-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 26 May 2021 09:06:37 +0200 Source: adminer Architecture: source Version: 4.7.1-1+deb10u1 Distribution: buster Urgency: medium Maintainer: Chris Lamb <lamby@debian.org> Changed-By: Alexandre Rossi <alexandre.rossi@gmail.com> Closes: 952755 Changes: adminer (4.7.1-1+deb10u1) buster; urgency=medium . * provide a compiled version and configuration files (Closes: #952755) * privacy: default to disable check for new version * Backport security patch series from upstream: - Fix open redirect if Adminer is accessible at //adminer.php%2F@ - Fix XSS if Adminer is accessible at URL /data - CVE-2020-35572: Fix XSS in browsers which don't encode URL parameters - CVE-2021-21311: Elasticsearch: Do not print response if HTTP code is not 200 - CVE-2021-29625: XSS in doc_link Checksums-Sha1: c67f752235a9e4420d09ea9dba3a7149ce81648b 1877 adminer_4.7.1-1+deb10u1.dsc 4652a6907e41ce9d5618ac2d781ff17c45fce337 592691 adminer_4.7.1.orig.tar.gz 301f6938730f74a0fbf3b24eab7a4b0cdc7a7b9a 7432 adminer_4.7.1-1+deb10u1.debian.tar.xz c58633db4b928a94f7cb53d1be1642cb24582ca5 6315 adminer_4.7.1-1+deb10u1_source.buildinfo Checksums-Sha256: b9d35d154975cf3e7dbb8e844ca4a3ed5952fbd5f22f8dd3fcba0be697735ddd 1877 adminer_4.7.1-1+deb10u1.dsc 2a7c49208c6dd17a57d6e99e2d463f6593038614551b720629694a86828c1286 592691 adminer_4.7.1.orig.tar.gz 24ae13813b0a1ef46d9df347a2304e8d95ef1fbe0a71e46d53198434a3ce1376 7432 adminer_4.7.1-1+deb10u1.debian.tar.xz 0a59ee45012f11c175e411bfae5bb18b8407e907e61fbe2688e9d39b810568b2 6315 adminer_4.7.1-1+deb10u1_source.buildinfo Files: 285de474d7a2d6befef7729aa15d1a40 1877 web optional adminer_4.7.1-1+deb10u1.dsc cd454f5339db7a52cc63b88238c7a95b 592691 web optional adminer_4.7.1.orig.tar.gz 85316e51092371200764242a637a16c2 7432 web optional adminer_4.7.1-1+deb10u1.debian.tar.xz 325d636fd140a5a3fdad3974d9676852 6315 web optional adminer_4.7.1-1+deb10u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEcJymx+vmJZxd92Q+nUbEiOQ2gwIFAmL00JsACgkQnUbEiOQ2 gwIqCBAAvpHwFaKOXhqk7tj/0hCWqwuhsD2eqmmfqqNZ0fUtfu89lvIiJu0lHjAY hmZ7b3x+Kw0vL8tdSAtm7ZTt1bAp7ZfbVWi24bOn4LyIy9k88DCGlpDXDVqTLlz5 bFdEyt4L5zuXCoufoHo5zi9yssoGnzjgZVislB2LPjvXfKckIPTFQlA2FOBPnJx0 ZEEnFi5RkYuo6//c0uTXqz0D+560A7YR1N5Bjdzq00WhPX6ld/AUDHw5UWowZfhi fVKOvvH4mYG0GpUdeBD8GGtd3dafcBz8RUD1eBA3ABldY5/I6zyyFqcTwcRU/w5j g1Jgl+RivgsYgXVcw2j8Yee+I5dBP2pbuT+aTK756ikW8biS2CvdZpy6W2NTDi/f 77v2Kj27VWuoj+HoDyhUnqupcEms7vVnWk21QlW9fIRMyiEKc6RzV0S/AZ85x+vk lxbybAH41IpAFBlRGrFDbewmgcqWSnoMOOinL01SxQYrXTwUS/pPY1nSmb1EE8Fb 3HPK9Z3TlkTEeeA6WMfQ0JYjw1cezWH2kQlDom8YSw8rmb1X3HJvfRMGwYATIZ8B kKSl/XgzebalPM8uqxu4Ugz9XuhpusDkHrF97HhR+8XBhxt47djgBHt4Bu5F5WCC cDhCWG1NdT8SUZuJ2ESCwxSQr+PZIpDTpf6JjnxOpiYj8h6qf7w= =WmvQ -----END PGP SIGNATURE-----