-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Feb 2025 23:30:52 +0100 Source: trafficserver Architecture: source Version: 8.1.11+ds-0+deb11u2 Distribution: bullseye-security Urgency: medium Maintainer: Jean Baptiste Favre <debian@jbfavre.org> Changed-By: Daniel Leidert <dleidert@debian.org> Closes: 1087531 Changes: trafficserver (8.1.11+ds-0+deb11u2) bullseye-security; urgency=medium . * Non-maintainer upload by the Debian LTS Team. * d/patches/CVE-2024-38479.patch: Fix CVE-2024-38479 (closes: #1087531). - Fix improper Input Validation vulnerability in Apache Traffic Server. * d/patches/CVE-2024-50306.patch: Fix CVE-2024-50306 (closes: #1087531). - Fix a possible problem that can allow Apache Traffic Server to retain privileges on startup. Checksums-Sha1: 00b9d85288959e0942bfd40e06ec479274ce4368 2812 trafficserver_8.1.11+ds-0+deb11u2.dsc b4cd0c6872cc1d06681ae60c7234f0761ddd3645 7928992 trafficserver_8.1.11+ds.orig.tar.xz d46b1799b246c85009e0aec01b8a9c01a1a23654 47820 trafficserver_8.1.11+ds-0+deb11u2.debian.tar.xz 2727ad9ecb4f5b41fdbebe7182f653ae79bba096 16252 trafficserver_8.1.11+ds-0+deb11u2_amd64.buildinfo Checksums-Sha256: 73466ad1f249f19fb06a4054639ecd94e11a12a8eff3c9a52f560fc64e6c66f3 2812 trafficserver_8.1.11+ds-0+deb11u2.dsc 54f04e36d35b86e488d2a0b592d773358737cb2f959e1bb1668d34cd374cbbd4 7928992 trafficserver_8.1.11+ds.orig.tar.xz 5837590c2f6c9491794b92616d35c898557e246c9f81cae06474a2b1802efffc 47820 trafficserver_8.1.11+ds-0+deb11u2.debian.tar.xz 8acf1a88e98aea7d59e1163dc91fa7efc5483ec6deabd473b7d62f23795a5c04 16252 trafficserver_8.1.11+ds-0+deb11u2_amd64.buildinfo Files: 04588bf80ed9f5f5f397fb2a1a0acc27 2812 web optional trafficserver_8.1.11+ds-0+deb11u2.dsc 82a87c06577dcec03a0d5d6a38bc899c 7928992 web optional trafficserver_8.1.11+ds.orig.tar.xz c288dd91f65922ac6aa57e1083643904 47820 web optional trafficserver_8.1.11+ds-0+deb11u2.debian.tar.xz 646bdcea56df19a4655761d6a1675917 16252 web optional trafficserver_8.1.11+ds-0+deb11u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvu1N7VVEpMA+KD3HS80FZ8KW0F0FAmexKaQACgkQS80FZ8KW 0F2ljxAAzYT5fzukAPE9z0q5X+Z5cMnquf5kvAZq2sm/BHSLOocBn0BrkeIG3W65 tHmaY9/L1aZ/rmi/AKDS7Cd/32olC9PG0XPZOOA9f/uAzEOwYXXhzhtukNmHYGgo DEcovKPvKvS9pxeT6/dezCjAh1AgljKQiWL1nLe6yhc7fFIyr/ZbACZVlcgHx/05 wpGcWEvLTfrCujJozmmqp2yoPS5ECmICCl9MA/sY3TZHfYce07C0uFfL7ZKUWqdh mk0kH1aWyOE1nAiPpD4qYnfYq3R+PUrovGUje1LVaBuzUEkmS5vzqMxlKeLdlxeC 0PYpc47I5oQlIaL/c0Vo7x3k6yY8zCYxAotGbG4iPCy7E/u8LzB56MpOszt+w+wZ xLBXXZ+SLL1ZGBy3x/AFk3LFTqSkbA+9BA0fq5nudEBYyDs9hZ6HeA+T3NzmzEP1 OJpvGHHaaP0jKEKgrnZeUhLREA1t91ulXSp+VlvDqQD5bDifRSAJ3908WFqvdUL4 adrjTx5dFFZffrcuv7F/+p7tD44qf5vkacg8PE4765zTBeUxUuhqjNQ3b1UvPGza zxHPp+Rd/uh1Ap4hQqdRbATUnO3y7WuhbbsEeYRucMHn2XFwHQKpbeUlRA7KHcfF NR0LvNjkpC5t4z1sXhCwQi6+bHbFKWTzc48lDYSwFna/9mF7blA= =rz+Q -----END PGP SIGNATURE-----