-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 01 Jun 2020 12:22:42 +0530 Source: python-httplib2 Binary: python-httplib2 python3-httplib2 Architecture: source all Version: 0.9+dfsg-2+deb8u1 Distribution: jessie-security Urgency: medium Maintainer: Andrea Colangelo <warp10@debian.org> Changed-By: Abhijith PA <abhijith@debian.org> Description: python-httplib2 - comprehensive HTTP client library written for Python python3-httplib2 - comprehensive HTTP client library written for Python3 Changes: python-httplib2 (0.9+dfsg-2+deb8u1) jessie-security; urgency=medium . * Non-maintainer upload by the Debian LTS Team. * CVE-2020-11078: an attacker controlling unescaped part of uri for `httplib2.Http.request()` could change request headers and body, send additional hidden requests to same server. Checksums-Sha1: 320815e36b73738641cf20d74f98988e7737ce07 2236 python-httplib2_0.9+dfsg-2+deb8u1.dsc ff90f49af8d867e2292971b29a1baaa06ef61030 314257 python-httplib2_0.9+dfsg.orig.tar.gz 8cd02a51ef6e50ff050d10ccb69e703a76f4115d 13920 python-httplib2_0.9+dfsg-2+deb8u1.debian.tar.xz 261f57cbfebe8adafcc3a341cbcefd1ab51e30d0 39030 python-httplib2_0.9+dfsg-2+deb8u1_all.deb c04472e2820807fc3ca9b519961643050d788d2e 32954 python3-httplib2_0.9+dfsg-2+deb8u1_all.deb Checksums-Sha256: 24844b894d82c4dc713749afab006a34f5233c15c83c584ebb1f7896d55da991 2236 python-httplib2_0.9+dfsg-2+deb8u1.dsc b7d8aaa925b6753ba39b27349926abf964cda0ef2332af6be03c0d62181993d4 314257 python-httplib2_0.9+dfsg.orig.tar.gz c43ff2732a2e1ce99e2e25114b6cf5efb09529f20bc33e33c615c5e72440b981 13920 python-httplib2_0.9+dfsg-2+deb8u1.debian.tar.xz e41785ccdfb804aef6a4bcb613a892f4aa533a82d0b958ef1840e582eb96e04f 39030 python-httplib2_0.9+dfsg-2+deb8u1_all.deb 9e211ccce21fe2856c787f69e3e3444c4a7ff157c949e8ce28ef682065d38515 32954 python3-httplib2_0.9+dfsg-2+deb8u1_all.deb Files: 1a422f3ac3a82433faadd82cac388ea1 2236 python optional python-httplib2_0.9+dfsg-2+deb8u1.dsc e98cdd4ae322135c747d35c88ca5d5e5 314257 python optional python-httplib2_0.9+dfsg.orig.tar.gz d80756b67c91530203fc9942257a5d32 13920 python optional python-httplib2_0.9+dfsg-2+deb8u1.debian.tar.xz 6ef4113112de6a18fe7481fe15d135d2 39030 python optional python-httplib2_0.9+dfsg-2+deb8u1_all.deb 79af2671c6dde6f72b31a1d2cce3be07 32954 python optional python3-httplib2_0.9+dfsg-2+deb8u1_all.deb -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEE7xPqJqaY/zX9fJAuhj1N8u2cKO8FAl7UuT0UHGFiaGlqaXRo QGRlYmlhbi5vcmcACgkQhj1N8u2cKO9FOg/9Gwf4UvrKR01gG3dW06rhqEAKnQBV MIlOtXidcAsMwDZHRaaZybNz8rnYxXZkEElw24xCWvgaPCiTh/+Q7Em1ZKcl1ghZ G1xG7jSrRo/mfsS6L9Y9cXeRjpJihL1m61QUoXJDqRwjTkSlaGXXwJgUThfzoGxd 7q5qecOYzerwWRL4xDYc8I3js0uQ3KgtLJ65+9tFNya4NuWNsMsy07GiI8LWzctg 42HRTcmgmeyyva44hYFAckr04VPbzMbLGTd1MRDzqVk3sVynFCRUXh+H+FzRppET U+x+NNqiREW3dpGZBdLxkSFCZB9eyJ5Z7m0EstL45DjHGhhcA51xQRtMHB1mPIEC RRYnbBQimGIKArPECro4HQWnZ2iUbB80yQlYv/ditAlG720XLdowFTcYIpbgLf6x LvH1OqWJUSaOlPcSzIFg7I9XEDOFHGdASXVwuQ/R8iEwCvv7lBICZ2ppt5mRZJPe 49673oGLm3Da+QeVolanCb/odFanaPJ+HPToEpKE2aIGYhdmj9KZCF6scE44MvT4 FnAJ+RGOdDeABf5Ism4xuTP2HJj8QLdqOuSJEr8U3xXjKxTjxtzgvix1X+SopdOL v769O4D+Cevk4nTvwOB7LcJs5aSORsznkV+7NsVvotz1amn9j0fG2OER0xMcqn6i QWGPYPgfalPBJEQ= =HMY+ -----END PGP SIGNATURE-----