-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Tue, 19 Nov 2024 19:28:01 -0300
Source: needrestart
Architecture: source
Version: 3.4-5+deb10u2
Distribution: buster-security
Urgency: medium
Maintainer: Patrick Matthäi <pmatthaei@debian.org>
Changed-By: Lucas Kanashiro <lucas@freexian.com>
Changes:
needrestart (3.4-5+deb10u2) buster-security; urgency=medium
.
* Non-maintainer upload by the ELTS team.
* Address local privilege escalation vulnerabilities from any unprivileged
user to root.
- d/p/0007-core-prevent-race-condition-on-proc-PID-exec-evaluat.patch
- d/p/0008-interp-do-not-set-PYTHONPATH-environment-variable-to.patch
- d/p/0009-interp-do-not-set-RUBYLIB-environment-variable-to-pr.patch
- d/p/0010-interp-chdir-into-empty-directory-to-prevent-python-.patch
- d/p/0011-interp-drop-usage-of-Module-ScanDeps-to-prevent-LPE.patch
- CVE-2024-48990
- CVE-2024-48992
- CVE-2024-48991
- CVE-2024-11003
* debian/control: Drop Depends on libmodule-scandeps-perl
Checksums-Sha1:
147ddcb98d850572280ac42a218fac83b2d1c407 1823 needrestart_3.4-5+deb10u2.dsc
904822a8fda02530660c91c81fdc34259b9d24b9 63219 needrestart_3.4.orig.tar.gz
1b2e5bb21f42349425162b68fbe1df9f6b5b5b07 13384 needrestart_3.4-5+deb10u2.debian.tar.xz
222594e523d8cab12c5d398e847ada78de765614 5672 needrestart_3.4-5+deb10u2_source.buildinfo
Checksums-Sha256:
ca65ffc524d9270207840cc417ef68e6614920e618bfa02b2a1750cc3a2387ea 1823 needrestart_3.4-5+deb10u2.dsc
e19dc223938c1a97277b7efdcab188bfa82618d259a8cb026414f5df5088b90f 63219 needrestart_3.4.orig.tar.gz
0983f6e064b4a659242a80f5e3d0107a718778e19aca0eab1830ad17ce8b9c29 13384 needrestart_3.4-5+deb10u2.debian.tar.xz
baf9ae07c4a2f5cd0bab3330b965af002d76369ba1a964d5dbe939ce0a5f1714 5672 needrestart_3.4-5+deb10u2_source.buildinfo
Files:
f4c24faf3772c1b5df916a3aa8d6d4f4 1823 admin optional needrestart_3.4-5+deb10u2.dsc
1c9cf54f1f677286b54a6affb834d823 63219 admin optional needrestart_3.4.orig.tar.gz
4fee3c2b0c802e89b55aed852d409275 13384 admin optional needrestart_3.4-5+deb10u2.debian.tar.xz
a28084493fad33ac612b4c12e708c3e6 5672 admin optional needrestart_3.4-5+deb10u2_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQJJBAEBCAAzFiEEjtbD+LrJ23/BMKhw+COicpiDyXwFAmc94K4VHGthbmFzaGly
b0BkZWJpYW4ub3JnAAoJEPgjonKYg8l8EbYP/j+AuWTLjpyiLLHO2YwRhFkgVmNR
oFKoXhN93EiyEcKGticpvDgZ1L8xxW3cJMBUr5Vzb/9viBFfvtavdd+nx3+mbANB
MjiXDOXgernjdHQpYEXbxSrPcYjsvw+lwPaN4Upjpp9ZjBJN+SuEtJ1RHD22ftAE
hF7RGVfpvCK4Q/ydT+WwpN5SBJ5GhYhNcJRL9xkPFujFPQUKB4U0BA+6jRdWCoCf
+pJFEFiLMz0VoGKTxzpaqicKXaq8757DrOX/YGQOZxpBktHqGVtybfuqTe9po0WR
M5fKY1yLdhXRgdWwASdomZYOB0plaAJijjS7qzpB/RZ1LEQUehujXhoe9CFiMdhS
KIkcuEhWpDbgK1BQCUUTFZX2uTQKbGBxq2MT/G3L+wIuIsZVvWcVthCt+K/My2XQ
gOrJFcMh6qrGc3aTZjMX9A8UClwZVXt5QzUqtGabjSz18UOkTxFomI2AKisCI965
jx167SoFHTE5fvp96DLYfKWR4C8VFplSUOTwfHUxWeOfEXwSBRFV7ze8Ejpi64ri
O57WeTfgHpQDXjijNnx656QF0JrGTml/v8uZoLXqm6YFERtuKPbvN4J63zPPMVTo
rzeWehwINjvYaPDc/RlH1xH4kn36j3XSfbUfiRG3Sw47fYOETIaGCGYxUFDW0x8s
zOpaPs31XbTZW2p+
=R1+E
-----END PGP SIGNATURE-----