-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 02 Dec 2020 21:03:46 +0530 Source: salt Binary: salt-common salt-master salt-minion salt-syndic salt-ssh salt-doc salt-cloud salt-api salt-proxy Architecture: source Version: 2016.11.2+ds-1+deb9u6 Distribution: stretch-security Urgency: medium Maintainer: Debian Salt Team <pkg-salt-team@lists.alioth.debian.org> Changed-By: Abhijith PA <abhijith@debian.org> Description: salt-api - Generic, modular network access system salt-cloud - public cloud VM management system salt-common - shared libraries that salt requires for all packages salt-doc - additional documentation for salt, the distributed remote executi salt-master - remote manager to administer servers via salt salt-minion - client package for salt, the distributed remote execution system salt-proxy - Proxy client package for salt stack salt-ssh - remote manager to administer servers via Salt SSH salt-syndic - master-of-masters for salt, the distributed remote execution syst Changes: salt (2016.11.2+ds-1+deb9u6) stretch-security; urgency=medium . * Non-maintainer upload by the Debian LTS Team. * Fix CVE-2020-16846: sending crafted web requests to the Salt API, with the SSH client enabled. * Fix CVE-2020-17490: TLS module creates certificates with weak file permissions. * Fix CVE-2020-25592: salt-netapi improperly validates eauth credentials and tokens. Checksums-Sha1: f9da90e669278a2a5bd076a72010d2887259797d 2781 salt_2016.11.2+ds-1+deb9u6.dsc c676c260d1f24dfb02c08ae61a2b3d3c25bb45a4 42028 salt_2016.11.2+ds-1+deb9u6.debian.tar.xz f51ba84425a198aa44425d02165ff3d06e2f5d9f 9829 salt_2016.11.2+ds-1+deb9u6_amd64.buildinfo Checksums-Sha256: 8cefb2683deef8ac8dfb3667c99cd305fef0704f1341d77825f8a9589c66d42d 2781 salt_2016.11.2+ds-1+deb9u6.dsc 8128eadfef6e96c11ebe5cc8d0a0677906a7f103dcda99d1d80cf8bd2ef0fe6a 42028 salt_2016.11.2+ds-1+deb9u6.debian.tar.xz 461449eab26fb83923b403e5520a870785a1d794148c96bf2ff8d0288340e40e 9829 salt_2016.11.2+ds-1+deb9u6_amd64.buildinfo Files: c4dca17a13bd32a37a37709d86e745ac 2781 admin extra salt_2016.11.2+ds-1+deb9u6.dsc 5e4ad5fbc264fe1bd3862535723286f9 42028 admin extra salt_2016.11.2+ds-1+deb9u6.debian.tar.xz c63ffd9f8d5b9886fedfbd61ddebca67 9829 admin extra salt_2016.11.2+ds-1+deb9u6_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCgAyFiEE7xPqJqaY/zX9fJAuhj1N8u2cKO8FAl/KRWMUHGFiaGlqaXRo QGRlYmlhbi5vcmcACgkQhj1N8u2cKO9DsRAAiQO29RfNEabrPjJmC63JUFxw4FlI ejTF0Uwmome6pz/mqD4M/oGKWLrTX+1c5qA49xHlNAy3r2xM2sdvIdvFSCjZeIq6 P38LUtMkuqoAdArlDVbDutHXgI/vjCoWixvHEXKxV9+C72FUcGjbYfn205AqRbT0 VsJ0frTdcX/O6CVeyw+sdm5L7DQVyabHKj18jMjxDvMfoRDhuXetN7CvKePap9LO HOHU9QalZVZPHTasr0eQ5KU49kmiRmAR07Bb9SQE3giKHx0nbkOtsImBg6YKB8w3 mUYVq3d8Oq9+y6nPa2I9cAeCmgXhq/7DnA83dh7cUr9i1h6jnTagi/gnRH5pzpdV JbfWa5xkrD2hND36goo8r7plGCmvb+ais962Ae3QCj4aBzHcjDLgb5pDdEtXo4cp GswyL+rDC9fGuig9jN7W2IHWq4XPkaB7GNVA6zQYryZZe6Mo6CE9zGsbqYdfhO02 w4JjXSjFHc/2lWvEZv0jbhICPbg9+StX8/IS96qJ4RbN1tk6CQJ1Z0R6B6hbmc2q HlUVS8dRoCgD2mZP0gKIgtYRC7btA/F+aDEHoupVOx90DMbmv+VScczEM3tQZDUQ Igz2RZT6RCKSiqB5jYdJ1fy94/txad4AuvU0VIRweUMGtJmeLzHKL5dzakJAr1Gv fZppKIdewwy1xCw= =YMN4 -----END PGP SIGNATURE-----