-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 17 Nov 2020 14:06:05 +0100 Source: zabbix Binary: zabbix-agent zabbix-frontend-php zabbix-java-gateway zabbix-proxy-mysql zabbix-proxy-pgsql zabbix-proxy-sqlite3 zabbix-server-mysql zabbix-server-pgsql Architecture: source Version: 1:3.0.31+dfsg-0+deb9u1 Distribution: stretch-security Urgency: medium Maintainer: Dmitry Smirnov <onlyjob@debian.org> Changed-By: Sylvain Beucler <beuc@debian.org> Description: zabbix-agent - network monitoring solution - agent zabbix-frontend-php - network monitoring solution - PHP front-end zabbix-java-gateway - network monitoring solution - Java gateway zabbix-proxy-mysql - network monitoring solution - proxy (using MySQL) zabbix-proxy-pgsql - network monitoring solution - proxy (using PostgreSQL) zabbix-proxy-sqlite3 - network monitoring solution - proxy (using SQLite3) zabbix-server-mysql - network monitoring solution - server (using MySQL) zabbix-server-pgsql - network monitoring solution - server (using PostgreSQL) Changes: zabbix (1:3.0.31+dfsg-0+deb9u1) stretch-security; urgency=medium . * Non-maintainer upload by the LTS Security Team. * New upstream release following upstream 3.0 LTS branch. * Refresh patches. * CVE-2020-11800: Zabbix allows remote attackers to execute arbitrary code. * CVE-2016-10742: Zabbix allows open redirect via the request parameter. * Revert comments-only changes in zabbix_server.conf to avoid triggering ucf. Checksums-Sha1: e8d82aa37676d00a839ea2f8710973d538d048c2 2557 zabbix_3.0.31+dfsg-0+deb9u1.dsc 6e9be67b5e5cbed764ba727fa585e1ab5c462687 5981340 zabbix_3.0.31+dfsg.orig.tar.xz b5f42a3f339a74cdb3ab92dc76bba147023cacac 192040 zabbix_3.0.31+dfsg-0+deb9u1.debian.tar.xz 5695247d59f63ef2a73a74d39c88052f9faeeb04 12578 zabbix_3.0.31+dfsg-0+deb9u1_amd64.buildinfo Checksums-Sha256: 3307fa675b7eb847e366f85e6b38317ac50a24f107f2acb7cbd07e9e0c7f333c 2557 zabbix_3.0.31+dfsg-0+deb9u1.dsc 4fc42800e8f7e9fe701fea1729f24d8a239ce334a3f7a865f2b7de93a33fcb02 5981340 zabbix_3.0.31+dfsg.orig.tar.xz 9f974a6c7f5efa188398aa32adc681c5014ecf4d7cff465f08b82fb02661d67c 192040 zabbix_3.0.31+dfsg-0+deb9u1.debian.tar.xz 22c1940963396d2d32867887bc9c2fc98aa105e58f64a8ae13b1292ccac96720 12578 zabbix_3.0.31+dfsg-0+deb9u1_amd64.buildinfo Files: a7d47fe4e2d4a9dc9fc586d504a22957 2557 net optional zabbix_3.0.31+dfsg-0+deb9u1.dsc 874d263a952c23bc39e4b9407be5c025 5981340 net optional zabbix_3.0.31+dfsg.orig.tar.xz 7fd53c264169e2fe470fbde12b3b9540 192040 net optional zabbix_3.0.31+dfsg-0+deb9u1.debian.tar.xz 7db572154778386569f8ed2ac66dcf23 12578 net optional zabbix_3.0.31+dfsg-0+deb9u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEQic8GuN/xDR88HkSj/HLbo2JBZ8FAl+5QhsACgkQj/HLbo2J BZ9o/Qf/VLyt4VxY7Izu6Qx8bk5iFpjl5IV14p3VVKRtbVrqv55KbJ5qsBp3kqfn Bw1ToKvBFppHiNeSbKi4GZmWuI0RWwJt19Hibyjou8+AuHbRzanLqV5paJCb5y8W teeZzCoJVf6j/xVQ0rzdQn3bDIvYw51TlikC0JcppsyExlxfUYvchDv0uJCE3Fdf HVvQVRBkBhhPB53pQMgU4TLj/Bvl7+J7xhK8+Pqo2eOxARXtMzUblkim1TWggxCj 30QbCFj2S0x2gHONTRopSWLs2ljp1rWGvBPnvd/0fdgpJCEfQm/bt+DnOo6bXNEp S1oHbdo0u2T1+gKq7GImcIW9BNwKMQ== =V7zh -----END PGP SIGNATURE-----