-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 05 Oct 2022 12:00:00 +0100 Source: dbus Architecture: source Version: 1.14.4-1 Distribution: unstable Urgency: high Maintainer: Utopia Maintenance Team <pkg-utopia-maintainers@lists.alioth.debian.org> Changed-By: Simon McVittie <smcv@debian.org> Changes: dbus (1.14.4-1) unstable; urgency=high . * New upstream stable release 1.14.4 - Fix several denial of service issues where an authenticated attacker can crash the system bus by sending crafted messages (CVE-2022-42010, CVE-2022-42011, CVE-2022-42012) - Use a path-based Unix socket for the session bus, avoiding sandbox escape for Flatpak apps with network access (dbus#416) Checksums-Sha1: 4ce569f14919eb73888b4407f2d99beeaf5db7a5 3758 dbus_1.14.4-1.dsc 7916710d63533b8141e581cc0f98b4346d08bf6c 1368196 dbus_1.14.4.orig.tar.xz 0396318efce0102bb8595513e7d5173713c28427 833 dbus_1.14.4.orig.tar.xz.asc 3a83d5a114a5bcc2282660ef449b5c09ff284192 62416 dbus_1.14.4-1.debian.tar.xz 4cc4acbb9fd84713103594c69d145ab2aebbcdb9 7505 dbus_1.14.4-1_source.buildinfo Checksums-Sha256: 80ee1606b6914482c3931f093735bad7b4e6c8237c908a7e98c5dde158d2f2f3 3758 dbus_1.14.4-1.dsc 7c0f9b8e5ec0ff2479383e62c0084a3a29af99edf1514e9f659b81b30d4e353e 1368196 dbus_1.14.4.orig.tar.xz da0278f451037e3c190799816aa36efacf51f77b66636f043944168a5836c575 833 dbus_1.14.4.orig.tar.xz.asc 85b8166b289dca6e3e11d9e7ca3b7805ede8eb2c3e7dc3f76c01329e166ed788 62416 dbus_1.14.4-1.debian.tar.xz 8972b3c6242ee5a74de35e70493679acc23e234463dbc31dbb293d6957f03d87 7505 dbus_1.14.4-1_source.buildinfo Files: cd11f956feab43f972be0db6b3ca0ee2 3758 admin optional dbus_1.14.4-1.dsc e36f0f160751fa7ce103782166852c6b 1368196 admin optional dbus_1.14.4.orig.tar.xz 4e83c45341beab38f6a362d0456d36ca 833 admin optional dbus_1.14.4.orig.tar.xz.asc 0b60f7fede0713a28606e9c1740c8018 62416 admin optional dbus_1.14.4-1.debian.tar.xz 54ea51053010a9d4e95d6859d7ab679b 7505 admin optional dbus_1.14.4-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEENuxaZEik9e95vv6Y4FrhR4+BTE8FAmM9jT0ACgkQ4FrhR4+B TE9YrQ//b7eLW8svavVx/E2BHTXabzj8uLoB3fA8WHpcmseWW/4O4v1eAphzVOua NqR29Uybjt48UnTg0KTMPIFcU9ldGuIIVxNTnTZVZNAJjQvsauezQ1FXybaM0pNB sLjO9xqjcAIpGKDRyUMbRZaDrmV8jSAy6fMtipqoVCxlurFZFyC1c2KKN0hld8+g nNjVg70ULGa8f12zappwgSu2C+2rozweal+r7/hbEjg5WtYx+tq7PySuIBLxUTn0 LhhSV2rHBrz5C0+CCy5mawD6tIE0b6qeOiL4RWBPgZMxwV9Ud4JpKtlYiqZUfBD+ ONONngrDkYevWsh6X/LmDB3Le8y4sT6sx/IB7Qb9fAvWm6Y2ppgfWLMPSbhRKLgR iHAIhUh1LKWCZPX9pzghzAqV4ABVm5WTT0zYEKF4QGt0F+PSYBx5CeWXtRpkpMzj FawMF1ehA3hoXVRnCZSzzV31gdXVr038JAK+4bayvcUhtj/ZbJ82uW64iOpbfkGC R+Wz8iN9e/0Wi5o03s7btPTJxBACOt05E3w/4P01mSeld8MA9qH7rEapiTIEwKvY TckwcznmxlR+jafqqAzgoAdMBgWnCgNz+ptzfLENtLwpfTAdTuw5yk8HwbAmjuuQ G8dwJcMtj2DQ7PdOv/n36DHJ0oZpKFnCbZiGCw8bHRd1cXzpDHs= =kE9D -----END PGP SIGNATURE-----