-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 29 Jun 2022 16:32:14 +0100 Source: ldap-account-manager Binary: ldap-account-manager ldap-account-manager-lamdaemon Architecture: source all Version: 8.0.1-1 Distribution: unstable Urgency: medium Maintainer: Roland Gruber <post@rolandgruber.de> Changed-By: Roland Gruber <post@rolandgruber.de> Description: ldap-account-manager - webfrontend for managing accounts in an LDAP directory ldap-account-manager-lamdaemon - Quota and home directory management for LDAP Account Manager Changes: ldap-account-manager (8.0.1-1) unstable; urgency=medium . * new upstream release . ldap-account-manager (8.0-1) unstable; urgency=medium . * new upstream release * Unauthenticated Arbitrary Object Instantiation / Unauthenticated Remote Code Execution (GHSA-r387-grjx-qgvw, CVE-2022-31084) * Incorrect Default Permissions (GHSA-q8g5-45m4-q95p, CVE-2022-31087) * Incorrect Regular Expressions (GHSA-q9pc-x84w-982x, CVE-2022-31086) * Unauthenticated LDAP Injection (GHSA-wxf8-9x99-6gp4, CVE-2022-31088) * Reflected XSS (Internet Explorer only) (GHSA-6m3q-5c84-6h6j, CVE-2022-31085) Checksums-Sha1: 945e6bb54d3745c2247d81f1e2d44baa02b2689c 2046 ldap-account-manager_8.0.1-1.dsc f22953e901929395d750382c2a1b0f144f09f6c2 27400090 ldap-account-manager_8.0.1.orig.tar.bz2 d56b540c895b5c4ad17c42abc1b38befd61db3dd 35976 ldap-account-manager_8.0.1-1.debian.tar.xz 1a40d589ac8a9ba7899acf87df785a6a01b0e795 42228 ldap-account-manager-lamdaemon_8.0.1-1_all.deb 2720829bf01f35fd2ccb1b8166029cc5add663af 23028868 ldap-account-manager_8.0.1-1_all.deb 5dfb862561f4d3fb48bee222df0bd12ff9943a6e 7745 ldap-account-manager_8.0.1-1_amd64.buildinfo Checksums-Sha256: 24fca2939935997208aed61a70e96d618b80d60af93445d7c960a7850a50831f 2046 ldap-account-manager_8.0.1-1.dsc 9398e0ff4b1f44b9b2ab56d0f53ba789a5d3aadf4dea7d9a631683d74da42624 27400090 ldap-account-manager_8.0.1.orig.tar.bz2 82e27e5dd2625f2ec195251ba62a57ff00829562168a97c94a469bf3815bb0b2 35976 ldap-account-manager_8.0.1-1.debian.tar.xz 5a6a71902bc1de8e0e8e907223782b16e31b4a2976067985a548cb1575aeaaaa 42228 ldap-account-manager-lamdaemon_8.0.1-1_all.deb f7243b8ed1dc44e0435cd92db75959e31232e054c05ca4474572abe5f0007167 23028868 ldap-account-manager_8.0.1-1_all.deb b2496ca95b12a828e0e581c56aebbc72d0fd1ccf267c0848780fb9ee761a362d 7745 ldap-account-manager_8.0.1-1_amd64.buildinfo Files: 1c838de060464d7cd093a3d26eb5ff43 2046 web optional ldap-account-manager_8.0.1-1.dsc f5fad3a07c70a8fb509304969bb5c16a 27400090 web optional ldap-account-manager_8.0.1.orig.tar.bz2 3dbc6bd0f9794999541fca8795a05c04 35976 web optional ldap-account-manager_8.0.1-1.debian.tar.xz c8e27a040cc2ea6c1a9cdfb0ba78f76d 42228 web optional ldap-account-manager-lamdaemon_8.0.1-1_all.deb 6462e206ee80967c7bb12b32dd53db56 23028868 web optional ldap-account-manager_8.0.1-1_all.deb ffc3aead8ff879ae2ada6c566cf1fc59 7745 web optional ldap-account-manager_8.0.1-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERgUMsnxvIxsAsUimhHMGK3zwlLoFAmLCkXUACgkQhHMGK3zw lLonvA//Va8M4h9JJxuBCOB9lIHrjp/2cW0Yo4N35B3Oa3sByUEToNXyGRc5viKp HdHYModEZ7Jv5aArLWE+e+JqVji6zkYcXGUVioshEqu8Ox3yvccyVtBFTy/jpwrK iCY64UpAIOv6vRkDhJ4PGFoThDgbs5mMi0QImTl6w4sKxdocQF23Zworbd1SAw00 fr0YxtkEO1lugnegLt9J1n1UMlk+A1qQmvZXJl9gcJLf54QCeJWBA/xHmBS6CZJ9 w/ZYzXMB9ngBsynv1VdqWhPzASH/5yxzQcK7zJMb+68k9bAEej2nXANrg80Icps5 jMM9haaS1QhkxDQtE86/5Y+QgHt14Jq7cnWg7LjuTcLnY1HlcymDRQfl6B5w93Bx myaKZB/FBS55KhQSgAgvd9JNzVFwIFWGEnhtdo/oFb7aBmFQMVFfPuXDW4Zp8Kmm 5/SVHNTfPAWwCwwJH7xktPiLiWn/Zy6UdsxCzUrdljc/5H1MwiyqwrQB15Jwc33y yEkxjxB2YryLqO66W27gwGCl0v1Q9AqumBUpTylKvhIg7Kk2NGZfBAJM8+szEUvN 3oPJrp9SqrAI3UnykGvjytWXcE9WQGyMyaAG+q1AJ+OJ5fUjkMhJCNS5wsNcHmlO yieAmrwxmqMnNFLz1MygDfGrRhZ+mTXAdd2xJgO8vlYqXgqDGpI= =xczH -----END PGP SIGNATURE-----