-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 03 Oct 2014 16:07:59 +0200 Source: tryton-server Binary: tryton-server Architecture: source all Version: 1.6.1-2+squeeze2 Distribution: squeeze-lts Urgency: high Maintainer: Debian Tryton Maintainers <tryton@lists.debian-maintainers.org> Changed-By: Mathias Behrle <mathiasb@m9s.biz> Description: tryton-server - Tryton Application Platform (Server) Changes: tryton-server (1.6.1-2+squeeze2) squeeze-lts; urgency=high . * Adding patch for CVE-2014-6633. This patch is a backport from trunk. It fixes safe_eval to not allow any double underscores. S.a. https://bugs.tryton.org/issue4155 S.a. https://bugs.tryton.org/issue4228 Checksums-Sha1: e34dbcd14265bfa2b992304d4304ae80adfd4ee5 2027 tryton-server_1.6.1-2+squeeze2.dsc fdbb8407575fef178866141133a059554d71cd80 8594 tryton-server_1.6.1-2+squeeze2.diff.gz fca6524b33b4c78fa9de902bc06a62aebc80da0b 290184 tryton-server_1.6.1-2+squeeze2_all.deb Checksums-Sha256: f2ba99c3306d62ec2905d30134b778bc649dd9a012906322dc78d2845a0c401a 2027 tryton-server_1.6.1-2+squeeze2.dsc eafc78642e4086101b5091d0a314fd9c32ad401aa6da80dafa4619aa85394b11 8594 tryton-server_1.6.1-2+squeeze2.diff.gz 557dca2ecebd758f9c21034b5577a40e554c18cf7921985ba8bb10e624141619 290184 tryton-server_1.6.1-2+squeeze2_all.deb Files: f9584fdcea6a35dc433f5db4b2f78a4d 2027 python optional tryton-server_1.6.1-2+squeeze2.dsc 5abb4f026a7373a2c5faec73605c6a41 8594 python optional tryton-server_1.6.1-2+squeeze2.diff.gz e9319a863fce1dd5069408fbe9571bdc 290184 python optional tryton-server_1.6.1-2+squeeze2_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJULq8wAAoJENbQm+SEBbv2SdkP/3T/i0GWS1V4lK//toDmhoRe n6XqaHdGEPlil8XUxHvFbxX7XrzktAYy7y0EEfxLX1swzJxy50ONiYcXg0FG5iVb avYgdXEjBVa3ktrdBF8izHv1mEmqqQ4k3VW3JyMZisflhswuyy3N3UMSLF5yXpx2 pxCB8nEZ8rKJYYmunBrdhgCTlOBhilfLVCiE8J+4Zo7k/od+QKSg/H1yD8CjO3aV ZmhXk5s6DCbM0SOveaeoWL/m5igx8Fkqn1WruAITZ8KcXGYuH9uFOdCpk+ubuYjy DAqDDEfFJ9stWFcHNocAgUihFllLIdipo6O+G91Xps2n3s4S1eUFoFJ+VadYx40z ZTUUH2mzv2VnW3Gzh5dPT8T5CU3Ufk+yqul4DDNEtgYeNbXKjcC3JdNZ8NlLyOR7 3CRhiquvdWRx083M3jOHNqJbljeOyfrowgYkW5nidJV8f24qPMtpKoP5uGIVTb8I 3WTk3utQgvwn3avroNQc2S0BalDVzwxT/5aDo4O0/fvKP46B4M0SfhnQsf2OaAFD W8uoYlMocWRApZ+M/z5VxpbWCjd+DJJ1dNp/VxhlvyEZHITXH8YeSVYtUR10gnLX c+2ImfGY2jAvz00rVpIWr+zTxSEETXQ1Dj3sDUDOcmQq0GkFPKT//49hJOQM7Mr8 yrxRzqsU8yxR/JqumiAL =oLDg -----END PGP SIGNATURE-----