-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Thu, 26 Feb 2015 10:05:25 +0000 Source: request-tracker4 Binary: request-tracker4 rt4-clients rt4-standalone rt4-fcgi rt4-apache2 rt4-db-postgresql rt4-db-mysql rt4-db-sqlite rt4-doc-html Architecture: all source Version: 4.2.8-3 Distribution: unstable Urgency: high Maintainer: Debian Request Tracker Group <pkg-request-tracker-maintainers@lists.alioth.debian.org> Changed-By: Dominic Hargreaves <dom@earth.li> Description: request-tracker4 - extensible trouble-ticket tracking system rt4-apache2 - Apache 2 specific files for request-tracker4 rt4-clients - mail gateway and command-line interface to request-tracker4 rt4-db-mysql - MySQL database backend for request-tracker4 rt4-db-postgresql - PostgreSQL database backend for request-tracker4 rt4-db-sqlite - SQLite database backend for request-tracker4 rt4-doc-html - HTML documentation for request-tracker4 rt4-fcgi - External FastCGI support for request-tracker4 rt4-standalone - Standalone web server support for request-tracker4 Changes: request-tracker4 (4.2.8-3) unstable; urgency=high . * Fix remote DoS via email gateway (CVE-2014-9472) * Fix information discloure revealing RSS feed URLs (CVE-2015-1165) * Fix privilege escalation via RSS feed URLs (CVE-2015-1464) Checksums-Sha1: 634b8ad00523c55ba041729adab8abdd69e0187c 5599 request-tracker4_4.2.8-3.dsc 0e4b0c68b1698d2da86aa0afeadac1e23ff8efcc 73164 request-tracker4_4.2.8-3.debian.tar.xz 17966426edc0352a7f511a7ccfaa33fd1284f9b6 3093206 request-tracker4_4.2.8-3_all.deb 4815caf9e0d418183e8d8ebcd7c06877d3c6f8ba 51504 rt4-clients_4.2.8-3_all.deb cf675374c27df0d4b30a3e00e70c19c4f5768ed7 16314 rt4-standalone_4.2.8-3_all.deb b1c54369e7ccb67d44bd6b8e67d50e0d2778d473 18646 rt4-fcgi_4.2.8-3_all.deb 04919a45597fcaa2d47aff345696d34f1ad031c0 17588 rt4-apache2_4.2.8-3_all.deb 1b8bb8666ea2ffd25871a17b65475cb035f111a4 16916 rt4-db-postgresql_4.2.8-3_all.deb cbed6489628668123cfa7f265bd76922b4721fdd 16928 rt4-db-mysql_4.2.8-3_all.deb 320dd7087ceff1ebde291a75b94af6a1a373fa80 17048 rt4-db-sqlite_4.2.8-3_all.deb d259b5246102685b1a04ccd6a6866f9bcc547c08 980502 rt4-doc-html_4.2.8-3_all.deb Checksums-Sha256: a6d713f1499fd845e94dc97338ab5e17c4256b94e9511cbea414a67a3d55a2e9 5599 request-tracker4_4.2.8-3.dsc 0535347217dd254fda15764dadb40d7f28d8a31bac859819d0c427d5eba81fa8 73164 request-tracker4_4.2.8-3.debian.tar.xz 3a96f5014726fc3036c9f8ff3b6befab8b46522fd418e9b0c716612edb450462 3093206 request-tracker4_4.2.8-3_all.deb 