-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 07 Dec 2021 19:59:33 +0100 Source: privoxy Architecture: source Version: 3.0.28-2+deb10u2 Distribution: buster Urgency: medium Maintainer: Roland Rosenfeld <roland@debian.org> Changed-By: Roland Rosenfeld <roland@debian.org> Changes: privoxy (3.0.28-2+deb10u2) buster; urgency=medium . * 53_CVE-2021-44540: get_url_spec_param(): Free memory of compiled pattern spec before bailing (CVE-2021-44540). * 56_CVE-2021-44543: cgi_error_no_template(): Encode the template name to prevent XSS (CVE-2021-44543). Checksums-Sha1: 218d2818949513421e998c3448c4a5ff55a39341 2263 privoxy_3.0.28-2+deb10u2.dsc ee3c5a1ac1e3ebe0aad170b30fd0b5c188c5c085 33232 privoxy_3.0.28-2+deb10u2.debian.tar.xz 64e63318d6ff0e058104bacafb3a176d6b4ad7b7 10081 privoxy_3.0.28-2+deb10u2_source.buildinfo Checksums-Sha256: b3d380ba1bd07506e781119ead3a319076d7ae84d920bb8ff8a87ce3ab08a557 2263 privoxy_3.0.28-2+deb10u2.dsc 47d71e10ef05769f0091aa6f60592eac7f10416027619fa07cd5120389b32a52 33232 privoxy_3.0.28-2+deb10u2.debian.tar.xz 02b67d8210cf31515f01af121a6789c8d6284f54512fdf198d770ae3df3114a6 10081 privoxy_3.0.28-2+deb10u2_source.buildinfo Files: 68f303997e24d9e952f951b8838df7ca 2263 web optional privoxy_3.0.28-2+deb10u2.dsc 16a27547780e045f4db681bea378f4a3 33232 web optional privoxy_3.0.28-2+deb10u2.debian.tar.xz 1861a82b877e6eb9f24e81fd956981b9 10081 web optional privoxy_3.0.28-2+deb10u2_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEErC+9sQSUPYpEoCEdAnE7z8pUELIFAmGzP70ACgkQAnE7z8pU ELIGZA//a/HiJEC8tHIba8R/ZNwYtPxug4V5wfg9RHTGxCrHGydI59HSueXyl3y/ fl/wUkDoJvaXt8DdPq2O5lL0tUnpOh2fz0PA1j6hSYL43onvBt7fNhSZUIDDa0Ua ntuPFTl0VkTzlrMbL2rjGiGFfbFuBHEfSBGUpLA/Wa7GsS9Wm9GH2dhkbrNr2wtU Tb3XLYQ/fiy/g3gs1hJbia0zlxjouN0n1PioniAobC8MhBvQmRzIeMo5TqSqkZLg NPxQ5C/aqhit+KtyST4+hJZf5moTKt4no4XY6MPkja7U4/10adL5FgMcB867iPvm CwumGyBD/Va2rDWGrhHL7hqRG9uYnBCCLSKfVVC046mSQr7UPP9VPPoiW1GDN7ZC WBNlFrno2if8g+Ky1IhRkzh9vzqm3ivQuIvUQHByaiquMsxLfx+/QeyPgpcH7hUu 2RE0gGUFZzP+f7PFzDtf2Lfp1BX6F2SHgzOMHO1yy/f7uiuVF6lnKYFu4e/IChxl 5N6hrHdV0aK6PIapyQMVXDVCT9mjTPcA+ISyFWvlnVBEosdh1TBCuVCBArNxdUTk /Udl3QHc4VlR5yq1nb8xNNwjc886AiXg9UJkKAoNcCljxsyVxp25cAzJvILGYuTa EaxbAnVzEVOqKaFEGAcT0L+phGDFrsllZG0d86L6KwNK4azfV8U= =eteE -----END PGP SIGNATURE-----