-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 29 Jun 2022 16:32:14 +0100 Source: ldap-account-manager Architecture: source Version: 8.0.1-0+deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Roland Gruber <post@rolandgruber.de> Changed-By: Roland Gruber <post@rolandgruber.de> Closes: 898787 979896 1005424 1006232 Changes: ldap-account-manager (8.0.1-0+deb11u1) bullseye-security; urgency=high . * new upstream release . ldap-account-manager (8.0-1) unstable; urgency=medium . * new upstream release * Unauthenticated Arbitrary Object Instantiation / Unauthenticated Remote Code Execution (GHSA-r387-grjx-qgvw, CVE-2022-31084) * Incorrect Default Permissions (GHSA-q8g5-45m4-q95p, CVE-2022-31087) * Incorrect Regular Expressions (GHSA-q9pc-x84w-982x, CVE-2022-31086) * Unauthenticated LDAP Injection (GHSA-wxf8-9x99-6gp4, CVE-2022-31088) * Reflected XSS (Internet Explorer only) (GHSA-6m3q-5c84-6h6j, CVE-2022-31085) . ldap-account-manager (7.9.1-1) unstable; urgency=medium . * new upstream release * Fix CVE-2022-24851 . ldap-account-manager (7.9-1) unstable; urgency=medium . * new upstream release * Fix "FTBFS: error: unknown option '--skip-rebase'" by checking if argument is supported (Closes: #1005424) * Fix "ldap-account-manager.postinst uses a2query without requiring apache2 package" by adding sanity checks (Closes: #1006232) . ldap-account-manager (7.8-1) unstable; urgency=medium . * new upstream release . ldap-account-manager (7.7-1) unstable; urgency=medium . * new upstream release . ldap-account-manager (7.6-1) unstable; urgency=medium . * new upstream release * Fix "[src:ldap-account-manager] ldap-account-manager: embedded copy of normalize.css" by switching to https://github.com/csstools/normalize.css (Closes: #898787) . ldap-account-manager (7.5-1) unstable; urgency=medium . * new upstream release * Fix "node-uglify is deprecated in favor of uglifyjs" by using uglifyjs (Closes: #979896) Checksums-Sha1: 76ab71fa19dd36946d3d80786ac35c74b17d10dc 2076 ldap-account-manager_8.0.1-0+deb11u1.dsc f22953e901929395d750382c2a1b0f144f09f6c2 27400090 ldap-account-manager_8.0.1.orig.tar.bz2 3d34bf7e1e0049daa54c00b06b5594d2021f391b 36016 ldap-account-manager_8.0.1-0+deb11u1.debian.tar.xz 71792cefb271e0cfcef046383896b2050347fad0 7106 ldap-account-manager_8.0.1-0+deb11u1_amd64.buildinfo Checksums-Sha256: b250b5545049823a6c138308868e0fae3cac741164f900b16fa2cec5fbc3f617 2076 ldap-account-manager_8.0.1-0+deb11u1.dsc 9398e0ff4b1f44b9b2ab56d0f53ba789a5d3aadf4dea7d9a631683d74da42624 27400090 ldap-account-manager_8.0.1.orig.tar.bz2 e29ed159aab7ff224da04ec3d5ba232bea904c3e92c9a315d3db03b8d6eb2c28 36016 ldap-account-manager_8.0.1-0+deb11u1.debian.tar.xz c4c8d1b9c8e41639bf28402106473ab9ce5dc58f10e8a9f159b8d23b93c37836 7106 ldap-account-manager_8.0.1-0+deb11u1_amd64.buildinfo Files: ecaa592fc3ee7d979ebe88040867d921 2076 web optional ldap-account-manager_8.0.1-0+deb11u1.dsc f5fad3a07c70a8fb509304969bb5c16a 27400090 web optional ldap-account-manager_8.0.1.orig.tar.bz2 a3e0b60fc14cc9694bd692c705f426c9 36016 web optional ldap-account-manager_8.0.1-0+deb11u1.debian.tar.xz e89f215ddbe1a1cf90d8ebb978d45bd8 7106 web optional ldap-account-manager_8.0.1-0+deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEERgUMsnxvIxsAsUimhHMGK3zwlLoFAmLD0CQACgkQhHMGK3zw lLr7mxAAuvi/p53GAR6hgFBaL/iTFjunGjNqD30PHctgg0Q+ITB2xffE7HDrKbge OAJGF6cJUjsFCvDwO0CCfVtEYHdg3SUOls8PelZPEpqHGP1AA4XzaMcCT8zLzD+0 wMyLSBM7kPpZwaExESUrliU1LMha90O89VhjcrkxNOBMH/zCOrCCrXmOwcoHVJuw gX67Q9ofy6QVR6F5kc9fSH+jAekLdClk+tumUL009rptZeAVQ8DMSUmMw55oxdFk 17EveGQ/iGHdqOEVtuiKyUwaChlXs+2hSza/MoORaiO/0+fiaDiXzxgxsI13bs+Q C1EKwEZcGTjktA3RNVbVyWZwAjmW6FohoCuf0kBuQZOSU373G+E1avp0O0MhCo0D E2MoTfAT6TU37bSDLUrEtgGTWVvLC8s2EYxLlt3RMEkJhej2GDGGGTBadOXLFqRe 8hD4eWLMMknxgRA4K3i3TuRQsKzD8ZfIssqs5be9YFIW6VaqA3aH1qCYL2xPtaG6 85mmQyoN89tIzVSbAufZGnFBI0KAOOB8SI5qADwlu3BEk4TAjDC1WigmX3mlVW1v Q8CUWFesxDdV0HREcPOL/J/UXQZut/7f3ncAtW4mbtvnZwii7S64AUYmpVJ4PJr9 xx9UyI6HhBLHOOPCXowejlVUm2Iqt4AnAlmk4Kch/Bdc1bheMkE= =qkAT -----END PGP SIGNATURE-----