-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 25 Apr 2020 19:03:02 +0200 Source: radicale Binary: radicale python-radicale Architecture: source all Version: 0.9-1+deb8u2 Distribution: jessie-security Urgency: high Maintainer: Jonas Smedegaard <dr@jones.dk> Changed-By: Thorsten Alteholz <debian@alteholz.de> Description: python-radicale - simple calendar server - module radicale - simple calendar server - daemon Changes: radicale (0.9-1+deb8u2) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2017-8342 Radicale before 1.1.2 and 2.x before 2.0.0rc2 is prone to timing oracles and simple brute-force attacks when using the htpasswd authentication method. Checksums-Sha1: 8de383697156c668d04de98a3c1217e397e90600 2214 radicale_0.9-1+deb8u2.dsc ed82a88f818bd96a1be57cd8660bf3cf2636048b 47833 radicale_0.9.orig.tar.gz d0c4d022b297107b7a4dff0e64dbf5cc13487daf 23920 radicale_0.9-1+deb8u2.debian.tar.xz 96d9517727aa1cbf5f898a0d25135ba2d4e5984c 26992 radicale_0.9-1+deb8u2_all.deb c505038a123d2b9bf109125a0e7a2dc168d963dc 33792 python-radicale_0.9-1+deb8u2_all.deb Checksums-Sha256: db9227272e7985c52ab284a89f5bdad1f5611cb03c980dbed5fb76960f7f2d15 2214 radicale_0.9-1+deb8u2.dsc 512ae0b0af552bfd921e004ef795d1b42f090188e7afa2fa96276512be5a1205 47833 radicale_0.9.orig.tar.gz defd376fe6788fc9a27819ae4c0303cbf0716bd004a9fe0a15e3abf10e41e849 23920 radicale_0.9-1+deb8u2.debian.tar.xz 4d9f8ed7ccb13cb3726385975b3db6f0bc44227d1617a9455c20add55abc8638 26992 radicale_0.9-1+deb8u2_all.deb a579e36c7101a7d958292d3d52cb5768b9bfe364eb4bdacd1d314776dda60590 33792 python-radicale_0.9-1+deb8u2_all.deb Files: 9b6c40cc8cd2c21df3d2a12a48280bc8 2214 web optional radicale_0.9-1+deb8u2.dsc ed4043f3d5659d8f5e5954db3ffd177a 47833 web optional radicale_0.9.orig.tar.gz 1e017d0e05a7da23f7aa554374435424 23920 web optional radicale_0.9-1+deb8u2.debian.tar.xz ba400ce4eff75920e23ffd08c221196b 26992 web optional radicale_0.9-1+deb8u2_all.deb b38c4cc0c5b1046a8517ca62eb9cc55f 33792 python optional python-radicale_0.9-1+deb8u2_all.deb -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAl6ke6FfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYRz/2EACYxZ3oBvBwGAO2Ly/Ktj1s168sz8Hj zKPLycoc2kLgEF0+Z/7JXcyCSZZNF0dAg74embfm0EC0B+7c4w9TFUg2Djr8lDeT hyJyWq+pJj2+JmfGePIJZWO4fO2Wzbsa1vvGk+pAfJHXUbtrINfgsXCfc2uODIQu TEPBljWpWzHFb4bLbyl3Fgg+SRLXtbyltTHUabBqB3APkgW0KK13OZTPjDi98nds n30wgcr9gkYbu0q8wvMw2KioSaiZ5ngfR6skZpaUiFW/Ahj5QwKwqX9fyndS2GzJ lN3ZxJaPLYDiJkF1q8vdz/v+njP1jJUK5AMVgW5gBpw3uqUg/0jBQipvKiw1bttf SmPPBMHSvz0OpyEHMP2OSb615L8N3i1FNiaCsBWfTZIG0ZNpl6j3L+DZAO9z5Kd4 Za6QOldiveh4ZslfDFsW+FsMqIeA+EhfFCtmxbiw687TrvHxzEUMqbsgha1LfFj7 s0fwR5w7mVvFfiHh5tdyPtWXt8q5/PSDcedRJ+nEQG3pFJmWzWZFltznGIdcK0tX VL+MuBz/4VKASf5SstmSxlXu2XjfaM6t3bZ8nVykNnH5Tg5nDGYc84c50w6XKnL8 86/irJp/V1xQFLsSwGv53jIQm5duLWiSjArwT4Xzn4zcYksuOyhNGpTcThm/EZ9Y aTFim1tUs1NPaA== =rmUU -----END PGP SIGNATURE-----