-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 03 Dec 2021 10:03:20 -0700 Source: golang-github-microcosm-cc-bluemonday Architecture: source Version: 1.0.16-1 Distribution: unstable Urgency: medium Maintainer: Debian Go Packaging Team <team+pkg-go@tracker.debian.org> Changed-By: Anthony Fok <foka@debian.org> Changes: golang-github-microcosm-cc-bluemonday (1.0.16-1) unstable; urgency=medium . * New upstream version 1.0.16 + CVE-2021-42576: The bluemonday sanitizer before 1.0.16 for Go, and before 0.0.8 for Python (in pybluemonday), does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements. See https://github.com/microcosm-cc/bluemonday/commit/c788a2a Checksums-Sha1: de2851938326af5a6c18c952c37575b5e45ff3ab 2522 golang-github-microcosm-cc-bluemonday_1.0.16-1.dsc 31bd3e98fe48581a6eda91f39b33793a0a2e42e0 166426 golang-github-microcosm-cc-bluemonday_1.0.16.orig.tar.gz cd624437a660ae53a203929252adeb5ecaa6f1bc 3476 golang-github-microcosm-cc-bluemonday_1.0.16-1.debian.tar.xz 1ce16d986a2bece8472c04aaa3186732eeebd037 6681 golang-github-microcosm-cc-bluemonday_1.0.16-1_amd64.buildinfo Checksums-Sha256: 58233b6ed1e48abb268b767958ef8a886fae43b05c48e5b3c7d7289b7918ac63 2522 golang-github-microcosm-cc-bluemonday_1.0.16-1.dsc 19fbb3cc42a2fe357c3cff918255e117d107e6e1cd1bcf58dd5bd5fe804057d3 166426 golang-github-microcosm-cc-bluemonday_1.0.16.orig.tar.gz 8dc7f21b376e862350b2de9e5eeef74d71b5f1d51056c1ffa7cbda835cf89941 3476 golang-github-microcosm-cc-bluemonday_1.0.16-1.debian.tar.xz 20bea870d51a419eca8fc0ade3fe00b059024b81b60e39d9abd4ca8a03ec696f 6681 golang-github-microcosm-cc-bluemonday_1.0.16-1_amd64.buildinfo Files: 99581ba800e7d95957eed95ff60176b8 2522 golang optional golang-github-microcosm-cc-bluemonday_1.0.16-1.dsc 9e9855739ebe36d23196ff51a29928c1 166426 golang optional golang-github-microcosm-cc-bluemonday_1.0.16.orig.tar.gz b6e9e7ca78c4959416cb34664539f197 3476 golang optional golang-github-microcosm-cc-bluemonday_1.0.16-1.debian.tar.xz ee5d87703ed7fc34d430872be41ffe58 6681 golang optional golang-github-microcosm-cc-bluemonday_1.0.16-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJEBAEBCAAuFiEEFCQhsZrUqVmW+VBy6iUAtBLFms8FAmGqT8IQHGZva2FAZGVi aWFuLm9yZwAKCRDqJQC0EsWazw2/EACUkxPj/37FJU9oq6Lmh8SW/1JDRip2p4iR NqL6ntcyTjlBrXFKDM2ZRra+GAj98Dl9Z4Dbl+XFt5aMdnb2spM8ZHCMqRsr5dfr oEELS7A3z4uB6gYP1zL7gRzvkgvErNjPdumVTLCUMigYFWFglvkd+vWX0++58z/e eC4KeMGqAZe+fGmJcJpNG73wJ/p6HcHh+tloR0cxjdf7J+ZSzqhxNSYA4s2XT/ij 833Z7kEFVCOa3O/fdcnCwtVGNCOG0Paqegzt6gi5ZVpGQBt438DLtStgdtCNr93E nNgkEduyYzs/LGMePINeNMq7hajImPR+MovVL5LjXLLC5frb6C6ov/Q909btMxCW VvreyrgiYetN1szouHIyp266aSrwuVBy8Cw2sedqTY05J+RMMlpb5t1lDuw2keFn XZ8FUKvEqXoTAMTZ+BngwxA5eabjTAsUw7KL3tBkZ5uHwQi1UROsyuYGLfGC4V7t AiTE+A/yVpG+ORqJ7vAhWhmCM/qWSR5/sesF0slzfZXPmFGvu+WQCiJ0Uuljn1v3 J2brJri5Ec03i1h93OVe2byBik8g1Kkzqkk0OAYG1vpmdQSd2CAVy3IwbY/wfbzC WVfF95mtqtUCU6SPon5pmy9sQwzY6QpfjcO05IDMNf6Hg99tL9ny1NR/mkVQPP9+ Tg/K2XaBVg== =4BmC -----END PGP SIGNATURE-----