-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sun, 18 Dec 2011 20:31:44 +0100 Source: libpar-perl Binary: libpar-perl Architecture: source all Version: 1.000-1+squeeze1 Distribution: stable Urgency: low Maintainer: Debian Perl Group <pkg-perl-maintainers@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Description: libpar-perl - Perl redistributable module packaging framework Closes: 650707 Changes: libpar-perl (1.000-1+squeeze1) stable; urgency=low . * Team upload. * Add create-safe-temporary-directories.patch patch. Fixes CVE-2011-4114: PAR packed files are extracted to unsafe and predictable temporary directories. (Closes: #650707) * Add run_all_tests_using_a_nonce_PAR_TMPDIR.patch. Run all tests using a nonce PAR_TMPDIR (a leftover /tmp/par-USER directory from previous builds may now be considered "unsafe") Checksums-Sha1: 873327edce87a8012d8ebbb8d788b8d121ba0668 2327 libpar-perl_1.000-1+squeeze1.dsc 55674fd6d791526dd0219863ab67803c23812245 6806 libpar-perl_1.000-1+squeeze1.debian.tar.gz ba80dd4a1b190620a4b7e988700b07244a69fba9 101240 libpar-perl_1.000-1+squeeze1_all.deb Checksums-Sha256: 9ab061ce8fcbd128c825559778932c2bbeb7ed6071cfa3fe5cd72c0a73a96334 2327 libpar-perl_1.000-1+squeeze1.dsc ec19a76109204f14fa1a1a4e723641f29e8354bf1cce4c91a78aa9be54c27700 6806 libpar-perl_1.000-1+squeeze1.debian.tar.gz a97dd5ebfd4155b34db35dc5dd4e83716ec48d08467bdbc7d73bec5c47cf87ef 101240 libpar-perl_1.000-1+squeeze1_all.deb Files: fabd8652d73edad3f4a144584d0f8050 2327 perl optional libpar-perl_1.000-1+squeeze1.dsc b7f47bf949d8a978ad6aca72673cae4c 6806 perl optional libpar-perl_1.000-1+squeeze1.debian.tar.gz 26d712257dae39b9fa116546697bf46e 101240 perl optional libpar-perl_1.000-1+squeeze1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iQIcBAEBCAAGBQJO7kAdAAoJEHidbwV/2GP+wkYQANS6JIElxVIKLS8MtMEVTwmR IS0r18mmeXM2aeHbLpB+48pSoeOO93RzmEc4Ju9O6i3DHTngr+x8LenT1zoWtqFI oCysuaXxKzdBJdwYgxnZlGmdeEeNhypHoTABVM1mrkbqcB0Y5uRgk200+754Y71D PnPsX6qNxQorY9XcqB2gPlwGltjdLsd2Hks0mWIpkYC23cYi8Kammi9Zg9FL1TFT ofQqm//bpbREGgl1pGExkBNlkCqW7FcTr/iFA/4WC+R+8TVzyfqcXUwYO8Ekwaw8 hXGj6J7p+EqrYrM7QvNfAImQE+ai3+G3KSMoak/wHFHimiHygxjWJ/s48cCU2wRP oQiveNEIoVYt12cEDYSx7ZEieEW660XB1lF8iLEBmV4sBNzSbhqKa3M5NyP5H2tZ YrlhmMWHnFPDZvAz9mSwkPXYX+U+s9klqV8Di1VmOWuvgkV6JlhBsuE1TJgedvbz C6KH7I3Slbw72KVx31uuozMqFz+YfS4C4EhrX+QvOE5DkYb5crLVYhFoJwfvBIzl +yFUp65iR4e8NuC9QMclzb+8N+/9TSC6q/BKf+vATZYxEATmsyJKSit1G1s8Qwy8 6L0HoOkZZa0a35IKzrVq+YPUPpuPnL4pUk6Sq2VnZiXO49jZxbvzWphIUpsw4USs nw316nQ/E9IgmiGFX9rm =6iJC -----END PGP SIGNATURE----- Accepted: libpar-perl_1.000-1+squeeze1.debian.tar.gz to main/libp/libpar-perl/libpar-perl_1.000-1+squeeze1.debian.tar.gz libpar-perl_1.000-1+squeeze1.dsc to main/libp/libpar-perl/libpar-perl_1.000-1+squeeze1.dsc libpar-perl_1.000-1+squeeze1_all.deb to main/libp/libpar-perl/libpar-perl_1.000-1+squeeze1_all.deb