-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 28 Jan 2022 14:09:36 +0000 Source: ipython Architecture: source Version: 7.20.0-1+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Debian Python Team <team+python@tracker.debian.org> Changed-By: Gordon Ball <gordon@chronitis.net> Closes: 1004122 Changes: ipython (7.20.0-1+deb11u1) bullseye-security; urgency=high . * Fixes CVE-2022-21699 (execution of config files from the current directory, which might allow cross-user attacks if ipython is run from a directory multiple users can write). Closes: #1004122 Checksums-Sha1: 74e93b71ceb0ca3927430bf56920da3ddb4887ec 2578 ipython_7.20.0-1+deb11u1.dsc 9edbc11042ec4b8c550438989e1643f898c080eb 5696179 ipython_7.20.0.orig.tar.gz f97366101559da43340466f3332375a09c96933d 9696 ipython_7.20.0-1+deb11u1.debian.tar.xz 576aa1df4d592ce3f9246e48300aa79a67f215f1 6982 ipython_7.20.0-1+deb11u1_source.buildinfo Checksums-Sha256: 3138e82241e466919c579810456646da56fa08335ae75ad90296fc24b6e33d22 2578 ipython_7.20.0-1+deb11u1.dsc a26fbf2837e8191ed297f77454be4c91a44a3686bf4762c61b2d073207f19850 5696179 ipython_7.20.0.orig.tar.gz d85da128e3f70465aabb722d85dce5be9d77ad2bb3f8551c432ebaff56edaf88 9696 ipython_7.20.0-1+deb11u1.debian.tar.xz 9fb3188d465dc2aea4e87ad964d6a314396ec999c7d94d430239aae79870eb24 6982 ipython_7.20.0-1+deb11u1_source.buildinfo Files: 2d87a1fa7fc80f62170c227d10654ffa 2578 python optional ipython_7.20.0-1+deb11u1.dsc 1b0359c46d221bae51760cbd92499428 5696179 python optional ipython_7.20.0.orig.tar.gz a48fef21d199d37f3e37aea0a7b9998e 9696 python optional ipython_7.20.0-1+deb11u1.debian.tar.xz 9a3c8489966f18dfc36d6b4d38bc5695 6982 python optional ipython_7.20.0-1+deb11u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE6PwpXIa418BJ+Xuno12v+60p6N4FAmH2+pkACgkQo12v+60p 6N58MxAAjpG4Q5YXtrjVrx4Kragrnv/eTDYovj35uVZ0D9JvOioKMrA/woQGQxDs 4W6We7ZTJd90oLnfu8+BPmmTgRAssr4py04R2Fb2iuQN2mcPzp6JvZDALyfp2s+d v/VKD1KTprx1viKOZOKg+OWI8Pqhhh6qaOTUUUWMmy7SODw0GJ0Lro8GKV3Gn6iU GAE89bguH++RE4g96CY8eWEEfzezitmTz2tqVslIvk2UluR8B/CxxdlA5XRuxUDz vUo0zxHDen0eWbs+2whw4nXkQAPQn/HP6Cnak//U7oNRj7k+pDLnT1Ex6+FJQ7M9 WfsB984dZOEvbRFlbdreg9Rki5w+2h3UMACjsnoob4JwrRvEX6j8ismDNreorjYZ VDjVYHiN/UJoEwAMzlDmu9o47p7AjH7DaXF3LgZ4X53cltOM6dTLTKTnGvyEpe05 Rf7Cw7O6OVODl8pGArL4NUStH4463pYI3EFBuJNSLDiQW/OPDJ0J9tPkoy8JTJGj mGTkQYmKMUJeMBR8dS0SE7HDIzYa0P87Z4LTHfElkXs1wIBxyWdEhFs1hZRUmP1V bFloc8Ui9UB5oszXsYSkmXpH5bNB+1enZ+tvc7LpIFV2HrdxJpROJtNgzNHuN22N pHnCk0ylAtyw+cAj+BdoEkCYYw1eqU5r1CdGEyA8IkcCu3gtkco= =sHWS -----END PGP SIGNATURE-----