-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 21 Mar 2021 13:55:28 +0100 Source: btrbk Binary: btrbk Architecture: source all Version: 0.31.2-1 Distribution: experimental Urgency: high Maintainer: Axel Burri <axel@tty0.ch> Changed-By: Axel Burri <axel@tty0.ch> Description: btrbk - backup tool for btrfs subvolumes Changes: btrbk (0.31.2-1) experimental; urgency=high . * New Upstream Release - Fix security vulnerability in ssh_filter_btrbk.sh. Specially crafted commands may be executed without being propely checked. Applies to remote hosts filtering ssh commands using ssh_filter_btrbk.sh in authorized_keys. Affected versions: >= btrbk-0.23.0-1 Patch for this issue was uploaded to sid in 0.27.1-2. Checksums-Sha1: bf829747a4469e943042b158e78c4e95f0572614 1864 btrbk_0.31.2-1.dsc ecc7e2bbc13879a4860bc79deeaec3078d8599b7 107124 btrbk_0.31.2.orig.tar.xz 5002667e6b5203185f758edce7ef8611a9e0408c 6716 btrbk_0.31.2-1.debian.tar.xz ee948c2284debd099e88d923688abbb55c7a96ad 114800 btrbk_0.31.2-1_all.deb d35c3b84973677ad5f2b1928954f3230bf0c1815 6059 btrbk_0.31.2-1_amd64.buildinfo Checksums-Sha256: 541904556df4b909d94484b2264cf917e216e2f82dcedec89741ee1fce5834e5 1864 btrbk_0.31.2-1.dsc ec18ec934e7b6d22e3cf210b9d78c2961167aac0d31419de7b88d03fc8bfec80 107124 btrbk_0.31.2.orig.tar.xz 491456488b450f0afac4a3430c47a6106951c452a307490b121e94597be1370a 6716 btrbk_0.31.2-1.debian.tar.xz 8e60586d37d493aa568b473ead9bded4b702ee5e5ff0c3316540455299d45b62 114800 btrbk_0.31.2-1_all.deb 5565e772392b892d3b2f1035f263036aa56a04cba9b4baf74329476b9991ca73 6059 btrbk_0.31.2-1_amd64.buildinfo Files: 4a99a00332b3dc801d4368a1c23219bb 1864 utils optional btrbk_0.31.2-1.dsc 547e4ae616b7fd0272068bd6977bf617 107124 utils optional btrbk_0.31.2.orig.tar.xz a5caad43896c71e92ca6073917d2cb61 6716 utils optional btrbk_0.31.2-1.debian.tar.xz f679c14eb3a60b3c214592536fac38c1 114800 utils optional btrbk_0.31.2-1_all.deb a509bac597c4efde11d0cb385c2bb347 6059 utils optional btrbk_0.31.2-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEExbkF8OjZ/ZZo/zZvot4jUGLaM/oFAmBbN+sACgkQot4jUGLa M/opVw//d6HCpTFgS7zkFaTbxvp4sRphq7KodXDt9rrXGzufk5r8asy7YHGH7byE EvIDFfEUoi/OkdnqSe3k0jbw7K/YstIha6yEKNha8+vpQWgxFX0nWFeXS/Tfa1Wf InSEKHgk5UIJzvE9tvybz2izyx5nr9WNFO0E06ixI0jq1ji/Sz9dYIwGGOvGs0y+ dcvrb8CdvKvviHzb8Oxb/McCOiuZrCvZ/IBsmSV63AgFKEdnLDWncWB7Ih5lDHFU czkGLGbz53qXVvLmplsyMK2O+daJe4g6X4aZevy1MQEynli6QXtVSCsNWcIN/4nr 90YuHskX4VsA7Iv1zIC3v5LtCRFNhsHH2BUpqYe7J1OSpaXEZ86DRe2OTMPcmZRz hjFI9E02IvfPP9dhSsZQc+rlQwOFpztp8IgE9XH9ShumJ+C3VoXEkNcuYC+AErAe c9Dim/+76466Jeo4dhzYaRe51kXNiTVXCT4EzM5LAUVhp9CocWYwSeYt+w0kEPlv vV0QPe5BuK8P3s/tQ641UdejCeSUbQ9uOTrwrKYpBjMr8UnkJ+jknuOm9fRE1Ecs 2HAeoz6IXqRofUTBzzWiWunwZgcSLfBgFUFRcRLV5aB3Y5aidljLdjF3yx6/d8aP JKl2FSdQqaUF1mZeo8nf5Z3GUEIFmsb5g0qucTaA6hiomyU5JBQ= =nWPb -----END PGP SIGNATURE-----