-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 12 Sep 2022 23:08:48 +0200 Source: libconfuse Architecture: source Version: 3.3-3 Distribution: unstable Urgency: high Maintainer: Aurelien Jarno <aurel32@debian.org> Changed-By: Aurelien Jarno <aurel32@debian.org> Closes: 993178 1019596 Changes: libconfuse (3.3-3) unstable; urgency=high . * Urgency set to high due to the security issue. * Add debian/patches/CVE-2022-40320.patch from upstream to fix a heap-based buffer over-read in cfg_tilde_expand (CVE-2022-40320). Closes: #1019596. * Enable hardening flags. Closes: #993178. * Bumped Standards-Version to 4.6.1 (no changes). Checksums-Sha1: 67b0915e6086a3291b48dfb3ef766304c9b4126c 2061 libconfuse_3.3-3.dsc 956a70abccb77b2beb6a08437e241c18bdf4635d 7644 libconfuse_3.3-3.debian.tar.xz 55bc511eea8a2d931636b755ddb3c2df620bd8cd 5849 libconfuse_3.3-3_source.buildinfo Checksums-Sha256: 6b711e4cedfd3f032c921b96ee854fdbbcd7df2160f9d2ffde3a728baee63f7f 2061 libconfuse_3.3-3.dsc eee86195d579e2ee121c2404d0014391b9bb3192c1963a8ea2559f921d99eb3b 7644 libconfuse_3.3-3.debian.tar.xz ac175a6a19050ac02822b281833f800d21ea8ea4cd512831f7b389965ae34af1 5849 libconfuse_3.3-3_source.buildinfo Files: befc5fb7d2c69d9c4423a16403f135e1 2061 libs optional libconfuse_3.3-3.dsc 46f4f2e86b1a1f4b721464a2e4e85a46 7644 libs optional libconfuse_3.3-3.debian.tar.xz 3d1f5f20741b533f808cd0f7c66fda9d 5849 libs optional libconfuse_3.3-3_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEUryGlb40+QrX1Ay4E4jA+JnoM2sFAmMfoBoACgkQE4jA+Jno M2soGg//RQImuWdNDP1QWDTJeWoTLPcqdtwIJJUgpsCHswPXvZEGeQScCMv0X8qO H4+ngO2ftiT46t6MPhxdrI1Bdh8g2JDEhj7q5PoHp6C7otsXPiexpXAHkfHDUfN2 8phQr2duAC+AWbT0KA4KGnEIOba7BBjcjiRPMwPZui1D/aS8y30v+fyxxkFJtO6H 7/rTduiih8Pa6t+r5FQYypZ51Nq/hzyX3sNS+6sLdrAcdQDcI839y378S6IrWzEq xBhlgLivKvVNd0ZxpKGq/k8uRq04LB+a1jhL1H6RwijrUHI8FPxz8DYMdT1hZnaM MMnrTLXjTKiMdfi4N6VNrwZAglSpkNlFFQJsW26q6hXA3f5iVdtm7CC3Q5MnEfXW 2DwAjn0Uh0SDgb46vKAceM85RnXRMnqxlRS+efeaOyOk5oDHYi8IK7RKqr0PSNZs tPw1XUUTicaasWLGC35DAbrP0mChX4zZk/SxCYT3E8lt5ilR/W0zRatnKZ5y7HI7 ALCobP+nZSTOJi1JU4lpyF1e71AG3werE70t8DnTytgIKD5xIY6JIurfXEKTPO12 Ds67LybBxAfjf7lYvb2U/7bPKgf4qUpRZ+Wa0i4iWjL/xDSiwHqBBPYf3OvoBlek Rq1bWq4+z445OC/Fwo/6XCLJFw0Nmk1TPLe9rrMxqCVZftyyAM4= =QQtN -----END PGP SIGNATURE-----