-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA384 Format: 1.8 Date: Sun, 02 May 2021 23:52:52 +0200 Source: mksh Architecture: source Version: 59c-5 Distribution: unstable Urgency: medium Maintainer: Thorsten Glaser <tg@mirbsd.de> Changed-By: Thorsten Glaser <tg@mirbsd.de> Changes: mksh (59c-5) unstable; urgency=medium . * Apply targeted fixes, intended for bullseye: - [tg] Plug some memory leaks - [tg] Harden conversion of imported variables to integer, like Perl “taint”: imported variables will now lose the value when converting to integer but they are not purely numeric (CVE-2019-14868 was a similar issue in AT&T ksh); honour -o posix for leading-zero as octal, though (but continue not when importing array indicēs) - [tg] Fix lexer token state corruption when reading new input; makes evaluate-region editing command actually useful - [tg] Fix proper escaping/quoting and tab completion for tilde, curly braces and \x02, either escaped or not Note: patches are reduced to minimum change for bullseye * Rebuild for outdated Built-Using Checksums-Sha1: 9925bd305f50bcf8f8da81cbb75ff54db235f2d2 2255 mksh_59c-5.dsc 30253f2e1188ec2315a754d93923228546e2848e 117160 mksh_59c-5.debian.tar.xz Checksums-Sha256: 020c5cda117f17d55f16c409f71f73fea1215feb2a0adaf71691f8678503f4d3 2255 mksh_59c-5.dsc b16f8508794ce4a5dad375ddca359077a902bcd63d33e81eb72515dd4234f3e6 117160 mksh_59c-5.debian.tar.xz Files: f3cf5234954920dc27fd2074945245b3 2255 shells optional mksh_59c-5.dsc 7ea5722d11f9452544cb04e5ed0846e5 117160 shells optional mksh_59c-5.debian.tar.xz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.14 (MirBSD) Comment: ☃ ЦΤℱ—8 ☕☂☄ iQIcBAEBCQAGBQJgjyYvAAoJEHa1NLLpkAfgxv8QAJGsgPM+17BzU0E84QMw4uQR A/mSosx9/1sQRC9BQ8pE5yqo4bW6u6WL12L61bBKYxaN/KqXOYmIGfdeMYIE2/Qr WP8zQZgGVPVAodG82nAiePeRt8cz/3J4+aAOXdWY+yHMJUBHmpB7bRAGdfW9ij0H ZAo5F4L6KdE8lIT5BYDAJOJdlkz9XXnv6XBkU1lwakDtdPi+MM5rJXyOj8pTa5sA Fc9g61+d+7ndII9iN4+WVdqTaYA4fGbzrbzKh+jHuOVudqADKCi25oqJKfT7pP9h 3xHXWBYpCRNwet6E/NzQR9ydbebikXI7ZxpInIggbZPE5PSLfaGhj0nNFOVbRtzx 17iOzrg5LIqe/HuMLigBIgMPrR1XLtibJV/BaBfmGOOtgCQnA45rU4av+BAdNbfS yhqAPPFynYDfSYgOj2S2pVk2BQywhihXyzafeeaxT/tXXIqxoiIOfu7T88p5DjXd BFe/bARWnOH9rUfvOb2RsD5vhZlyqs/eg6DoWh/ZCI+LP3rWAzwETeBkGYEsH8lQ gBNvCUnOMM+V/BTj3VX/SodqWGKAQC//EfCSNLfXG3QiHFmrzL2Cs7lt1ADm86Qs cO/IRzLvp0koviyItOD8g0XtoQPHw22Fpo+qWOo9u95IIb979cbPD3hwFNuevW3V 8jpcz9ZU/wu9On+iAWSk =O0w6 -----END PGP SIGNATURE-----