-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 23 Jul 2016 10:30:59 +0200 Source: cakephp Binary: cakephp cakephp-scripts Architecture: source all Version: 1.3.15-1+deb7u1 Distribution: wheezy-security Urgency: medium Maintainer: Chris Lamb <lamby@debian.org> Changed-By: Balint Reczey <balint@balintreczey.hu> Description: cakephp - MVC rapid application development framework for PHP cakephp-scripts - MVC rapid application development framework for PHP (scripts) Closes: 832283 Changes: cakephp (1.3.15-1+deb7u1) wheezy-security; urgency=medium . * Address SSRF (Server Side Request Forgery) attack by ensuring included files are "regular" (eg. `./foo.xml`) rather than merely existing (eg. `/dev/urandom`, etc.). (Closes: #832283) Checksums-Sha1: b89292f403baede311d365ffe7ed46038b867d38 1852 cakephp_1.3.15-1+deb7u1.dsc 3064d29e52a271ab90a6e3d9fd72c89e2ad978e3 989878 cakephp_1.3.15.orig.tar.gz 425492e8ed9e013c8163997d381dd9962fe06eff 7368 cakephp_1.3.15-1+deb7u1.debian.tar.gz cbdaea9d6f18ed2e0104e3a1467ade7d12339a99 900158 cakephp_1.3.15-1+deb7u1_all.deb 623932268ec487d79d1dad48b0d1bfb311301ba4 113352 cakephp-scripts_1.3.15-1+deb7u1_all.deb Checksums-Sha256: 61bdaaa2645f68aebe9662543b22b097269ff28b53eafad08586d2fd838e7437 1852 cakephp_1.3.15-1+deb7u1.dsc 3cf8c91f34077509993154b9f86c27812fcb55e21c5a61844af293ad710587c7 989878 cakephp_1.3.15.orig.tar.gz 09a122e113b4ad44c0488405b7980404ff449bb3a0491af7b0d36abe5dfbcd4d 7368 cakephp_1.3.15-1+deb7u1.debian.tar.gz 50a22cab879ca975a473171f5b0e41fa878c96071c12af333968ac6423ac6bf5 900158 cakephp_1.3.15-1+deb7u1_all.deb a4c484932a92c7375609897c20f6dec492961e73c47fe55458de056591866414 113352 cakephp-scripts_1.3.15-1+deb7u1_all.deb Files: 4a010855627ef9be68857d62a9525bff 1852 web optional cakephp_1.3.15-1+deb7u1.dsc d550fa34576f0e0929c46266a024fecc 989878 web optional cakephp_1.3.15.orig.tar.gz d0bcf601422e5472a357dc846435a6f7 7368 web optional cakephp_1.3.15-1+deb7u1.debian.tar.gz d48b51b28f39d98e9cae94a1f4e42b4f 900158 web optional cakephp_1.3.15-1+deb7u1_all.deb cc716945a4020fd2e742d32e3dc96cc1 113352 web optional cakephp-scripts_1.3.15-1+deb7u1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJXmHJlAAoJEPZk0la0aRp9Lg8P/R36I7sdCjy/DhhGkcg7wK1J QjnUYf/uBGx2i6AQJNyVMTTWd6Lr7HffE1P8giZE+4Zt5IfgPgn0GeJAMyPc5pw8 HFqtJTOSZD788jLWbYhsCPhZjS0qg1Q0yhOqsg6pQmpCEUEzhJlQiDcQITkQfJfN 2r7tYGwKcjrlYVMQbHDZn5/J6IRn8xMIw7v4M69uFXdEH9Fw8L8AqgH80NbxaUSI swOJ03Tm1wwK2ZfWUnamVmyrkrYYTE8N3nHoFETD4NOBtRF8QZ6JCu8ZHQBJDrK0 fxQzObw/smLEFtKS3BPEFFDiYScZgfhsiFfCByjMG/WyvO4BnJIDpvkJb1Ak2pRU ohPRlnKhWKeoENmYPYd2BpX9yjL35LVeCFEv3rxxUMkJQrnythKTH0qakFJ51u7H visfjOVRjq43Bt0bDykUas4PF3frpdiUDn9SzNlOGIe7Pvhdu2t5tCUXgk4BByE1 /b7SD/lCT2FY6dVEkIor8PLL/evcwLEaKQlw6QduYtGEP6EQQ0Z1YtYc5gpEXu2h L5XbkOkDFTkdhuhx3HS/SuVCyhJIDnFLOudCp5+qtDNu3oeepH76p+pcIOCDwra9 48qSLtQevB18hd4inW/80yeETvrIokazkpycQ/r323qej9V+dh6WYIfptPrbpzAb xGY4Wup9vakThQDDD+s9 =G8YY -----END PGP SIGNATURE-----