-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 11 Jan 2023 15:08:56 -0300 Source: lava Architecture: source Version: 2020.12-5+deb11u2 Distribution: bullseye-security Urgency: high Maintainer: Debian LAVA team <pkg-linaro-lava-devel@lists.alioth.debian.org> Changed-By: Antonio Terceiro <terceiro@debian.org> Closes: 1024429 Changes: lava (2020.12-5+deb11u2) bullseye-security; urgency=high . * Prevent Recursive XML entity expansion [CVE-2022-44641] (Closes: #1024429) * debian/tests/testsuite: ignore tests/lava_dispatcher/test_compression.py and tests/lava_dispatcher/test_defs.py. They both fail on bullseye, but pass on bookworm. Checksums-Sha1: f89bc41777651703aa335c93bbbb43179084aefc 2982 lava_2020.12-5+deb11u2.dsc 8bfa5f74f95dcd1d195fa7b8a6f829d67f8867ff 95708 lava_2020.12-5+deb11u2.debian.tar.xz ef27a64d6b1ee5b4092ba5348772a11b37901369 10192 lava_2020.12-5+deb11u2_source.buildinfo Checksums-Sha256: 27bb60473eb32c9cd89d89cb868b7c32260d35284804950ab792f7d0415f954a 2982 lava_2020.12-5+deb11u2.dsc 1c044b6a524e05199dc3bdcc2f069147801d87d3a7f11d504d2a650078795540 95708 lava_2020.12-5+deb11u2.debian.tar.xz ad2f2b165a7f2fa73f11e3b366d446983ea5d6a9c6e2bc69d71174020575abe5 10192 lava_2020.12-5+deb11u2_source.buildinfo Files: 77515f146935649b2394b168fb2719f8 2982 net optional lava_2020.12-5+deb11u2.dsc 2e365647ba780f65aed4ae920b541048 95708 net optional lava_2020.12-5+deb11u2.debian.tar.xz 267b4c4a82711de927f070c346d0d173 10192 net optional lava_2020.12-5+deb11u2_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEst7mYDbECCn80PEM/A2xu81GC94FAmO/CdwACgkQ/A2xu81G C97P2Q//Xs87QYShiXnUfBq1s2Yvj7FSkBANy4BDWLqjJT5LMzisbPDZ9QHWtk96 TKOuNPB/M6SVxoQqVxYstHi3YxrvI9MJ7dZBbLS+TuTyCXZzLXHsBZHppwUUTa7I mcB3odpfr3jgK7f/XKKAwlJ/Y7j0qNDy2+wUyLY/FKvkv+FnU0btQt9zxpImp4ZK xs7KoTQZGBkX7toHUOoz6Y3Fa8/xgn6mhvXzvOepUve1rjVFuGoYoS8ICGEbAW+z 4P8ioKXY3gKnWmUIMh5Vsk5ULS5AyCroGPRJa6tAt8kiz7d2wmz9rnF3KsAFCeYW f62IB+t4pjgDnry+MFTHYErzos252Qgt8hMPpYwfc03bMIUsI+Nkwelg6hBA9e6P 1+foFlaVX/3E9UleAFh8LN3hDhR1LyRd0Ie+7OlT+k5SLT5b9fwpfLqJxlTq2fhD Ujpazm+DWgytqU54PU48l0+ayCxrrbJP3lSB9baxDqvvlXDugGrXRN4oEyISsFfA 51RXKrXSsUbX0/v4an+lvmYwE92aWkIi/ioIwZdweOgPeOAZrJomegHhx/7Y364H INNbmAQHmCQu5KsohFcjtKAvseci/AHorTJffbXdkOcPmMqJCJt/D9ZyS6oniEZU QvKSmdqyB9f+y1DOcSciFaVepSWnfn0lfVHf+vqKfqmuw4sfP6E= =odYw -----END PGP SIGNATURE-----