-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 25 May 2020 22:06:47 +0530 Source: salt Binary: salt-common salt-master salt-minion salt-syndic salt-ssh salt-doc salt-cloud Architecture: source all Version: 2014.1.13+ds-3+deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Debian Salt Team <pkg-salt-team@lists.alioth.debian.org> Changed-By: Abhijith PA <abhijith@debian.org> Description: salt-cloud - public cloud VM management system salt-common - shared libraries that salt requires for all packages salt-doc - additional documentation for salt, the distributed remote executi salt-master - remote manager to administer servers via salt salt-minion - client package for salt, the distributed remote execution system salt-ssh - remote manager to administer servers via salt salt-syndic - master-of-masters for salt, the distributed remote execution syst Closes: 959684 Changes: salt (2014.1.13+ds-3+deb8u1) jessie-security; urgency=medium . * Non-maintainer upload by the Debian LTS Team. * Fix CVE-2020-11651: class does not properly validate method calls (Closes: #959684) * Fix CVE-2020-11652: improperly sanitized paths. (Closes: #959684) Checksums-Sha1: 4372b5a040021750445e36c7e2d0429495621b69 2494 salt_2014.1.13+ds-3+deb8u1.dsc 92a5ec686e3545f60e0f6ed72c38251757b07892 2788824 salt_2014.1.13+ds.orig.tar.gz 7452e08d7355b3d5e097f9808de23b4abd077542 26512 salt_2014.1.13+ds-3+deb8u1.debian.tar.xz cd355edaa3c63828ea365c87731614bbb16e9d1c 1361068 salt-common_2014.1.13+ds-3+deb8u1_all.deb b50648e55a0254b735ceccf0b14348c58d5757f2 35606 salt-master_2014.1.13+ds-3+deb8u1_all.deb 4da3186b1986c61ca9fef6289c89784403227fb0 26620 salt-minion_2014.1.13+ds-3+deb8u1_all.deb 18b65792a82d5ea7855d64b4d809288f338a687c 19376 salt-syndic_2014.1.13+ds-3+deb8u1_all.deb d806efd0552437fbbbb16ce62173b83e5de96178 19014 salt-ssh_2014.1.13+ds-3+deb8u1_all.deb 6cc6eb3275177002c319f8ebc080ca681d5aa072 1528934 salt-doc_2014.1.13+ds-3+deb8u1_all.deb ed75464a2304e15a718719f31d4f46067e0f6eb0 18824 salt-cloud_2014.1.13+ds-3+deb8u1_all.deb Checksums-Sha256: b75a61731bdcf6b2694e12f9093cd578531fcdc6b808d7ab084782c4df5b2a66 2494 salt_2014.1.13+ds-3+deb8u1.dsc 4af47109e89f2526c778d54a8f581cdd286ac4f87fdbd5e9c0aa5dc7bb3e3ce8 2788824 salt_2014.1.13+ds.orig.tar.gz a25096cf0ce730de3896d1e78ff032678e2642cf88341d27f34f641f1afdee36 26512 salt_2014.1.13+ds-3+deb8u1.debian.tar.xz d3f7ea23ce0e4c78555d7e4aec795c168f5f45be0494e6b0b6888d3b3f251a45 1361068 salt-common_2014.1.13+ds-3+deb8u1_all.deb 