-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 12 Oct 2020 10:31:12 +0200 Source: otrs2 Architecture: source Version: 6.0.30-1 Distribution: unstable Urgency: high Maintainer: Patrick Matthäi <pmatthaei@debian.org> Changed-By: Patrick Matthäi <pmatthaei@debian.org> Changes: otrs2 (6.0.30-1) unstable; urgency=high . * New upstream release. - Fixes CVE-2020-11023 and CVE-2020-11022, also known as OSA-2020-14: OTRS uses jquery version 3.4.1, which is vulnerable to cross-site scripting (XSS). * Adjust lintian overrides. Checksums-Sha1: 1a1d4f4a78a9f2408715976a5c9f8e5fa2fa5196 1817 otrs2_6.0.30-1.dsc c4513fba52abb3628c13cab356096166af5c51eb 25973355 otrs2_6.0.30.orig.tar.bz2 ca8488b9e7fd4ac9b34200407e7bf15f50453b90 31164 otrs2_6.0.30-1.debian.tar.xz 20215d6d90e586d928426f3043f4f4669638493c 6017 otrs2_6.0.30-1_source.buildinfo Checksums-Sha256: 91d53488720e9060376d28f6f29232b9a6d0da76f44f91a24488e0ef46ce0b72 1817 otrs2_6.0.30-1.dsc 0401e2cb03b927b22b62225b5976e512f0c4d3072bf89e6bf396b4d3e54bff82 25973355 otrs2_6.0.30.orig.tar.bz2 2f0016663600639fcf2bbcbccb1ed20e832180d0e060d6ce7beeb914edf7b5db 31164 otrs2_6.0.30-1.debian.tar.xz abf76866b7af753599732e638e65b60b04987603ac521d3e3f813fa8dcebe761 6017 otrs2_6.0.30-1_source.buildinfo Files: a8e3e8c41687e671f67b8a946511d9d1 1817 non-free/web optional otrs2_6.0.30-1.dsc 5b06318d31a1cb2727d4e60ab7322ef9 25973355 non-free/web optional otrs2_6.0.30.orig.tar.bz2 243fac4cbd5e84bf0807c60140d278c0 31164 non-free/web optional otrs2_6.0.30-1.debian.tar.xz f4aaffdb9faf2b91bbd7f568297af30c 6017 non-free/web optional otrs2_6.0.30-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEWKA9xYJCWk3IuQ4TEtmwSpDL2OQFAl+EFWAACgkQEtmwSpDL 2OSZOA//T3ME2RVVD/60u9/Hk0z10Om7UixlSwnfZlG9R0zPM8Dd3eAmsWPYg8ul YIih/yNo9nBVfDDvs7V7/KJ8P5U76fU5XdBKbqEMhv8UTqYBCrc1u3AQdmTxMl93 cHzsgdiTDs94lkTpiGbhCFZQan7SfIwpSA2DmshHwHlK56vEXpcIGKb1Xu2M6EiB 7EKZ/Ph09XIiBvYsMIBmiCJlSUEERg0V0vvc3lBckB10m88Zmw0kFhJWzf0ymFvj n/8aL6MK9+fxDRTNuF5Gdk6Yi+FXcNQElkc5vhdOlncYaqm8GN7bx/sAW7DHkXw/ L7Kxm0ZRGhLlrts3pKCzBf41grFWeKashftz1JbXZdZWZ98eY1HK6VTW4NHM3vt1 3bQytbPvMWxadUb86UjkTeDwfZMGmUOkURtN6AFQkJ9R3O81fE0KEg7laS7uIyv0 QwBM55OW2A/JZJ9Z3913LayNfSZTzMANcsLeMXlxLo+ENjoCVs3kOilJ+YYVMoxq qNKHjd54cArNj8WKUlGzZxcwL8RI5Qsf/jFsEhXACQE3Tlcj+G+PoT4R0mkWxq9g tRSKlKr2suzM6Ad3SNorIPgfELU2ltmIImB4eg7fZz4H2Cl5KM6sBphTYPzKGU5R AqP1V0vmMer99KcbfOIfgd6ayjSk0dHZNMG4UOR5+fXxhGl1dDs= =ePEM -----END PGP SIGNATURE-----