-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 29 Aug 2020 17:24:55 +0200 Source: php-horde-core Binary: php-horde-core Architecture: source all Version: 2.27.6+debian1-2+deb9u1 Distribution: stretch-security Urgency: medium Maintainer: Horde Maintainers <pkg-horde-hackers@lists.alioth.debian.org> Changed-By: Mike Gabriel <sunweaver@debian.org> Description: php-horde-core - ${phppear:summary} Closes: 909800 Changes: php-horde-core (2.27.6+debian1-2+deb9u1) stretch-security; urgency=medium . * debian/patches: + Add 0001-CVE-2017-16907-Escape-user-supplied-color-value-and-prevent-XSS- vuln.patch. Fix XSS via Color field. (Closes: #909800, CVE-2017-16907). Checksums-Sha1: b3b1fa8e5f02461d1f2fb893e920ad5c86f23834 2223 php-horde-core_2.27.6+debian1-2+deb9u1.dsc 26960dffcae35cbc8cd2bcd271f12c4a8a3323ea 1529162 php-horde-core_2.27.6+debian1.orig.tar.gz d0f330a50bf1c149c69d9693732adf813e60c318 23556 php-horde-core_2.27.6+debian1-2+deb9u1.debian.tar.xz 0861778dcce53ce7bf6d8afdbc4306c56c222bfb 1133168 php-horde-core_2.27.6+debian1-2+deb9u1_all.deb 5ae1a91e9ae8b3a16ca9b5ab11085e03e57d9013 6667 php-horde-core_2.27.6+debian1-2+deb9u1_amd64.buildinfo Checksums-Sha256: 479888196bacef2cde987287dbdd422004814b3e6ec8ef572d4eb243b745d5e4 2223 php-horde-core_2.27.6+debian1-2+deb9u1.dsc 6a24c86300198c8dc8649da44438befafaa7c4a1b33c71fb4a6d7e374689e611 1529162 php-horde-core_2.27.6+debian1.orig.tar.gz 21e58410638d4b623fc23767370c2a084dc2e7881cbcefa9673cf0841bf8e43b 23556 php-horde-core_2.27.6+debian1-2+deb9u1.debian.tar.xz 604f0a81f63e70c02e3bb3c0d70aff1e7db9691e20d2f0c8b1da6f14f825e939 1133168 php-horde-core_2.27.6+debian1-2+deb9u1_all.deb 720c4aa2306196961232edb196e42fbdac080e7a24dda0dd7950582efde64ad2 6667 php-horde-core_2.27.6+debian1-2+deb9u1_amd64.buildinfo Files: 0b290555182b38f52f20ceb418e829cb 2223 php extra php-horde-core_2.27.6+debian1-2+deb9u1.dsc 77fb6a23aaec8a3a415bc39125949bd8 1529162 php extra php-horde-core_2.27.6+debian1.orig.tar.gz 1a13065bacec851a7e4fa70940e3a79d 23556 php extra php-horde-core_2.27.6+debian1-2+deb9u1.debian.tar.xz 2c435ad0accbe26851ad9519db8d72eb 1133168 php extra php-horde-core_2.27.6+debian1-2+deb9u1_all.deb 999ef38c678870eacb2b2a82de0ba934 6667 php extra php-horde-core_2.27.6+debian1-2+deb9u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJJBAEBCAAzFiEEm/uu6GwKpf+/IgeCmvRrMCV3GzEFAl9KdQIVHHN1bndlYXZl ckBkZWJpYW4ub3JnAAoJEJr0azAldxsxyF8QAKBg2X3Q+xijtp+dJeTuyHJJhv3S sGjraJh6oZUGNufVfsuXDP9teI9CRwmp5omkPv0f/Ov/OYDVbRqFZwTgKT9BCFkU Pws1LNbkRWsvCibQRdtcbSXUp/ckAudUyxYLKd7Bmk0a1OZAaCYEEr4JooNVehVs Cx7hJLaP4K/o27psab8wZabsrAXu67WZa7GPmloM5YG/UldFTdhmB0Kr/D/+vJsJ D+TCchH4eR1A34jaYeA0oY0TVycj1cPwjlGl0k4uBTYQtVWgkyVzzyy/Ol1g7q4W pwRB3N+JI3ZLb/BZxlpnenuguIXM9AsSAfqWB6oVKlQ7pT7ZuY0QRPeP/Wg27Dh1 tQMEdMrDmWHM6OL58Ah8k4P4RHDYqV1lEPpiJDAgL+gBIxmZI46HtwDv6LwXfJjJ 9j2SlNlXz7zgJcqdwSZNsZauex4b9lWt4Sg4c5gDcQEjEQlBUskR+C8HPJy3A+dE 30+MUCBkuV5n1y6lcQlX9PlpLHsQUGo/0VqFSuR+TUu/KEZgJ0qFjfzsBNzw9HVW UnX6wZ1YyUuTumAbrU9zpio5O6o5LIWsPfbCNX1yJ5iVllusiQQoKcbsdieimJSg A1uIW4RD0k2OHYvLo0GJVoTxDbh4GqZr9X5wRNRynX+DxG5t9Q+gWX8aZRer9M8v o7IHsnvRPOVhTPmo =x0/c -----END PGP SIGNATURE-----