-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 01 Apr 2025 13:39:12 +0200 Source: lemonldap-ng Binary: lemonldap-ng lemonldap-ng-doc lemonldap-ng-fastcgi-server lemonldap-ng-handler lemonldap-ng-uwsgi-app liblemonldap-ng-common-perl liblemonldap-ng-handler-perl liblemonldap-ng-manager-perl liblemonldap-ng-portal-perl liblemonldap-ng-ssoaas-apache-client-perl Architecture: source all Version: 2.16.1+ds-deb12u6 Distribution: bookworm-security Urgency: high Maintainer: Debian Perl Group <pkg-perl-maintainers@lists.alioth.debian.org> Changed-By: Yadd <yadd@debian.org> Description: lemonldap-ng - OpenID-Connect, CAS and SAML compatible Web-SSO system lemonldap-ng-doc - Lemonldap::NG Web-SSO system documentation lemonldap-ng-fastcgi-server - Lemonldap::NG FastCGI server lemonldap-ng-handler - Lemonldap::NG handler part lemonldap-ng-uwsgi-app - Lemonldap::NG uWSGI server liblemonldap-ng-common-perl - Lemonldap::NG common files liblemonldap-ng-handler-perl - Lemonldap::NG handler common libraries liblemonldap-ng-manager-perl - Lemonldap::NG manager part liblemonldap-ng-portal-perl - Lemonldap::NG authentication portal part liblemonldap-ng-ssoaas-apache-client-perl - Lemonldap::NG SSOaaS client for Apache Changes: lemonldap-ng (2.16.1+ds-deb12u6) bookworm-security; urgency=high . * Fix XSS vulnerability in Choice module (Closes: CVE-2025-31510) Checksums-Sha1: 2d96f51192fbb8bc2f19d1d67dcb2f490dd0d87a 5253 lemonldap-ng_2.16.1+ds-deb12u6.dsc 1bc5038e0aade898e0f586de478823529d5f934a 9058612 lemonldap-ng_2.16.1+ds.orig.tar.xz f6c1c4a6e717ed68d1b3348b0441606641061ecd 67504 lemonldap-ng_2.16.1+ds-deb12u6.debian.tar.xz a7e4cc196cee681c1b353930847322c53d25f1f8 5770148 lemonldap-ng-doc_2.16.1+ds-deb12u6_all.deb 695c2b9143fee55ac3b19ae777ff64596228a0cc 82384 lemonldap-ng-fastcgi-server_2.16.1+ds-deb12u6_all.deb ad3abb537dba1746ec6b3b284f4ca5bc0a880cf2 84756 lemonldap-ng-handler_2.16.1+ds-deb12u6_all.deb 7d0514793c2e0dcd430259115bfbc86bf7903063 73540 lemonldap-ng-uwsgi-app_2.16.1+ds-deb12u6_all.deb a37b48f0f5ddbd2ab2d38d8c58d3602121c00bb7 75604 lemonldap-ng_2.16.1+ds-deb12u6_all.deb a5407fd4550522487e2fecedefa9beea9c8b4db7 21666 lemonldap-ng_2.16.1+ds-deb12u6_amd64.buildinfo 58c3bdc664ca4af1f6738bfe1f6ebd05ddaca4fa 209464 liblemonldap-ng-common-perl_2.16.1+ds-deb12u6_all.deb ed7c47dd21564a0685bd5de258d68c9e6a88cb0b 125484 liblemonldap-ng-handler-perl_2.16.1+ds-deb12u6_all.deb 4bb8716ef522372d677fe4a840f2320dd15d0841 485884 liblemonldap-ng-manager-perl_2.16.1+ds-deb12u6_all.deb ea921c811babc4c3ac8c869ba5916fd965cd6b61 3060116 liblemonldap-ng-portal-perl_2.16.1+ds-deb12u6_all.deb 03edd7c663e38bc56adfed156be904b13f84aad0 77220 liblemonldap-ng-ssoaas-apache-client-perl_2.16.1+ds-deb12u6_all.deb Checksums-Sha256: a763a47ccd387ce22183fd19f398b50ab9852025ab09918f8a0d74015f628d71 5253 lemonldap-ng_2.16.1+ds-deb12u6.dsc 104513e429d2128d217d209c5ce66b8075a8314028ab509d3114a9555c53f6a0 9058612 lemonldap-ng_2.16.1+ds.orig.tar.xz d5a5c3f485bd46de5d574b3bb80587401a4295ab6e1b063134f538f6588ea489 67504 lemonldap-ng_2.16.1+ds-deb12u6.debian.tar.xz 2a3b1802c3450c2145a5465b518f60317d1fc364ec6a3beb7104af25b943b4c2 5770148 lemonldap-ng-doc_2.16.1+ds-deb12u6_all.deb bf481f276e41c4c4751ca5f2d344bf69a15b9be21c086db78f31b65e20bb8fea 82384 lemonldap-ng-fastcgi-server_2.16.1+ds-deb12u6_all.deb