-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 01 Apr 2025 18:21:56 +0200 Source: libdbix-class-encodedcolumn-perl Architecture: source Version: 0.00020-3 Distribution: unstable Urgency: medium Maintainer: Debian Perl Group <pkg-perl-maintainers@lists.alioth.debian.org> Changed-By: gregor herrmann <gregoa@debian.org> Changes: libdbix-class-encodedcolumn-perl (0.00020-3) unstable; urgency=medium . * Add patch from upstream repository / upcoming 0.11 release: SECURITY: Use secure random source for salts: This commit replaces `rand()` as source for salts used in password hashing with Crypt::URandom and Crypt::URandom::Token. Fixes CVE-2025-27551 and CVE-2025-27552. * New test and runtime dependencies: libcrypt-urandom-perl, libcrypt- urandom-token-perl. * Update years of packaging copyright. * Declare compliance with Debian Policy 4.7.2. * Set Rules-Requires-Root: no. Checksums-Sha1: 4044928dc93517719723fbed1dd5dc6d06aa6421 2966 libdbix-class-encodedcolumn-perl_0.00020-3.dsc e53ec8aaa81b100db3c85b5989ac7aedd0ee4a4b 4556 libdbix-class-encodedcolumn-perl_0.00020-3.debian.tar.xz Checksums-Sha256: f7460184ebd7a135a1960cd56447b80698a770d32b711c46dabf4eb1aa6fcd4a 2966 libdbix-class-encodedcolumn-perl_0.00020-3.dsc 52dc76de7a004d6ffd877778298b3d2bf70f4b75fff0650aafff632e8cef7eca 4556 libdbix-class-encodedcolumn-perl_0.00020-3.debian.tar.xz Files: af7a0eea9418d8785f0efe0c3120d2c2 2966 perl optional libdbix-class-encodedcolumn-perl_0.00020-3.dsc 12f66405eb7be2068e9f63fb65515ce2 4556 perl optional libdbix-class-encodedcolumn-perl_0.00020-3.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKTBAEBCgB9FiEE0eExbpOnYKgQTYX6uzpoAYZJqgYFAmfsEyhfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEQx RTEzMTZFOTNBNzYwQTgxMDREODVGQUJCM0E2ODAxODY0OUFBMDYACgkQuzpoAYZJ qgZrQw//RqfEplld3bUWBr+EvvQKm91LNo18PGvRMMjgg/xOg/xMUYx1tCGT4tmz yFiCzoB+jN2T/ktfbDnhUvFDy5nBlbbw2H9Shk05I9BgJMOO0CbszMuhwci7FFLt /pH0JkSs7bkBXm7uqBoc5YIYR3osTVcDJmC1uOBZbfqpS5zKZaj4vjivt+p5VY2K DSJGg8y5DU7iO6P5QzYNqGed3N/pJ/Yw4Dtp1XxfWerXtgvwiT9fFJBlu2gz1UZQ uI0b9wy1I92dQ6PcL1xhaKG5UK0cji8oNtDUMDKUeUoXqOkEMHN7XnDl1eWFtdnI 3YDSmGQYwm71y9T6U8ocbsnU8hYqRF24qkyj2Bo5jYnaplGCXBPkj7dQVWtmTZHJ eN9+p5eJoU1OvOyYU+podvYV7wqkV0IvraqlFhEei7WZQZ5XOBEpAEP0H4tOZ18w gahnLAOktfWTDGF0/et7K+xAehx3744NxjdS0jxnlSqp/CG4xOW3e97Ja1JJq4Ym h77JRMQBAGR5MjmFPomfkaqqIuuLiBXagyn2oFRw7hHFyagqnuoO/ui92QlWjXln /posr2+NSYZntRn2oEYmYGKo58RDidQyRmV6ulDRPsSMjqEQ38jImlSkZtYN3Vvq eWwjHuI7jYFTiNM9ut+hXM+8PraBgVsYml06kdfMAo4Ccu5x8aE= =8WpU -----END PGP SIGNATURE-----