30a44df6cdb3c0958aca07754d244e11e401faf209fddf302b82edb45662d0e4 35606 salt-master_2014.1.13+ds-3+deb8u1_all.deb 7f55905098a749f9a8cce9632404b98550a4e96d155470001b538c96f195104d 26620 salt-minion_2014.1.13+ds-3+deb8u1_all.deb 4553ec9e23ad5de8f0435fd70a148fd1c9f76a5abd92e2f08bae43d0dfd619d8 19376 salt-syndic_2014.1.13+ds-3+deb8u1_all.deb 8a7f9afb4b58ad1f65ebe29f991614a29bde74682baed4f1975194295354772e 19014 salt-ssh_2014.1.13+ds-3+deb8u1_all.deb 258a7ec87d876244b8e558758139a8f97d354decf68e174cee043f8fc6ac9967 1528934 salt-doc_2014.1.13+ds-3+deb8u1_all.deb b384e0afeeb3f1718bfd51fbbeabb901ddbf10153a33acae1dcbca0e2636ce90 18824 salt-cloud_2014.1.13+ds-3+deb8u1_all.deb Files: d3a44e8175f22d84bfdbf27a4eba601e 2494 admin extra salt_2014.1.13+ds-3+deb8u1.dsc 591d0c6bff75b114c5768a9e7aa43eed 2788824 admin extra salt_2014.1.13+ds.orig.tar.gz a8b7d7ce6b3640a38265a559f7163ccb 26512 admin extra salt_2014.1.13+ds-3+deb8u1.debian.tar.xz 3fc7bb826093d19d6b7306ec3b7ea6d6 1361068 admin extra salt-common_2014.1.13+ds-3+deb8u1_all.deb e92033fe1b73618d9ecaf675ffbe0da9 35606 admin extra salt-master_2014.1.13+ds-3+deb8u1_all.deb 4f3e8387cdd33b8da0f7ab2ef04df168 26620 admin extra salt-minion_2014.1.13+ds-3+deb8u1_all.deb 2fa9fefdf17ebcc2cfaf8615a3a26d7a 19376 admin extra salt-syndic_2014.1.13+ds-3+deb8u1_all.deb ff66313861872bcfca578f0715a471f7 19014 admin extra salt-ssh_2014.1.13+ds-3+deb8u1_all.deb f09de0f9d0a9376c51687a6a896d9dab 1528934 doc extra salt-doc_2014.1.13+ds-3+deb8u1_all.deb 4bde06e95ac60f0e18853c9a6ed9c432 18824 admin extra salt-cloud_2014.1.13+ds-3+deb8u1_all.deb -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEE7xPqJqaY/zX9fJAuhj1N8u2cKO8FAl7RMysUHGFiaGlqaXRo QGRlYmlhbi5vcmcACgkQhj1N8u2cKO9mDw/9EzH/mZOWnP6RHkv6GJPgnDNUMUT7 DR20qE48daA9Sam1RHWdFbs+lnC+7CViQYBgJZIBos/EsCyiggi5K8sZCPcS9JwG UTC59qEVqIpPg6dzDG8ToRLxrT7acfK8Zj2gAC9sQb7HmKg9vSJO3a5QYRxPXowv C9of1sM75HW5bQkm37Ps7Cn8QD0RZKOAM00sdvmO2LQUsUZAi7EorGVBmZKOIS7M nnZfaGwudKl71DIw2OxmIzjhwTJZS2RGJayY3wPRpfBTSrWkYmVp6FCp4vSOaSpJ PFRTR2GouhVvZC5eYYOfjHZM83A2gxAFHdnBI5QRBDtGFoPBViyAYw2Hl0vc4WPO iJAKnxMG1amOFu770Gjmh0bgnGwZYNJbngPXzRI0ZJcpHCCh2vd2XoNcPIfLEYsv 15mLu9hJzcKkGhMe1ZVAF9Rknne2MWqAhWVuHFext9WCxrbSIrqYCqxupMn/lOzW v6cosFRYoeXm8MMw6yFPJb2ZEwq6ihJWauWR/FE8idzMQe9NYHesVTeMFxvEoeZv b0/WMMI1O40qgQURl1PRlwxHqa6GM6fQhOeCR8+JrMNYVC7C4Uw+Xn/1G10fmyl/ mLF5H9/exQJgqbVTNDflVBMU8/6jcJRqRJZYsm/6hdst4Bahz5nCbPYCk67JEp41 SwhmaNfV9O7Znwo= =14Se -----END PGP SIGNATURE-----