-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 03 Sep 2020 11:20:31 +0530 Source: gitlab Binary: gitlab Architecture: source all Version: 13.2.8-1 Distribution: unstable Urgency: medium Maintainer: Debian Ruby Extras Maintainers <pkg-ruby-extras-maintainers@lists.alioth.debian.org> Changed-By: Pirate Praveen <praveen@debian.org> Description: gitlab - git powered software platform to collaborate on code (non-omnibus Changes: gitlab (13.2.8-1) unstable; urgency=medium . * Drop faraday-middleware-aws-signers-v4 from components list * New upstream version 13.2.8 (Fixes: CVE-2020-13318, CVE-2020-13301, CVE-2020-13284, CVE-2020-13298, CVE-2020-13313, CVE-2020-13311, CVE-2020-13289, CVE-2020-13302, CVE-2020-13314, CVE-2020-13309, CVE-2020-13287, CVE-2020-13306, CVE-2020-13299, CVE-2020-13300, CVE-2020-13317, CVE-2020-13303, CVE-2020-13316, CVE-2020-13304, CVE-2020-13305, CVE-2020-13307, CVE-2020-13308, CVE-2020-13315, CVE-2020-13297, CVE-2020-13310) * Refresh patches * Update minimum version of node-jquery to 3.5 * Remove faraday-middleware-aws-signers-v4 from upstream-file-list Checksums-Sha1: 334e6581e042422cce04056e1681278504c4fda8 3447 gitlab_13.2.8-1.dsc 942802797a2b2fe9eaeda9201f7aab523398a3e0 60811 gitlab_13.2.8.orig-elasticsearch-model.tar.gz 59ed12f1366b37dd6cfe492cf22f2c312ce40386 4255484 gitlab_13.2.8.orig-elasticsearch-rails.tar.gz 5f988664cc0d32e3022897447229a025a9c67d64 151390 gitlab_13.2.8.orig-snowplow-javascript-tracker.tar.gz 13be58b916b0f0ba932595d0b55f73113bc000c6 95341580 gitlab_13.2.8.orig.tar.gz 781db0d364d184b5c9c5b96539e8e168550d1318 82776 gitlab_13.2.8-1.debian.tar.xz 7ab019aafb1c0b5dff9ac2bb1b437de2b930fc1c 87229088 gitlab_13.2.8-1_all.deb 13f2d1d21efea9e68b349d488be9a9a91b139961 8474 gitlab_13.2.8-1_amd64.buildinfo Checksums-Sha256: a7286cbec3dbaee5306f9cb31774898b6a60b78d20fe4df87854960f1bea9068 3447 gitlab_13.2.8-1.dsc 2a941205948d46f6e2898efcf654374273df1352d51ceb1275353297b6291515 60811 gitlab_13.2.8.orig-elasticsearch-model.tar.gz cfa52e8c11647e4f776953f59fcdc821d55065a4afbf19505c8a25fda7d545de 4255484 gitlab_13.2.8.orig-elasticsearch-rails.tar.gz 6c2c3c1df47caed682c1f1ef6225d8c36148fa9b23bbb758a2a5cca9ab416f55 151390 gitlab_13.2.8.orig-snowplow-javascript-tracker.tar.gz 402045e9aabae11d5c0eb7b107d37a121589fe7a904597098d7f841b206a7983 95341580 gitlab_13.2.8.orig.tar.gz 6530f991ec29dd0d312322a4380a29acc33adc070328b65259500242d3ff7637 82776 gitlab_13.2.8-1.debian.tar.xz 512fa3484c86e2e4ffed9c98fefe43d6079a2f3c47ba7575d4b395e99624660d 87229088 gitlab_13.2.8-1_all.deb f8143120217284839fa77fb6ff5579d92940b66a4412bccaed021bbc279ec3b0 8474 gitlab_13.2.8-1_amd64.buildinfo Files: 8a87a1208dbaf4085a13ddf6835c51ae 3447 contrib/net optional gitlab_13.2.8-1.dsc 26325adc0c160cad7b465f4629c82ad2 60811 contrib/net optional gitlab_13.2.8.orig-elasticsearch-model.tar.gz bb2d2fab33c50b0cada8a5ab54146e4e 4255484 contrib/net optional gitlab_13.2.8.orig-elasticsearch-rails.tar.gz 7eb2a2cb19b6701ad9b0527f0ab951a8 151390 contrib/net optional gitlab_13.2.8.orig-snowplow-javascript-tracker.tar.gz e938262d01cd10d6f87c58f0248d59f1 95341580 contrib/net optional gitlab_13.2.8.orig.tar.gz a5879a2123f8d48c4b5b1dde5dcca7bd 82776 contrib/net optional gitlab_13.2.8-1.debian.tar.xz 68d4246e37c8446caf1d013e465b3c40 87229088 contrib/net optional gitlab_13.2.8-1_all.deb cca1e0161a935b152c5aa56a6e93fa57 8474 contrib/net optional gitlab_13.2.8-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE0whj4mAg5UP0cZqDj1PgGTspS3UFAl9Qj08ACgkQj1PgGTsp S3VHDxAAnq2IBZ+8fBcZWkcgRA+6IKXPgY8M+JEN37jDI6SufwGvLTuB1H5ZMA69 9oZS1DR1UBL42Rm9eTI1k6GzeU0Xfc5puNmPK90ALTQNntBqr1V51maMEskWKJlK 49q40kq+5NSiAv6C370IE3nkv2M64L9vwDviJUZlaUcsulaFamENH34/PnueAj/v wn8SbatBb6tdiHbAkJTHcfEjPTtIQd4Z8wmmVHIifID/2s+s4NawNwPsoUcYfmiu NGI031QuujkzB8eRyk8DJyUs5mp+AEbIQ8W6WFE2CxNOUTxe9dJVVOUnKk6J6sOs +6pLVfpU/Q6f4DqgDg7WG10nOBOWaTFxHklQOx0atAVPOQzzP3kGJrjKfOzJKI/x vDh0GuPj93TjLzY/fLaoxdlnLHH/8cO9RuZ63XKBkp2oeEmHtGzMuNQ62Pug9I8d jsUaqcYWzT1UR0gk4GOltXygep1MGZuvZKsqUpZ5/8aeeWi8jtWRUWx+iUfH2pco sQuOCyWP83z8lwXhEO8UC3SjevhXhvLio8BNoVdYXP7Mw6vy4jPPduT4zh78c3GQ DA7V2+yRpOCwmuioHgzg4s9RyodstWQ1GUq4lRa6cvktDNCgKaWjLu4TadDQF2hi IsNem2A6/l8SMSETt6BO3YAALNxUuZ8jJ3X1vxQG8oCuC6Jnjnw= =K5+j -----END PGP SIGNATURE-----