-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 03 Jan 2021 16:45:50 +0100 Source: libhibernate3-java Architecture: source Version: 3.6.10.Final-11 Distribution: unstable Urgency: medium Maintainer: Debian Java Maintainers <pkg-java-maintainers@lists.alioth.debian.org> Changed-By: Markus Koschany <apo@debian.org> Changes: libhibernate3-java (3.6.10.Final-11) unstable; urgency=medium . * Team upload. * Fix CVE-2020-25638: A flaw was found in hibernate-core. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SQL comments of the query. This flaw could allow an attacker to access unauthorized information or possibly conduct further attacks. The highest threat from this vulnerability is to data confidentiality and integrity. * Declare compliance with Debian Policy 4.5.1. * Switch to debhelper-compat = 13. Checksums-Sha1: 7d07ac47ad65d8121aeacb50b0277fe115901001 2904 libhibernate3-java_3.6.10.Final-11.dsc cb918f6f2f14fdbb12b1690c7c6e3048d0a4b2a1 11188 libhibernate3-java_3.6.10.Final-11.debian.tar.xz 16ad2e5be5682f6effed85a3d24eb9dc9c9cc6c3 13788 libhibernate3-java_3.6.10.Final-11_amd64.buildinfo Checksums-Sha256: 4c9b30d75b621a24a7751834baba5f974ed8cd5340da7fe8bd4a028fe7295278 2904 libhibernate3-java_3.6.10.Final-11.dsc d4066730de5f14085ad53e0dc61dd89900bda766ecaa1784e55eb65d16215bc4 11188 libhibernate3-java_3.6.10.Final-11.debian.tar.xz b85965c573dbc2bff1319cd42a8948bd6e5dc0b6881eefd41ff748583224a01d 13788 libhibernate3-java_3.6.10.Final-11_amd64.buildinfo Files: ad0b893ab11e497311ee1a47f1f35007 2904 java optional libhibernate3-java_3.6.10.Final-11.dsc af267407f9dcf6f035a396890bdfc7f3 11188 java optional libhibernate3-java_3.6.10.Final-11.debian.tar.xz d195c2b24530bb9619ba845ab9944ab4 13788 java optional libhibernate3-java_3.6.10.Final-11_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAl/yKTxfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkczYP/iB8ITP84TB7gXjqN5jb7C0QY70PCmntFf1m pBbC5+PFDo19MkfhJrf2qWC6ikYawIZVlrT7KBvrznhaGOm2R11a/QHXg7xHV4dI 5XgFhmDK/CY7lS3lKSHcxr4cyolEEGMDeWOrFw6f728Xkct58xgjBcwxchw2O4sy q7+ILGvFQfwGpmkvOP+dvA8yYqfEB4KvV9ThPMu25Wpa8h6/dx/zI/HKTYPeDytZ xa4S38PEvr/GRo09O9Dq39I7PrxKbXHU8EiEZvDqxnyx1ip0sEuj5Zmjt8vKYRUi UCqER+PhQ77MbgYHbdjT41HdTV7Lo7+EtdVnEKra2ZqCRFw4uV+LvAbpu3eIUFJg grr4q1QBlSO+lQhN0J73DkcSITrVFFyKqXGxPkqDAtHmdOdh1Fr578amFmdNVvwj 52znPe8sGYiE2iKQ6oaD6fcWhU+HSb6XXUp1IsEK8Qxb4ck1eT1Y2+sEFSkG1W+3 OqEUOFWN8687zYLjpJwOhc5Fo2ByLW0RiVGSIwrg1/1ow2nj9n951b3qqhWCeIh/ H2hnedyNuruVsUpjkLX7tcbk3VSB/rRDdNDgOcdsvskRFNxko/3jwB2+LqxymqtY vuokXf2u8/MsZISHiyvVBJSetbsvaFbf8xElk86G4LRBBM9CIZvlWgoL9DuYwF/k qTz2X+Rq =F1pU -----END PGP SIGNATURE-----