-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 05 May 2015 16:48:57 +0200 Source: quassel Binary: quassel-core quassel-client quassel quassel-data quassel-client-kde4 quassel-kde4 quassel-data-kde4 Architecture: source all Version: 1:0.10.0-2.4 Distribution: unstable Urgency: high Maintainer: Thomas Mueller <thomas.mueller@tmit.eu> Changed-By: Felix Geyer <fgeyer@debian.org> Description: quassel - distributed IRC client - Qt-based monolithic core+client quassel-client - distributed IRC client - Qt-based client component quassel-client-kde4 - distributed IRC client - KDE-based client quassel-core - distributed IRC client - core component quassel-data - distributed IRC client - shared data (Qt version) quassel-data-kde4 - distributed IRC client - shared data (KDE4 version) quassel-kde4 - distributed IRC client - KDE-based monolithic core+client Closes: 783926 Changes: quassel (1:0.10.0-2.4) unstable; urgency=high . * Non-maintainer upload. * Fix CVE-2015-3427: SQL injection vulnerability in PostgreSQL backend. (Closes: #783926) - Add debian/patches/CVE-2015-3427.patch, cherry-picked from upstream. - The original issue was CVE-2013-4422 which had an incomplete fix. Checksums-Sha1: a0dfbc767bb050febd93ef2feb6a5577ebfd3469 2358 quassel_0.10.0-2.4.dsc 81fb4e38929584ce267a1cae9801cd548bf40a1a 22632 quassel_0.10.0-2.4.debian.tar.xz 6d1a1fbbf4467adc17863b202baf475df4a63991 22928 quassel-data_0.10.0-2.4_all.deb e4bc9413eb19c4486b684701c5018729b618256b 623046 quassel-data-kde4_0.10.0-2.4_all.deb Checksums-Sha256: b5e55b5c3446fb039799af4cb25010002793edb19a69df075eeff21cd40813e7 2358 quassel_0.10.0-2.4.dsc 593fc7fe2bf724a5fe8da28097bd035a8813e625ed3a80bf4551d9cc5c06caed 22632 quassel_0.10.0-2.4.debian.tar.xz b745beef49a91ef62fa4af2d53d8685fc8ea79493cb2657490125fcc372c1c21 22928 quassel-data_0.10.0-2.4_all.deb 4ebcd7d3b4de8fed7e9c8c89aaee775cc1b156a149b85ab2d4814058dd0f259d 623046 quassel-data-kde4_0.10.0-2.4_all.deb Files: 03f85062d573f86f79adcf29544e8cc7 2358 net optional quassel_0.10.0-2.4.dsc 68d90467e6cba6eb62ea4f726c0e93af 22632 net optional quassel_0.10.0-2.4.debian.tar.xz 72aaa2cc406f32440030236596c23a35 22928 net optional quassel-data_0.10.0-2.4_all.deb 5fc11344d29f0eced7900bcf746c24cd 623046 net optional quassel-data-kde4_0.10.0-2.4_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJVSN+sAAoJEP4ixv2DE11FSYAQAKHH02Oj3ovHK/qnqUQ0JDSw Uxe5L6tzUili1tTcD7cthkIi7V9r73l9GoG5347+31VbIdugUYjXs4sOB1u+NIk1 D0ziD9+nUeK/MmkVWw5KwNZvMedazwfsRfhY7ZyXCe8bUTIP/AL5JVVYHep4z1nl WcVXEv408itbxgpX6akeVbk9nHYygTh+z1DtWyBILF8bHhjQX9nmZ0EXN9Yterh/ 3tv0fkO8oKUx9cU1DvWwNU0ZIFf8nLJs9rc9ve7raQIEt5/5BjtQXvHroY5XoTQH DDRdnTehvrBnX0pzoo20eRbSu+3JJavj6YvRdgXMRiY4igotxUqE+oM3ZmT0QUqm BiQHBMQIWNAPj+8i9G3se+5tiC6GfdM5GeBqlUVuDi9x9TZ/n6N45osXvfNr9R2A tCnPx5STQq4EebHEN+w0sb+DMskWgsp+z/l3eHuTeOOWPQYQyidmgsXr7xiCW9HK QKL6nSeYpXCM3cUqA6sHh1tHM80dPovAiqlu1wDFvMCvslSc6bQzXwIq5afXmk5b A4rskYPnpRN3VX9VtIiNdStBqfsDpesvRfPRU5cQ8RmXPaluzIkCoqaNgRSlazJl goZpgI55uswVouNBX6dPhEfabimun9gYJO18XJdlLdzkpsRtlHv4VsOPVapnTMb2 x65SAw6kiq4XpkjDsXLX =wnuA -----END PGP SIGNATURE-----