-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 25 Apr 2021 13:36:57 +0530 Source: opendmarc Architecture: source Version: 1.3.2-6+deb10u2 Distribution: buster Urgency: medium Maintainer: Scott Kitterman <scott@kitterman.com> Changed-By: Utkarsh Gupta <utkarsh@debian.org> Closes: 966464 Changes: opendmarc (1.3.2-6+deb10u2) buster; urgency=medium . * Non-maintainer upload by the LTS team. * In opendmarc_xml_parse(), ensure NULL-termination of the buffer passed. (Fixes: CVE-2020-12460) (Closes: #966464) Checksums-Sha1: 68d2876a96d69bd92419164ad5eb0e7959f8772e 2116 opendmarc_1.3.2-6+deb10u2.dsc dd7deac10966094735a32c0df6631898d59db603 593448 opendmarc_1.3.2.orig.tar.gz 3b6b7cc9fc38b092421c92b9129b44cf15ef968d 26368 opendmarc_1.3.2-6+deb10u2.debian.tar.xz 24812791e04b268e403acf0ff60221823defa2a5 5959 opendmarc_1.3.2-6+deb10u2_source.buildinfo Checksums-Sha256: 01bbc277f75990cf2b964fa27674d6839d545bd07261a44a297f9d7b1635dc7e 2116 opendmarc_1.3.2-6+deb10u2.dsc 213c4b01a9ff5dcdf331f7bd1dd6a382077abbf8ee9111852f2101ec917c2ffb 593448 opendmarc_1.3.2.orig.tar.gz 9b376f127b8374ff3cf029fd2a534d759f2eda67d468c7809a2d1bd59e8f5ffa 26368 opendmarc_1.3.2-6+deb10u2.debian.tar.xz f2dfade03d61dc4a35dc2c500a01969568624b53ab95ce8e878e243219f964e7 5959 opendmarc_1.3.2-6+deb10u2_source.buildinfo Files: 8d330fd95f7419635d260eccb6185ce3 2116 mail optional opendmarc_1.3.2-6+deb10u2.dsc 2b4e9b8be7fe61800515cef1d7e6a905 593448 mail optional opendmarc_1.3.2.orig.tar.gz f58d35ee443675cc2aa5d65a226a414a 26368 mail optional opendmarc_1.3.2-6+deb10u2.debian.tar.xz 0f6f618a38275dc458d204dd8d14d225 5959 mail optional opendmarc_1.3.2-6+deb10u2_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJHBAEBCAAxFiEEbJ0QSEqa5Mw4X3xxgj6WdgbDS5YFAmCFI1wTHHV0a2Fyc2hA ZGViaWFuLm9yZwAKCRCCPpZ2BsNLlh9tEADI+kMkdAqjNld52uwPO9SUP8RWxLS+ scjrw9ukBn7mhnkixTNpa2g0bbvzaA6t86Meyy2pXRKfEN6g/uemwy1Ef42zgl/s ZvzlnhDolAvCCmVtwIcZEUfm2b3+RhnCG8q2Wp7E9q987XTGNBuyWTkYk8GUVmBa ddT0v0mS0VOoijfWeqj33atGjWWzJBy/qnNrEXYJGXEwniYZ8UHZgbF3YEhqpsOr gC3vXFx9n16LukQzxzj3dxwMXlWcEKQG2Fcj1gQ1UzfLh/Jb0CadEmtxnf+NEfMs +7WCVRI/g2HFyRF27jUfYDE77YUlAGZc1ONKhvf18l/b9XNx6f2//wDa7M7cRttR go9TXcDTQ3xNHZvaJeicSeP6W4DCg4b4KCWk8dYVB9fOrfw3VKE2W58GAJvY1cXN CMwh3Y3IcCbEPNKsSk7f7Vxr+13tZKlJHLlIrIB8msWr0/fRuK60j5ZJH4L1a866 ENq8hD+CPrVUkw1QQ1vODJob67F4DbbPU6zZEc23xAA4h6bUlRJsYsyau1zY+O2w rXAsDdHZNx9s9PppUkTGPjsGjpa7CuXbfmonOJQYDJy4H7I9+9fEyb5xVd9L5jdP euNeCaVJVP/NpcXBk/6ltc7KvFF2sbZ3easiVGUFvVC0biEW14VaD01W8uLz3L8y EYunMbn9G+4mXA== =HbqJ -----END PGP SIGNATURE-----