-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 24 May 2022 21:01:53 +0200 Source: filezilla Binary: filezilla filezilla-common Architecture: source Version: 3.24.0-1+deb9u1 Distribution: stretch-security Urgency: medium Maintainer: Adrien Cunin <adri2000@ubuntu.com> Changed-By: Andreas Rönnquist <gusnan@debian.org> Description: filezilla - Full-featured graphical FTP/FTPS/SFTP client filezilla-common - Architecture independent files for filezilla Changes: filezilla (3.24.0-1+deb9u1) stretch-security; urgency=medium . * Non-maintainer upload by the LTS Security Team. * CVE-2019-5429 - Untrusted search path in FileZilla before 3.41.0-rc1 allows an attacker to gain privileges via a malicious 'fzsftp' binary in the user's home directory. * Add debian/.gitlab-ci.yml * Add patch to not build fzshellext Checksums-Sha1: 4028f87641173be76b815b7da5763f9e0d21f9b6 2247 filezilla_3.24.0-1+deb9u1.dsc 955eb2da0bdf7875ad7ce1192c589a3b10fc4f10 4635977 filezilla_3.24.0.orig.tar.bz2 a23d1a5f2f97f5ceba0e11957cd98e0878b8507f 12760 filezilla_3.24.0-1+deb9u1.debian.tar.xz a81799b38d0f339059ee4090ae5b0cfd7a0d802f 13375 filezilla_3.24.0-1+deb9u1_source.buildinfo Checksums-Sha256: 928737eabf061d7329101b39a57e5026066b24932ff1e9aceeb0e7a8ab201955 2247 filezilla_3.24.0-1+deb9u1.dsc 3d5dd4899cdeca038afd330f24098a61a223f15b172611e0c210244911cd4cad 4635977 filezilla_3.24.0.orig.tar.bz2 d7541d9586b15f3169471337ad06b72cddfd3f26e126468f7a2afeffb5bea71c 12760 filezilla_3.24.0-1+deb9u1.debian.tar.xz e47e35143512510227082d1ddce5b0cc3cbd57ac97edbd0ac131a40568599075 13375 filezilla_3.24.0-1+deb9u1_source.buildinfo Files: 594e889c5474394a32fc21f0f6cdad90 2247 net optional filezilla_3.24.0-1+deb9u1.dsc e63a42b8f384554ef58f44d7e4ba26b7 4635977 net optional filezilla_3.24.0.orig.tar.bz2 90f0ebf514fe18ef1042aa7f2b3f1d4a 12760 net optional filezilla_3.24.0-1+deb9u1.debian.tar.xz 4c116a611df26a48f1887a508b675c61 13375 net optional filezilla_3.24.0-1+deb9u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJFBAEBCAAvFiEE2zBuSxD/2Y7021XXGUtjGrLaKIgFAmKPZzMRHGd1c25hbkBn dXNuYW4uc2UACgkQGUtjGrLaKIi+DA//cDpmLtpoZD6wSleJ/KPAdf5yyOIutF0h /+okdvR0yKKzwjqkf+sKobWb/CtOT7YV5dY6q3zs/AsTainXoMQDsBXVRt0/qBJd Q60ma1HYLMj5J+m3mb4Xbf3ojCPotIDD831VSDp/LvfCRzHpgBcXYPgfHgfTv30W WBVUROh/46Yen5wFxkLTq4WEXqxR/+ck2CIi7rPvhT5dy2CS3eq8OrG+EO0teVwJ zHMX0vY0KQVszF9gDcZd+Cm9gIwhcL4auhFnUKTnl8d+3HyxBOnhEr+XDPlVylmg HrDyPgivogdIjTs8JQQclwDGTKaM/JfTuCUluQh5sIJBQndzMl3easaoOAsv5pFN Y+5t05N1Jn72wifcaKJuFX/Qlpheeeo3MuBYsHbGIMrkU4LTj1cnQ+wrDuC5iPju FTz+VEw4YflumGQDNza8OiH/Kh/Cvw5vpjAVddhZQYo2YFKI0e51nHyT1x4JGBSC n3xVuBHUdwxC/tsTE51in1QVbik+5bW4dJ7YiJeXKAz+9LI/nsj9CyGO5jUjiBN/ OzAwuqfI7RntnOt0KXkCZx3KMfPS4JOrlcuf3+ftOU1oyZ2mxXNBpU7AxNTB5Q6I qoAzgjZOuBc5LUGEOCtVd8kxMSEU4dPUGuLCIO6VkYJwITDVHmUhaQEFs0H4ySpY GzFOcy8nFGc= =aKVX -----END PGP SIGNATURE-----