511f97d 2096 php-horde-data_2.1.0-5+deb8u1.dsc 721d038e56e78efb1bd7f271d2e8d1116321ef8f 44180 php-horde-data_2.1.0.orig.tar.gz 608cb5ac3131121810fb1bf055d207265a8bb178 3296 php-horde-data_2.1.0-5+deb8u1.debian.tar.xz ecbee1fa4f7885515936ae023dc4b5e8a0d305ef 43122 php-horde-data_2.1.0-5+deb8u1_all.deb Checksums-Sha256: a56563f60ebb56d8c5a5be7047c18f9c770350d3aed1023961515fca37019b2e 2096 php-horde-data_2.1.0-5+deb8u1.dsc 2416aa07cc4f6d5af14163dedd1ba2e764b85e34be358a9bab788e5ddb4125d8 44180 php-horde-data_2.1.0.orig.tar.gz c6b5549a3249b070e0703a9b158cebb95b594c6cb23c90401a40fe2f9c690be1 3296 php-horde-data_2.1.0-5+deb8u1.debian.tar.xz b3b2f52bed872b6d2b49b1cfeeb2e9ac48fa3dceea2546ea7f2c08a816acffb8 43122 php-horde-data_2.1.0-5+deb8u1_all.deb Files: c5b3312c99df8b3e198c6bed01452a37 2096 php extra php-horde-data_2.1.0-5+deb8u1.dsc ced707f8553a4ab296fde760418d42e1 44180 php extra php-horde-data_2.1.0.orig.tar.gz c20bb4e2f1218eeca8a6c0b5f3449f51 3296 php extra php-horde-data_2.1.0-5+deb8u1.debian.tar.xz b439508714da406030a3d56e3ee8e837 43122 php extra php-horde-data_2.1.0-5+deb8u1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEz9ERzDttUsU/BH8iLNd4Xt2nsg8FAl6RFmYACgkQLNd4Xt2n sg8UQA//Ty1HS4Eo4ypNrvqbiS6g/fuS6qGJicIopIrZLCsm7Ta/F0cS2HEyiO7d sHWoXRxxACZZwdwo7BwdCj4WLCh+wuB2tpf9utwEKmb5Yr1HxsB2ntxSjj2DZk6G CUlVwwzJx//Cq63cQf6L1nTiF7GKmtY8NMaRN0yg+GYY9XCfDUBpHZmeNp1olA5v q0KfPUCDA3jcimeeao9YmPDpH/Phi72TncoCeJKsrYShJ9FytOpErL0HXK95eJQT sm9wZsdWXWMe1TGfdRi3X9vdMK4LQHiE8KZ22rGEa4mGiR3+Yz1oaP9IWfZ1LbfN 4HRMYxcDRqL0/ae3ldopPF9UodeA9ltrHNi9AAU6wy9+Gs3hPmlAqdg+PGgHDCBu Kd2TYwba0206/q878bRM2sQyGxK4bJfjfdadV/h9QVz42NW/RU0Ev1ZKRIzdcjUR BAeEWtixZNd9zrQdg1vcy8OABrD/b9POXcmTATVLIZhVtgv9MhpW9M6H66lpNtKx aMLBM58ox1wgKIDb252xx4LDvaVFZZ/7rtyEwj6PDQjGn9BqVr1JoZCmPmOKw41T I7QGnM+QZmbRt2o/PNfmk4xWp+PPOyWdpv0lsF7LIeuA72p6u02hwOUZ1QgZR9GO a7GHl++HL6Q0pAk8Af/fZFpK4M4Ltots6dsMf3fBhaD7W08i3jM= =H44u -----END PGP SIGNATURE-----