-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 25 Jul 2023 18:43:57 +0200 Source: pandoc Architecture: source Version: 2.17.1.1-2 Distribution: unstable Urgency: high Maintainer: Debian Haskell Group <debian-haskell@lists.debian.org> Changed-By: Jonas Smedegaard <dr@jones.dk> Closes: 1041976 Changes: pandoc (2.17.1.1-2) unstable; urgency=high . * add patches cherry-picked upstream to fix arbitrary file write vulnerability; closes: bug#1041976, thanks to Guilhem Moulin; CVE-2023-35936 CVE-2023-35936 Checksums-Sha1: 2b2a302487680711acd18e503b71eb165fc5e383 9164 pandoc_2.17.1.1-2.dsc 7ef27033436a7c1bab9ada6ca1817b0811198b0e 63148 pandoc_2.17.1.1-2.debian.tar.xz 3a5a259f2f31b30109601130d7f51cc66423bead 26262 pandoc_2.17.1.1-2_amd64.buildinfo Checksums-Sha256: 9178dda68597a67b8436a3f284ead312959faa76ae8b8f3c13e672fae35d6dbd 9164 pandoc_2.17.1.1-2.dsc f753dcdc560b4485e712a3dfd60a5a877ed43b5dec6e538d443ef73eb7043b7d 63148 pandoc_2.17.1.1-2.debian.tar.xz 28c7e28fc40af3d8041fe5992ffdf45972c4fa713ef63382b609a570fe13e22d 26262 pandoc_2.17.1.1-2_amd64.buildinfo Files: 32ccabe3a2902a2f2bdec807893109ed 9164 text optional pandoc_2.17.1.1-2.dsc 190b06502d3c919cb9059495ed2be454 63148 text optional pandoc_2.17.1.1-2.debian.tar.xz 485bf6864ec7bb0941abca2c332611a7 26262 text optional pandoc_2.17.1.1-2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEn+Ppw2aRpp/1PMaELHwxRsGgASEFAmTAD4IACgkQLHwxRsGg ASGOCQ/8CuCdLfXA4qXRR3YYnvRjmDhh6ZHtGgALbbgoi/5dWqLF4cm6l+FH8nUW m4OYNuBHb9o7bx0ZTJyQS2b4m5rsf6S68bimJZ67G/lwMEvc6pmbaE+Vv6v8B45W sFc3HpZKV1Ifp7z0fLr2t1DnlKyOeKjulVLrSHIKCsDD6ONb5Fm6olQfI2Ijk8Sq C/NWvoPWDr1FRxtPhi9u0+j+Fhm1htXnQN8cGTxLn36YEFW8pNrWPFRfuTliMQeT uBYSq/ADNGIn7fURodbgYox+VDsdaJXQ1gjMP47idTXLk9yYmQxg1lVynZUpKAre L7rBpIyyjxFsIJQq2DkTcJM2rjAmlSZTdGZFy+qmWkR1o1xtHRLmEdRgnFO+ACtW /BLU+Y8Jv+rR2J4Qk3i1SQNl+yYCLisUNPI8Tn2WgGWf89TPF83CQ1lNLCUbdfzU ajGjjyZxes707YoWZWkSANVjFfVAFrFXS4E6Pf5qf/X0fiLf8ksFy/iKDHVkGROa 8pZYPWhmpEY9SyCenGmnnFiyHuSkTvPXiQ7W6XJ4SOBsIinmmhgWT0xZan/xerEi F5UJ0FBRx7GVgyZuiwos2iqcyoJEQcAuPRO+IV2RUZASGS/OLP2RNVcZAt/h2mid avGzJAuqs0RHkZN/nwEuEnqAxcxnxD3r1ybRfV6Yx3sa72CWf4Q= =P2// -----END PGP SIGNATURE-----