-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 09 Oct 2014 16:45:26 +0200 Source: libplack-perl Binary: libplack-perl Architecture: source all Version: 0.9989-1+deb7u1 Distribution: wheezy Urgency: medium Maintainer: Debian Perl Group <pkg-perl-maintainers@lists.alioth.debian.org> Changed-By: gregor herrmann <gregoa@debian.org> Description: libplack-perl - interface between web servers and Perl web applications Changes: libplack-perl (0.9989-1+deb7u1) wheezy; urgency=medium . * Include bc1731d from 1.0031 release to fix CVE-2014-5269. Plack::App::File would previously strip trailing slashes off provided paths. This could under specific circumstances lead to the unintended delivery of files. For details see the pull request message preserved in debian/patches/01-fix-CVE-2014-5269.patch. Checksums-Sha1: 9b6465e327e669a5bd10bcd68898b02923de9b8d 3002 libplack-perl_0.9989-1+deb7u1.dsc 42eddef1e46796580757003cb78342359b74d9b7 6246 libplack-perl_0.9989-1+deb7u1.debian.tar.gz c3e660c94b8a05a760f89bac333a52ed1362b7df 377562 libplack-perl_0.9989-1+deb7u1_all.deb Checksums-Sha256: 6eedb03be049650873a4c0d18fda158aa78e621e3fa1104a52469cc6c1de44e3 3002 libplack-perl_0.9989-1+deb7u1.dsc 1580ecdfd999525da758771fd19c4b9584270a9332ac7b7ad570382116a7c450 6246 libplack-perl_0.9989-1+deb7u1.debian.tar.gz 9ff1fb0c2b6df0e91c10c6e28cfe92400e7f47c91affd2b5ac8e29c22eb1ee80 377562 libplack-perl_0.9989-1+deb7u1_all.deb Files: a176d24c8f200f2642840a4232855be3 3002 perl optional libplack-perl_0.9989-1+deb7u1.dsc 257aff7bb7e7e8d9c35d876f60cc8666 6246 perl optional libplack-perl_0.9989-1+deb7u1.debian.tar.gz f4b8049ee555e9c73b6c7f7d8b9c3b7c 377562 perl optional libplack-perl_0.9989-1+deb7u1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQJ8BAEBCgBmBQJUNp+/XxSAAAAAAC4AKGlzc3Vlci1mcHJAbm90YXRpb25zLm9w ZW5wZ3AuZmlmdGhob3JzZW1hbi5uZXREMUUxMzE2RTkzQTc2MEE4MTA0RDg1RkFC QjNBNjgwMTg2NDlBQTA2AAoJELs6aAGGSaoGscsQAIfFFqDin+dPe3oHx6r3xeX7 WUYu3H/UcT6iry1DW5mXMEQY9UjY9CeogIDMbArCpjULxOL13Cit3FVuD9gFpYqz L2sayxbwprU1awco6QKqb7Q014SJFvvu7GNRHCin9D1UABANI6+pwDq7k10h276d /ikm1/SW/lzBNAxgzSiws7hNi8ZDuh7qNeaQdcBgyewRAqvteSRoeLHItHkjXVxC 7q3dNWt7VgLpABRQ0JzzzMiJufheImtHxnaQ3EeTLnZIFz+FcR1eG9k8u/Mq6bDb BB1+6eIpGm561SDTdALbDC63PPGIVg/1nUPC6t0ahJRIKLsEX/vJolf7HBGZRK5I LyYvtFBt0WSxy5bYEzI2ESfD3q/gQddMPrDX1kTZO2zjLFfUkeW3PFv4ntPCXtaL CDUiTJjQY9cGmxw5+B1WfQk05lZnmbFs2DHiEX1kPHoME+An1ZHIrM4wzSqrP+1v mO9J0BmP03jZgMnnJxE9u6NCeXaZBPLqnMrABYsPX1dBUjwXWBdPFRx0XfIBjR5S uboLBEcUwgx43Bl8bAFziOCA4wmUltf8ggSx/Bcs7SheqdxRUWC21/A7Spte29eY 6n6S52sTHzEgTjjNaco/xLq7/bjMkf08AKQaqDENEhV5Ci4Yt6N3tJRwNyxxn4LU UlJP1L9HcyX01/Io9Dmw =peSA -----END PGP SIGNATURE-----