-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 30 May 2022 19:45:19 +0200 Source: libdbi-perl Binary: libdbi-perl Architecture: source Version: 1.636-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: Debian Perl Group <pkg-perl-maintainers@lists.alioth.debian.org> Changed-By: Sylvain Beucler <beuc@debian.org> Description: libdbi-perl - Perl Database Interface (DBI) Changes: libdbi-perl (1.636-1+deb9u2) stretch-security; urgency=high . * Non-maintainer upload by the LTS Security Team. * CVE-2014-10402: DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for [CVE]-2014-10401. Checksums-Sha1: e9012ef3bb53118b5ed9436ed952f45ba1b4a972 2345 libdbi-perl_1.636-1+deb9u2.dsc 7dc0f3c0482dab8036851528a9fa0a2048ce00cc 17440 libdbi-perl_1.636-1+deb9u2.debian.tar.xz ffb0a5034c59b05158f36d23f9a87db58261124e 6090 libdbi-perl_1.636-1+deb9u2_amd64.buildinfo Checksums-Sha256: 8bb13a33b262982d7b4fec1dc81cc9738b79dd712f93c18d397c06891add5e6f 2345 libdbi-perl_1.636-1+deb9u2.dsc 0032dc9bb71c9ec606b60ec6669b083a27c7e9e8b1b3821ada77df3961256cf1 17440 libdbi-perl_1.636-1+deb9u2.debian.tar.xz 50f7656448d7be597e6062a0d4c7c6f28ba288f090a7ed9249d1b3ee457bce09 6090 libdbi-perl_1.636-1+deb9u2_amd64.buildinfo Files: f47e35d7074116979d70d68611c32a01 2345 perl optional libdbi-perl_1.636-1+deb9u2.dsc b82991f7d7f81042e54cf4d03b4e5095 17440 perl optional libdbi-perl_1.636-1+deb9u2.debian.tar.xz df19a51dd8394f2fc4aee2b7f54b0605 6090 perl optional libdbi-perl_1.636-1+deb9u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE1vEOfV7HXWKqBieIDTl9HeUlXjAFAmKVEAIACgkQDTl9HeUl XjDwcBAAjvtT1hhRn3pQHj1YqGPJGndeGAYKkfAG0d6bTrtHLsYyuhWvaQohq2fW +ObOSQDaTWhMvbbveIDwttCA7Ogd/sDgN1r5YoCGZkCuG5dNdwQbL3iqqXVlFJEc 0A1P0bww1hlkFkoCSHDUh/JhSoaWWncen2pFo4b6oFuiyMTU2s1ONW2tAQ77a2pH V+BWRINMnGuaF3qd/VmtRHAlOemu9/bhU4IhCuHoMoBZoVTJrCqy+P6ie6iP6YR/ e8ElX7wCpSoEuWXuPvrJz8LCTnJ2o45AK3y7goKTOryuLwZWNWqJ5D2Wr7l6tF2j WzYfx4ZWrseZfNClH3WukiGjZ5JP5Pgsld3BdR7J8P6jiu6PLXa8mnzqg+eQ8L/w z9S2NREPrtnHhLNYsI1oOvm9Kb3tQXEpY7mEEfGh4SUOR/zsFUmCHKN5kDpI2KU4 uzRm8CU4ojxd9ShEK9+Jz3trxNhHD5RD0m5bFnv+N45SHQ6AUQatMuxG1PifIQeK XFg0r8gBZJmlMeJBpw1BCYPDG/EKZSpI3dFRGQW5NQ0cIUass8s0uM7NrGp5kebz pwAlpl8EJRZqDn+o8jQmdOtNzuAUC1cj0lzey0H4iQql95QQHDoiOLBuef9RYFDQ XetYMibydWqr465jgUqf3veH12qw75adiZ8npwPPfJwRqTDiG98= =lWkb -----END PGP SIGNATURE-----