84da34c0b2c2f0886152c5adaf62ceda34c26b212e3a1fdaa377b38bfac93b83 51504 rt4-clients_4.2.8-3_all.deb 6c0ed320314a16b69e366c651b3115fc621f887df2e93f83156a1441a6541af3 16314 rt4-standalone_4.2.8-3_all.deb 202a0839129aefc2c0b9b7ef5cecca3e28d37b5ebe79535f3ac96b2b8b044cb7 18646 rt4-fcgi_4.2.8-3_all.deb 76e95279da75d77cca689a576384dd097bf2f1d43f0054b2a752cc9ddf0483c3 17588 rt4-apache2_4.2.8-3_all.deb 1fcd69279d30effa415799e5f405fc9a1d7d5b181e7e5ddaafa3c3e6bce9c5de 16916 rt4-db-postgresql_4.2.8-3_all.deb d10cad359e7b6f78dc5b16c331637f4702ee946d74b23f631869c9ef233d70b2 16928 rt4-db-mysql_4.2.8-3_all.deb 09c9f85b8197a3ff64e25e79768837d69d5012ca26ff5139d7dc2f0b0635cae1 17048 rt4-db-sqlite_4.2.8-3_all.deb f5fe0b716fb8cc61ad32b83e973c7cc5387d658c23a2cb176d858659e4334146 980502 rt4-doc-html_4.2.8-3_all.deb Files: 615eb8a440079d859e9baba3dc07492f 5599 misc optional request-tracker4_4.2.8-3.dsc 94c39cfad34dc01bdd2a2417a1ef60a6 73164 misc optional request-tracker4_4.2.8-3.debian.tar.xz 1a30ac071f6e7396ccbeeb7476c74801 3093206 misc optional request-tracker4_4.2.8-3_all.deb f9eaf996fde2a8a095c50bab6e37ece2 51504 misc optional rt4-clients_4.2.8-3_all.deb e1d88644dbe7722d506229d8595620c4 16314 misc optional rt4-standalone_4.2.8-3_all.deb e44d937e98345a02a90336fcc9ac5e7d 18646 misc optional rt4-fcgi_4.2.8-3_all.deb cfd831fdb45a062dd753b8083f0cf785 17588 misc optional rt4-apache2_4.2.8-3_all.deb 2363c7f9b7cfc0f6b622703ce51b776e 16916 misc optional rt4-db-postgresql_4.2.8-3_all.deb 7ae0a741ea201cfe9bc348839fd95b34 16928 misc optional rt4-db-mysql_4.2.8-3_all.deb 27c51e37eac77f8b60967b28ce2277b8 17048 misc optional rt4-db-sqlite_4.2.8-3_all.deb 28272ce6c4a8300316cfb8290c42ad39 980502 doc optional rt4-doc-html_4.2.8-3_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJU7wWlAAoJEMAFfnFNaU+yVCsQAJkuCgxtRs2LyfwSC6/lgytp 04yqnR3bw1505Bgzgv4ikSgnuri6Xv49PPKvsUF+/tduK0n3rxZ6+A+w345B1GAi oLwnoiftK6Fggb2rAYW5M32ebbjGfixVojr46P3dheiFi91pfH2Sclnl+JKhwvSr iD+6hMbhCALAoCw91+KWYeD31Typ1rZBo6CPABy0bf35NOTr+CEXVIlHZs4po1+H JcPNyk8v5p8GCaMAC4RJ6P4FJzxief+y81v36+8KTIQrNlTRfS32VQgJoXIMHLTq X5q9Ewv91iQ1ZT96KRXjD8rcaIAkI2p3XC4gcCBWkNerf/+5lvEjC/wR6ZnSbL7g FYEPKf++y6MIEN2LzTv7c82uvtinQ0G0eo+2wXrOpoRDX62fiyycHgcTAkaJk0cK xtNQ4ZPbagjrWs8ztV5XRd851ZVAtQ9YPk1o+DPZqIyryj2eZ7lOzZ06+TwzA06Y wGm3JwJ3vPeM8L6bO2djhGE0vnNxF2KS0GZkxOvWrPM1MjL+Lc7jW8iKlpKA2/nR 4FHvfWzpe6KHsG3conIIcDLLZslYecfXCmT0VPHwePfPtpeWD/ZkeXQR9S1HZsxL 2GkVE+TlrTj4PPtKaCT7H08/Ti+Av8hCbPhFLEHsgUV1lGfYMo5juCtvNp0RHMrE g0iKkJiSt2TJW2ooOor8 =1/fV -----END PGP SIGNATURE-----