-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 25 Jul 2024 22:14:54 +0900 Source: curl Architecture: source Version: 8.9.0-1 Distribution: unstable Urgency: medium Maintainer: Debian Curl Maintainers <team+curl@tracker.debian.org> Changed-By: Carlos Henrique Lima Melara <charlesmelara@riseup.net> Closes: 1076996 Changes: curl (8.9.0-1) unstable; urgency=medium . [ Samuel Henrique ] * debian/curl.NEWS: Update wcurl description. . [ Carlos Henrique Lima Melara ] * New upstream version 8.9.0. (Closes: #1076996) - fix CVE-2024-6197: freeing stack buffer in utf8asn1str. - fix CVE-2024-6874: macidn punycode buffer overread. * debian/copyright: drop copyright from removed file. * debian/patches/: drop merged patches and refresh patches against new upstream release. - docs_makefile_am_make_curl_config_1_install.patch: drop. - fix-x509asn1-fallback-to-dotted-OID-representation.patch: drop. * debian/gbp.conf: add upstream-branch definition. Checksums-Sha1: 7e3c0fbeb79119d67cdce22fe4ef2258577c22e2 3262 curl_8.9.0-1.dsc 47f6480add42bae60e1131c60dd698151fb6225d 4206411 curl_8.9.0.orig.tar.gz 1bd59eb71e80ccc9f473d123a923076d69a12c90 488 curl_8.9.0.orig.tar.gz.asc 07f466a75dbbf7554e1567aceb8b175e6986e55d 50740 curl_8.9.0-1.debian.tar.xz 5588c030295f1b389f251cc1f9ae67514842f000 11961 curl_8.9.0-1_amd64.buildinfo Checksums-Sha256: 44e1e5db2121f61bdfa9694d1b08a71e5aa4413c4639fde64e494b86686ede01 3262 curl_8.9.0-1.dsc 14d931fa98a329310dca7b190d047c3d4987674b1f466481f5490e4e12067ba4 4206411 curl_8.9.0.orig.tar.gz 2529e3d00e8df4272715fbf080c12ceb388af31c4efa9883b53ecbe1a88894db 488 curl_8.9.0.orig.tar.gz.asc 2351945bec125a9910c56f5b58d15d431aebe0422f3b272e3f3d55ede43b073c 50740 curl_8.9.0-1.debian.tar.xz 05b81c757c1ab4041b82c094da1a22e63bb7b1edbd5f9eeceecaa4b815a29401 11961 curl_8.9.0-1_amd64.buildinfo Files: e5a673f0557417921a62f68f545c8c9c 3262 web optional curl_8.9.0-1.dsc f9bca5d4d5bac1f04e6c5eb4d0418618 4206411 web optional curl_8.9.0.orig.tar.gz c9a5e5b5db624d038e8cf616f57d02d3 488 web optional curl_8.9.0.orig.tar.gz.asc c38585912bebb1414268e2904d0b5414 50740 web optional curl_8.9.0-1.debian.tar.xz 9756380200d8f193d290bd56579f8b9f 11961 web optional curl_8.9.0-1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQJNBAEBCgA3FiEECgzx8d8+AINglLHJt4M9ggJ8mQsFAmai9M4ZHGNoYXJsZXNt ZWxhcmFAcmlzZXVwLm5ldAAKCRC3gz2CAnyZCzN0EACJztpVp69OSgBvsqKBs0p+ Km8c6rB9CCbs5bYMXBhPW1IQd/ztsQxzIiiChO2rSi2ImCjmj6/4ln11/ltiu07n y3oqNaXfSg0+syj9zr1IIjEByKm0esHuJkUAGUL7rELw7pXiX9MBDQPEJ+9A519L RJWNDrk/8NpDAdruooq5zMe8TNs3DTNzOFz7dhh0OK3LpWpv4MTm1Z9fiTsDrTM6 FzEXuLtOLse3IczbHD8RUT3iwc8hc0awE5NAJjuTs5/xg5N5/Y+OzsHFKGwFeKYU QIQC9bJzSObeOchaAQrBXlnXwP16+ibjkITMGEPab2/ZXq2a/mOjDTehI5PLhhKU gu9oSlD7YhBz8cxY9TtpbZYH8k9gJzaLqajYsYy8XF/P7/j9OZ6eOsqPgjoM5yXS 7Yb7c7Fryc8eia7uG5rpMjy5gUiizkAM+7zkTPspmyH/yGvFn4ImwiLKmSHmFLSE 4kBSn+5jyS86ODFgEHn4Y6SPiIdVZf+yqTVhMJV98vM9hg6dbZhLPrl/vhQW8V8q ys4poAP71Y3nJE8QazVfUGLUaWkZEHcjNvJ0jwcW/c5s9qNAxigAT3AX2iz7rcr0 uet7dW1ikE/n3qfXueUb7ts/h4DYl5godpP//5CuybN1nCADDeFoVilnPlRE9i5w uIBcxr+nIfBvRt4N19MSOA== =uAnS -----END PGP SIGNATURE-----