-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 30 Nov 2016 20:00:25 +0100 Source: monit Binary: monit Architecture: source amd64 Version: 1:5.4-2+deb7u1 Distribution: wheezy-security Urgency: high Maintainer: Sergey B Kirpichev <skirpichev@gmail.com> Changed-By: Jonas Meurer <mejo@debian.org> Description: monit - utility for monitoring and managing daemons or similar programs Changes: monit (1:5.4-2+deb7u1) wheezy-security; urgency=high . * Non-maintainer upload by the LTS Team. * Add 09_CVE-2016-7067.patch, fixing CVE-2016-7067: monit actions are vulnerable to cross-site request forgery (CSRF), e.g. allowing an attacker to enable/disable monitoring of hosts and services. Checksums-Sha1: c373d0280ff2baab515523764feb0b2fc30b0033 1897 monit_5.4-2+deb7u1.dsc d497ff61da9d30c286e2a2079538a802e02436c2 1197209 monit_5.4.orig.tar.gz 8cec60f7e32730a0c123a9160b4b8420cdfe66f8 32637 monit_5.4-2+deb7u1.debian.tar.gz 2b689de3611ff0621009931e69069ab9194935df 301432 monit_5.4-2+deb7u1_amd64.deb Checksums-Sha256: bae07142f7190e5ca3a539770de559b1f66c46f062d45696a38ddb097c51aa7c 1897 monit_5.4-2+deb7u1.dsc 805c6545de2dd7f3d9e6e0c68018b2aadd5fc98b243c8868178f247a60906038 1197209 monit_5.4.orig.tar.gz 85aff85674be6a470eaa330ec4f08fd031f816d2d089aa1a3601dbdc33f1c40b 32637 monit_5.4-2+deb7u1.debian.tar.gz 83695f7e6a33fea88b07deda353196abf2282d4e51f0776ef4989aa55f7ca3c4 301432 monit_5.4-2+deb7u1_amd64.deb Files: d7b4805d8f9c22545bc06bff80b87ba3 1897 admin optional monit_5.4-2+deb7u1.dsc f1f391241d44059d0d3e5d26f4ec5ddf 1197209 admin optional monit_5.4.orig.tar.gz 29b93ee11b5fe290ddeda4a09cc8880f 32637 admin optional monit_5.4-2+deb7u1.debian.tar.gz 6a85677128de256a6f20a4d9a8c8e653 301432 admin optional monit_5.4-2+deb7u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEELIzSg9Pv30M4kOeDUmLn/0kQSf4FAlg/IkQACgkQUmLn/0kQ Sf75jRAAsla9nQK/vzzDakDT24+Yr4BHMIAaw7i3PikEhq3kYiSieb5t2wdmhen0 a9uNJp715QHp5p/Hy8vJ1/Y0C39/x/IXxh8t1ASJOpUY/0wfSYOR/DnMdifMYKNY RK1NZ6eomdLktWWkDL/aNYFxZlYVx/sS4SUUhHxOipybiDc1MKSql94coxlxQNZE WMSYgUDi8txKUikV8gI5eioIZxxlnI9CQUDE3dp7RlY2v1qgXGI4xKzB0+u+MXvP bI30KLmlrNsqf0ye0yiMo8Fb3Qli8dMsMXv8oo5vuXjTDF2E5fnYcTg+cO/j6+I3 9lfetaBLnQo2vw2VzwiqDixlmG3TDursDRpbOauWIlPsc0o7IR16tyB/mynhlIUW TeMhJTaG6V3ksF+PVCYHa3yFtAfucxeANA7H0hwrgMNFQ3bTDW7KgnO00R79SnbC v1YvFmqr0ZnoUeexJGEV0bNNB+pqzX29lEIP9xAlKVmwU1DzmNfo1SBpqFXiOO0+ 1n6wjmCq4BzwfOiGEzgnwWhgkFMjA9aH+yjyg1nPhcgaNGbZiAqsybNU6w75I6uN r/5ZZluoQs7XPl1ljrnCwvmJHAi7KYcG/WbvN+pISZE/V3j1TVCpdilrBnXg0sp7 BCeRJdpUgnzfdJhJUpA2yB2mULzSzdRVvF0+JnTW8Phe9/65mKg= =jcAM -----END PGP SIGNATURE-----