-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 08 Jul 2018 22:06:46 +1000 Source: wordpress Binary: wordpress wordpress-l10n wordpress-theme-twentysixteen wordpress-theme-twentyfifteen wordpress-theme-twentyseventeen Architecture: source all Version: 4.7.5+dfsg-2+deb9u4 Distribution: stretch-security Urgency: high Maintainer: Craig Small <csmall@debian.org> Changed-By: Craig Small <csmall@debian.org> Description: wordpress - weblog manager wordpress-l10n - weblog manager - language files wordpress-theme-twentyfifteen - weblog manager - twentytfifteen theme files wordpress-theme-twentyseventeen - weblog manager - twentyseventeen theme files wordpress-theme-twentysixteen - weblog manager - twentysixteen theme files Closes: 902876 Changes: wordpress (4.7.5+dfsg-2+deb9u4) stretch-security; urgency=high . * Backport security patch from 4.9.7 Closes: #902876 - CVE-2018-12895 Fix directory traversal in thumb parameter Checksums-Sha1: ffdcd6221f5aece954a355999eefcf159ab20607 2567 wordpress_4.7.5+dfsg-2+deb9u4.dsc 980e8d70fefa952d001fc1f6dc1710af94ed3198 6791728 wordpress_4.7.5+dfsg-2+deb9u4.debian.tar.xz 88ff239bd4c9efc8ff40ce5c63a1f91b383decc4 4383236 wordpress-l10n_4.7.5+dfsg-2+deb9u4_all.deb 789fb550200be1af73184e2a6a068f21a1cb6834 700820 wordpress-theme-twentyfifteen_4.7.5+dfsg-2+deb9u4_all.deb 0ab3fa413e1886c9bf424c3dc6ec72e8e58cfe00 940594 wordpress-theme-twentyseventeen_4.7.5+dfsg-2+deb9u4_all.deb 6ab5fe838b1159372eb842b8c853b106b38addb3 589544 wordpress-theme-twentysixteen_4.7.5+dfsg-2+deb9u4_all.deb 05275afaa138e2e4cba7012f137eccfd19b93902 4001532 wordpress_4.7.5+dfsg-2+deb9u4_all.deb eeccedf70d1f22c9eb36fdcf257e6aeeeaafcff8 7445 wordpress_4.7.5+dfsg-2+deb9u4_amd64.buildinfo Checksums-Sha256: d464f662b3c9bee41ddf0a024663f39088fbc8132accc69f10c0dc4ebfdb4bd4 2567 wordpress_4.7.5+dfsg-2+deb9u4.dsc deb400c94e68826c1a048d5bb874978fb15e62e76c65e29039a1da72633f2a3d 6791728 wordpress_4.7.5+dfsg-2+deb9u4.debian.tar.xz 3c8d7db2279c24782a84989f0e557e64323ca13e0dc5db963994b91d38afc210 4383236 wordpress-l10n_4.7.5+dfsg-2+deb9u4_all.deb 9a8df48c72945ca8e437f82039231b25771ded4b6e2730709542c8cc6beb5d99 700820 wordpress-theme-twentyfifteen_4.7.5+dfsg-2+deb9u4_all.deb 7bd5463a65bf8ada456db341eb77a985b0288759ea5dbc52cf7fdcf1f213f3b5 940594 wordpress-theme-twentyseventeen_4.7.5+dfsg-2+deb9u4_all.deb ef46993a6bd5c8e05bbc50e0d23fa1be9753fdd8410f8ad65c4cbeb72b251667 589544 wordpress-theme-twentysixteen_4.7.5+dfsg-2+deb9u4_all.deb 4dc8787d34dae86e63f5da8dd96b2ded4a22371b500198d77b5086c030a41a74 4001532 wordpress_4.7.5+dfsg-2+deb9u4_all.deb 733830341c68a7f6ad86c73916dfb33329f9d45e2fcac380cf450332745c28fc 7445 wordpress_4.7.5+dfsg-2+deb9u4_amd64.buildinfo Files: 0fed1949b5eed57ca50b793db4800db3 2567 web optional wordpress_4.7.5+dfsg-2+deb9u4.dsc acf6fcf707dfd603a99de11fe385a8ac 6791728 web optional wordpress_4.7.5+dfsg-2+deb9u4.debian.tar.xz 8161de824a1371b810eb26d49e50fcd7 4383236 localization optional wordpress-l10n_4.7.5+dfsg-2+deb9u4_all.deb cbf8b718bde37d178fb521625c44f79b 700820 web optional wordpress-theme-twentyfifteen_4.7.5+dfsg-2+deb9u4_all.deb 387a02757dffb6126e5b96411124a41e 940594 web optional wordpress-theme-twentyseventeen_4.7.5+dfsg-2+deb9u4_all.deb 34df3abee212991a18e0631e2e983c74 589544 web optional wordpress-theme-twentysixteen_4.7.5+dfsg-2+deb9u4_all.deb 74bf388730dac80a8109951cd6ac6452 4001532 web optional wordpress_4.7.5+dfsg-2+deb9u4_all.deb eb790d2b60f759b2a43465e52e25a08a 7445 web optional wordpress_4.7.5+dfsg-2+deb9u4_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEXT3w9TizJ8CqeneiAiFmwP88hOMFAltNysUACgkQAiFmwP88 hOMIxw/+Lx1q21UyWXWPx2KewDfibNy4kx8Gfv7cSnv5nt0JPjAhbM4gbdRDix9F F4/XmM1G5n/hwYLOPcDGcavLlX33ramv8EDKhEnoOwYhl81Xc5w0qfBlr/3FOoIJ mOWoab7M5HZmGC42kv9BnA08aqG4AQU/lgtbPUseVkLFTUNYOk5tNew4Djkeewel u+El/FYi21N4/zPYf5eBUquH0nM4u/DJjuPhI+SrEAXSYbu3dnHPHncrVEz+kAe2 m5FaNB+4QUjNKV4UtI8ml8M8gGJABCaCfSw/IIAjcvCZ7wbGmWVaP8oy/M4Ha6jk mgFvzT2STnAipvhcicf+5g3lhJNsYSMc+zAf/eEhpI2vpKvUHbUVROvUIcvfPWl1 3fI8F8brnqIvmMo/3OIWp9Ahp0A1oTbCiuMik6GmnZWugLRjQhxSDYvv9wPx3U7W rKNCrN/hZvUM7bI3AH34qYaHPl/OIH7oiAXJKQF4uw5zHqoPBRjrjbC3UESzs/gC NQQqKBQYouTV+2JyHj3tAaXOyiyhJcJezuGoLJE7DcKbXoEzXgsREEaLJ+O9vMfP +9/dR1aHAFtDAwrlTzupsS40UYIDpGq5qMxKVdUALmHKw6BYqieBuj2MHPKLP1or X1dT2JJksmYxI8nsKkjW1QI/w8lzBOw+ECL9XFWMtvC3fxOblSQ= =tlmr -----END PGP SIGNATURE-----