-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 14 Sep 2022 15:08:45 +0200 Source: python-oauthlib Architecture: source Version: 3.2.1-1 Distribution: unstable Urgency: medium Maintainer: Debian Python Team <team+python@tracker.debian.org> Changed-By: Daniele Tricoli <eriol@debian.org> Closes: 1019710 Changes: python-oauthlib (3.2.1-1) unstable; urgency=medium . * New upstream version 3.2.1 - Fixes CVE-2022-36087 (Closes: #1019710) * debian/patches/0001-Add-check-of-performance-of-ipv6-check.patch debian/patches/0002-Fix-IPV6-regex-used-to-check-redirect_uri.patch - Cherry pick upstream fix and tests for CVE-2022-36087. Many thanks to Salvatore Bonaccorso for the report. * debian/control - Bump Standards-Version to 4.6.1, no changes required. Checksums-Sha1: 49d1b8e5da9f216fcd299c5bb1e3586f761328d8 2220 python-oauthlib_3.2.1-1.dsc c22a7ca9b7e107a3c96f686af6149a5b43419254 176109 python-oauthlib_3.2.1.orig.tar.gz c8a88afd515bd3ac49a40bea01d71eb2c666dc1a 5872 python-oauthlib_3.2.1-1.debian.tar.xz faa80e561a7858bf56b1ee4f3d5d00556195d22d 7024 python-oauthlib_3.2.1-1_amd64.buildinfo Checksums-Sha256: c377e88e05be6d5a52b01f5b72289b58e0f7bc21d47b5d553aa19d7db4ebb759 2220 python-oauthlib_3.2.1-1.dsc 1565237372795bf6ee3e5aba5e2a85bd5a65d0e2aa5c628b9a97b7d7a0da3721 176109 python-oauthlib_3.2.1.orig.tar.gz 3881b62f5ca084fb7561157152a765659f1507c91e5ba6c50af0d9f8fa18991b 5872 python-oauthlib_3.2.1-1.debian.tar.xz 90ba48ff5f4fca12366d2786f23ed27dd9a4d297c1a96f951e1206995ac73587 7024 python-oauthlib_3.2.1-1_amd64.buildinfo Files: 20c471cfeb91d4c2e2595da6862629a5 2220 python optional python-oauthlib_3.2.1-1.dsc 9d4822ba51b99fb353c3095c618b36a5 176109 python optional python-oauthlib_3.2.1.orig.tar.gz e27a1e3d8c1c7c8ba2c5d0311849e4fe 5872 python optional python-oauthlib_3.2.1-1.debian.tar.xz ed1bbe362712afd78269a7514389862e 7024 python optional python-oauthlib_3.2.1-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJFBAEBCgAvFiEExlrvn+W/jMvW7bAZi69SLA1szt0FAmMh1AwRHGVyaW9sQGRl Ymlhbi5vcmcACgkQi69SLA1szt27FQ//S8NSIUcjlmuhg3Wx6UZyMO7kKXuQDyLX 1CORPoL2FWk3Yo4jjAGJ7WiYszfAklWdPnBOCblXOHp6RUfL4vGsdNsMr7ud3sdv fRtyg296+NoVXEA0s7u4ydvypsASuzTkv0jFbX2MNKNU24TxNke+XWSJDVJHmS6c K7ceK6mxcGrcPE+oFwmNTLZA0XEyRnoDFX28VHWgWqWhB2W308vHOGAN51I/viUL IEjWGwIuhn2V9FPG2iumVrBPexFkKqytobjpH8p5xazn2S4+Z9oOFpRSvUJVwcA5 2T3IGgpxhhny/vePNQUL/8yIWnfLHuA50FwcIuslKk0Gc86CuafHPnhFdjCubz5o twsMRtzton4WlXBnPv8s+2LrVdiY9BUyJPDaRKqmVNXyqp+0ZWsDPU8XpesDCJWE n2EkdA7cN3B1sxyvcNlPHz3vkv9NW1Ia32Azj4XLV+x5fSkvASOvgv/zLSREFZel uYjzkqgPeI+R3v/2Hxap/xqjxo/slBj60hrJpuTCt3o7KpBRBk5mQSSx16+DNyxs NdKkZTLky/2ToAzJiqywnKOfKGbX6ypMYDcC8WoFgDsH1stHuV8v4gCCTZYeiWtm 2w/cIF7+Acl9VWlr6kInDrS6lw0zuly011eUJ4qhUi/MM5yjmeWaKHlIKoc5Dn5x OKw3pqKMeX4= =9OVN -----END PGP SIGNATURE-----