-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 09 Mar 2022 13:49:39 +0100 Source: tryton-server Binary: tryton-server tryton-server-doc Architecture: source all Version: 5.0.4-2+deb10u1 Distribution: buster-security Urgency: high Maintainer: Debian Tryton Maintainers <team+tryton-team@tracker.debian.org> Changed-By: Mathias Behrle <mathiasb@m9s.biz> Description: tryton-server - Tryton Application Platform (Server) tryton-server-doc - Tryton Application Platform (Server Documentation) Changes: tryton-server (5.0.4-2+deb10u1) buster-security; urgency=high . * This release contains fixes for XML parsing vulnerabilities: https://discuss.tryton.org/t/security-release-for-issue11219-and-issue11244/5059 https://bugs.tryton.org/issue11219 (CVE-2022-26661) https://bugs.tryton.org/issue11244 (CVE-2022-26662) Checksums-Sha1: b3b18c51bc578b3f5dd6b776747bc7027b457b3d 2680 tryton-server_5.0.4-2+deb10u1.dsc 60de5eb0079ae83b66cba6ea504ecb5148790f72 647526 tryton-server_5.0.4.orig.tar.gz 3d067726fd503f1abc1f360a6d18be1da2477eb8 376 tryton-server_5.0.4.orig.tar.gz.asc 8dd4bfffa0b12381062a81f513caf52a49b174d4 31984 tryton-server_5.0.4-2+deb10u1.debian.tar.xz 92e2f211b9bbd2c5426f77a7cbb53ac52865722b 146352 tryton-server-doc_5.0.4-2+deb10u1_all.deb 73f79243ddbe79804d84857eda2cd599c99e287f 402036 tryton-server_5.0.4-2+deb10u1_all.deb 1324bff6729090ae62ae7f2fea8751dbf6776c6b 8177 tryton-server_5.0.4-2+deb10u1_amd64.buildinfo Checksums-Sha256: ee51e263557c874fc1e3c24adc63931f27fe0f54e7c338d22a4bdc81ee2707bb 2680 tryton-server_5.0.4-2+deb10u1.dsc 5523aa6af26f77a7277fbc8113470ae33c83a6bfa5efd46c23e7f694cc77b31b 647526 tryton-server_5.0.4.orig.tar.gz 942144fd4b3411bbbe1806ef82b1153e3de3c425703ba91cfffcf7930bfb559f 376 tryton-server_5.0.4.orig.tar.gz.asc ccdcb70e1e6b3fbe9b16a773d44962e6450f8aeb9a34371586173e24d9c0b870 31984 tryton-server_5.0.4-2+deb10u1.debian.tar.xz 8e02671e8c7e54e8b7c7f55b62dc0ab266583a797fe02c41e536d32daef2abed 146352 tryton-server-doc_5.0.4-2+deb10u1_all.deb 384dfad1ccd520c202e605b5f419d11016847b89c93956ad4e0181a30473a618 402036 tryton-server_5.0.4-2+deb10u1_all.deb cf63ea1478b886d456917b79aabfb5d23e265ad647a59cee76acfb900a1ad48e 8177 tryton-server_5.0.4-2+deb10u1_amd64.buildinfo Files: 4a0058cc0e0709bd813bfe44a82b40f2 2680 python optional tryton-server_5.0.4-2+deb10u1.dsc c829142e7d9d3a4e00be288305987865 647526 python optional tryton-server_5.0.4.orig.tar.gz 9c9c5cbc0dc6e15ab6f98fbd92ffd6fc 376 python optional tryton-server_5.0.4.orig.tar.gz.asc 02c5a4bddb84560336c92febe6f693d4 31984 python optional tryton-server_5.0.4-2+deb10u1.debian.tar.xz 8c96e32ad6d23086c850b82a201d1434 146352 doc optional tryton-server-doc_5.0.4-2+deb10u1_all.deb c6fab5d6c3dcbcece78856aa17a1a5cf 402036 python optional tryton-server_5.0.4-2+deb10u1_all.deb ad49956cbda7e2b521acac4dd08aeacc 8177 python optional tryton-server_5.0.4-2+deb10u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- Comment: Signed by Mathias Behrle iQJFBAEBCgAvFiEErCl+XEa50LYccXaB1tCb5IQFu/YFAmIpraURHG1hdGhpYXNi QG05cy5iaXoACgkQ1tCb5IQFu/bRtA//fioMxgzFpQgvHyu54q4uXtjCDFtM1mxr jmTAWQd75CNer4SJJ/ZAwpH5vsLSqLYJaAgZD1FSg08gQpiFc7XTTwzoFUO//6Bd 18TLL4GOxcVNoVxe+7QzagYx625TKcSqpC6i4CwiBsiV0AY9GV5UH1zqwE/18+pS CK2eUO/Rac5iSGSSfdjb5MYqj9fVhM5sga4AIpCenxrqLQATZQHbfmkMO8xgvOGn LPrnSZGIa31Vpu8KsIRWhpBdvR1NytXfduG9KWyuSyX6j1pZ1CMHMBaONvH9qhis jjyUb7iMZzAejt9A8BqF2TmRq+5BZIOtZieb2EDDqwTg9TmPCJfpBQXoraRosgLN uQKpR+VHaDajSWvEq+wgzYENKx44SBxkWAdZgNgC09tWyD2yHA8q/zuxI5YOy0W+ Ap4MRMm1Qzfmx6cJ0WoVc5BXnTrnQbOp7PZHvqgLFLMUi2nIRVTO+ifQOcmLnKmI B4DFyMZ60H1LGn7lUa4uyYv23aY6RlQ5iAPnMDAmjFg1IIm0qmq41xS+WJKZIJ+6 wD+uT2dUq/akp7vVlzVPn3wMRcPgkcdqVL9acBlQcyamHcdqfzi2AjWFr0Zhwg/K K5vyxLGW7AxfW1JcYwauB1V9cSiMf6a9ho29coYKN+FfHgsCtv6FGzkmGeaHVzVK uDAz0MxC2hw= =/nfx -----END PGP SIGNATURE-----