-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 07 Aug 2014 15:43:57 +0000 Source: reportbug Binary: reportbug python-reportbug Architecture: source all Version: 4.12.6+deb6u1 Distribution: squeeze-lts Urgency: low Maintainer: Reportbug Maintainers <reportbug-maint@lists.alioth.debian.org> Changed-By: Holger Levsen <holger@debian.org> Description: python-reportbug - Python modules for interacting with bug tracking systems reportbug - reports bugs in the Debian distribution Changes: reportbug (4.12.6+deb6u1) squeeze-lts; urgency=low . * Non-maintainer upload for squeeze-lts. * CVE-2014-0479: Arbitrary code execution in compare_versions. A man-in-the-middle attacker could put shell metacharacters in the version number, causing execution of code of their choice. Thanks to Jakub Wilk <jwilk@debian.org> * Thus add python-debian to python-reportbug's depends. Checksums-Sha1: 15a7219c39ddbac51b0c5b357933d9c35caed90c 1793 reportbug_4.12.6+deb6u1.dsc 61f73c477fd4ca160cc9ea523425e14c0f8308cc 139128 reportbug_4.12.6+deb6u1.tar.bz2 bd2a1abf48c9c1b173ef9df54d5292691fd5044a 115420 reportbug_4.12.6+deb6u1_all.deb a07baff3738530327091f41f84fbac95f81c015e 124946 python-reportbug_4.12.6+deb6u1_all.deb Checksums-Sha256: 4f0b6925282edccbd6d392e60d23a80b404ca165a1e0bd0b0f6a43a3d85c40eb 1793 reportbug_4.12.6+deb6u1.dsc fcd16ff4a87c797a345caf0dbfc8f52a9dffd6951b6dc83812ffdd20e313c2ff 139128 reportbug_4.12.6+deb6u1.tar.bz2 8af3fceb9723b222aab1aee47d76b9737f3d7421ffc6994212b95fb6c622ad56 115420 reportbug_4.12.6+deb6u1_all.deb d361f3be2de0f88031b897d361fb660df3774c5ce4df586f2108d18a8580c93a 124946 python-reportbug_4.12.6+deb6u1_all.deb Files: 37880e2b2daa52f5f6d8ebbe99814686 1793 utils standard reportbug_4.12.6+deb6u1.dsc f3bf0a8c436ba4228ff4029a2f17aea5 139128 utils standard reportbug_4.12.6+deb6u1.tar.bz2 9a809ae4306f4de9f91897dc647dd518 115420 utils standard reportbug_4.12.6+deb6u1_all.deb 7ff4beff5b4e866a058382f13bf1007a 124946 python standard python-reportbug_4.12.6+deb6u1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIVAwUBU+Ov4QkauFYGmqocAQgNHg//dkracYgngazdAw5evBbBFRUIoD/zOeMA hFucFMLS7TJYtO1qpbHyARcC7VYrrktlLPFU8FO2ZoKbXfzpTntsBjOZX9g8Tol+ GfDoOGDdDuad3f2r0r+aty+NsU9EVc0OmfvRwIT0i2BXoZpDbf/CRA+nIsUTO7tv qq9alO4CsGYf9CC2D5nfaf/FsZTd/jN79jKtLBcDcy1W0rPOxX9EsBOkow+QUC46 syA6As5Hq8tdCyPz83TzSJWLF9tO3EuN9FESPiU41m3F/LtREfEfephAg2idJBLm G/cls17KJH5nPFGD4folFpiHGowTUnPgQNXBD9MRoueRbRQfdvtH+JV4puFTtNcl mzmjyJncDWlHQk84TLDdLLtvD92V/wkmPlCHMVtk82QOJgk6uxZRoLGG4agGdJ5I zj/6ZSOxhCocXGLzw+lkpBbOB+ei9cY6+059OYg4JuDrv4jM19mmOqv1APuDWTNr w02+RtJdheD3G5m01VlMM5eV1PzExyERqKPT+pNykyMnVHfcidJfbzEBuy7q1ZMe 73dDr5f6Lk4lojMWdFGfaL+slTPh0VnR+vNQAI+762NHGvTRJhrCaVOYg20U6ccz CkMLMNIXtZKel42uGZmwyLQB86xsu8t8bJpKn6+2blc32DV16eD+znyBsPfa6orf YkUHZr50mvA= =GRgp -----END PGP SIGNATURE-----