e5956ee8e23cc8a204ccf51a5120205916590ed23649be13ee8f2773736dd63f 84756 lemonldap-ng-handler_2.16.1+ds-deb12u6_all.deb 076cdae8d0f839fdf5c925afac1b51fb61d7d5f62885eb8e13cf9d48f79a3c09 73540 lemonldap-ng-uwsgi-app_2.16.1+ds-deb12u6_all.deb e6cc2006874a0586ba9ab03235591e8d2f62c1dabcf52044e44c4e1b3aa2459d 75604 lemonldap-ng_2.16.1+ds-deb12u6_all.deb 913c2170b048df4401d2c03d7a4e6bc8a1c7c4317b7a62549d9a196894041c9e 21666 lemonldap-ng_2.16.1+ds-deb12u6_amd64.buildinfo 0963a354b666a1e5de56bb01588f33d6f375460b1bab58199a05b56f1544964d 209464 liblemonldap-ng-common-perl_2.16.1+ds-deb12u6_all.deb 989725c706912a7a4b8c1207143afb17821e80064ec98892a60e6636d8155ece 125484 liblemonldap-ng-handler-perl_2.16.1+ds-deb12u6_all.deb e8419d984270a933cff4c397691cd1654dda0bd2eb98f3875dca9f8daf58e37e 485884 liblemonldap-ng-manager-perl_2.16.1+ds-deb12u6_all.deb 0f11c69ad66a40337562840e13b1a4dc2e10aa9c6f0ec3ace135011de2e67206 3060116 liblemonldap-ng-portal-perl_2.16.1+ds-deb12u6_all.deb 5351bb24722a851844eb129c584284ae03acca7835533b9f628a1f7280694154 77220 liblemonldap-ng-ssoaas-apache-client-perl_2.16.1+ds-deb12u6_all.deb Files: 8b272058be1e5886474e733966ac2c46 5253 perl optional lemonldap-ng_2.16.1+ds-deb12u6.dsc 196dcac2c80c9cdec488746d6c027716 9058612 perl optional lemonldap-ng_2.16.1+ds.orig.tar.xz aa4da7a44eb5a71e1af9c000fa6bca84 67504 perl optional lemonldap-ng_2.16.1+ds-deb12u6.debian.tar.xz 26d7d80e7196b2b445c5aa60bd3bca58 5770148 doc optional lemonldap-ng-doc_2.16.1+ds-deb12u6_all.deb 22372bfff8a67cb4fd8cceb5fc2f2135 82384 web optional lemonldap-ng-fastcgi-server_2.16.1+ds-deb12u6_all.deb 82053bf4f9467b991598b561256ba4bb 84756 perl optional lemonldap-ng-handler_2.16.1+ds-deb12u6_all.deb 225995c42e54462a3a66c59994a08556 73540 web optional lemonldap-ng-uwsgi-app_2.16.1+ds-deb12u6_all.deb b15c94a60bac3e17992e4fad5d11f3f2 75604 perl optional lemonldap-ng_2.16.1+ds-deb12u6_all.deb fe505d9051d56282b6ac90c101c595df 21666 perl optional lemonldap-ng_2.16.1+ds-deb12u6_amd64.buildinfo dc0e997d03eb56f7be72a5a9a8892f00 209464 perl optional liblemonldap-ng-common-perl_2.16.1+ds-deb12u6_all.deb 49728f0c38782cd22c51295eb78b94aa 125484 perl optional liblemonldap-ng-handler-perl_2.16.1+ds-deb12u6_all.deb 4e8cf6a53f441eaf99bce6e9796cbd6b 485884 perl optional liblemonldap-ng-manager-perl_2.16.1+ds-deb12u6_all.deb 49be26978566efd5ff3435167dc0801f 3060116 perl optional liblemonldap-ng-portal-perl_2.16.1+ds-deb12u6_all.deb 577db7be6c7ed012442442359dfe5e62 77220 web optional liblemonldap-ng-ssoaas-apache-client-perl_2.16.1+ds-deb12u6_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEAN/li4tVV3nRAF7J9tdMp8mZ7ukFAmf0IZ4ACgkQ9tdMp8mZ 7uktbA//TrpbWV7Q+ely0vcVhHmYni9O869BIcOyUqCm/Bxwq6+GldNZm8GDc71P 8EBTEg2skn/pVKZAcub3nQoD28fVFGlnlhqawKbLjhUgjRjtTAZo1HQFzSe2KrKs cLyMdBK3Z1sH2XoNLE2q0Z3jgb7RWeJQz0eboKqXk+cFdOpLuD22OgKuua9w2A8+ dGltks3R5WRIdiexIuwef83FYDIA5In2Qh8r6zSppPrGQvYJdMw/QWa+dho/P/7h mCkdJOdpa0VwrlcKceT1rbqZNUelIhtLSPrs58bo4T2k0otdFj70yMRCgPwekrHd E6ZBUH1luUt4umrDdM7RYaQTjAU+wPIbFhnzpGT+GCNkBM6MnSsSYQ0SBC5zAShs X74cDVdYishE3GB3CfRK3KpfAUGGZo2ZioDhqO2pygaSilYrd4OnrLFDpEO2mRJ+ iKi4epFbSB2yLE8QanfxZulqcBytqqGFNF0DQNxbbNOJhb9gHU513m1ugdTX9Sop d2ymUOQoIUsm2Yz5Da4bznerrVcc3R5I6QobGN0aEy49U7k9qLOEXURl6DpQxOpW HvLtOFWSdrOXjjAufbHOFhaXkeqUfXQObFLf1lcWiwMLorfiVN6adFxHW8lqlZjw zj0iEK7EPybj48QQsWmBMtNpas2y/GValG3OCO6HFKRsbM6iOkA= =XGFZ -----END PGP SIGNATURE-----