-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 09 Oct 2018 12:00:19 +0200 Source: otrs2 Binary: otrs2 otrs Architecture: source all Version: 6.0.12-1 Distribution: unstable Urgency: high Maintainer: Patrick Matthäi <pmatthaei@debian.org> Changed-By: Patrick Matthäi <pmatthaei@debian.org> Description: otrs - Open Ticket Request System (OTRS 6) otrs2 - Open Ticket Request System Changes: otrs2 (6.0.12-1) unstable; urgency=high . * New upstream release. - Fixes CVE-2018-17883, also known as OSA-2018-06: An attacker could send an email with a malicious link to an OTRS system or an agent. If a logged in agent opens this link, it could cause the execution of JavaScript in the context of OTRS. * Add XS-Autobuild yes to debian/control. * Adjust lintian overrides. * Correct 6.0.11-1 changelog about the fixed CVEs. * Merge 6.0.11-1~bpo9+1 changelog. * Remove extra documentation files. Checksums-Sha1: beb4ee3c7d6226d9b623af87209805cb194416f6 1811 otrs2_6.0.12-1.dsc 5fdfd2e422c8383fcb1b0b43e52b55758b265a24 24887957 otrs2_6.0.12.orig.tar.bz2 38d00332e025e2d75a2d814d87af3f3bcc6ff2fc 29192 otrs2_6.0.12-1.debian.tar.xz f0539deac6174a6e1eed17cd685e0c3d22287578 9606356 otrs2_6.0.12-1_all.deb 6f33780b0d0ae25ed842776705298c78f436c587 6401 otrs2_6.0.12-1_amd64.buildinfo 5b0d56c8eb3ef97c71eb4b3bccfb43f826437182 245460 otrs_6.0.12-1_all.deb Checksums-Sha256: b534f9d2b73490d10d2fbdddde8d96aa422a48ed5c27ff16d1d75da6942b4b41 1811 otrs2_6.0.12-1.dsc ffbbad2e0627bcf01e92d1530019782dc1fab94f7829943733ae858c323dc328 24887957 otrs2_6.0.12.orig.tar.bz2 a8ea0e0921ee37202a71964ff9fa60f7377270eb7aa4eabaac93c3e6f180aa6d 29192 otrs2_6.0.12-1.debian.tar.xz 41b5e19a0541fd256e932dd2b7676ded66bbc8ff90bb1fd1f7386fb18e1690fd 9606356 otrs2_6.0.12-1_all.deb 356e47937800bfc8152777f79dc2971de117ba980279248fa2a0b33ed690555b 6401 otrs2_6.0.12-1_amd64.buildinfo 14250c95ace98ea6bb1ece25dac87ec9a1c786b6c99329c3b6d45918776fbf89 245460 otrs_6.0.12-1_all.deb Files: 050a6fe9db0210efdcdaf98d13eb2f3a 1811 non-free/web optional otrs2_6.0.12-1.dsc db4ed1d84c4bc591b222086fe7008a6c 24887957 non-free/web optional otrs2_6.0.12.orig.tar.bz2 c2054e8de7b91892f783badb993fb524 29192 non-free/web optional otrs2_6.0.12-1.debian.tar.xz 4d904a612cb1ce5e4adab54d36f914b2 9606356 non-free/web optional otrs2_6.0.12-1_all.deb edd860d17c05b51ee162979bd86e6d4d 6401 non-free/web optional otrs2_6.0.12-1_amd64.buildinfo 6e57fe74fc242cf6f91e904a980babe6 245460 non-free/web optional otrs_6.0.12-1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEWKA9xYJCWk3IuQ4TEtmwSpDL2OQFAlu8f98ACgkQEtmwSpDL 2ORpfw/9GiWDLIe4v15KtyDkeNE4ulUL/iTnrrqgkcHNaK3Tnd4mwavDaq4VvCr7 PbZAObXdk8la5Nb/eykqaNRffz5WhPzi17c499RMimmEudTSLbAR9LPxKmm2GEFb dBNjRtP9rHvXIudgc81kbic4HTgQZ08H8DA3/Ft5CpiMpYKJcCMhpD6XPyC+hOx6 iXAu53VFPbtdU2F4WvKdNPNZ2uNegfvfShbURWnVNxCrUOZ0+p+4ICB76KChi9ow 5pa92WXNH6txheSzEFNj82uzc+rvzI1yKElHZ5aXYTtG/GVj1I34NglPxP7tmoTy esFlsJhypN991ZRQFyPa8uLkjpEX08gCs1yRzDDA+R7dXs8+Z2DrAAhlETkE0uxt YdRvXGDy3OiSIbPMF905AnS3MxSaYxPGFuGmqx2w62DO66xNDwEWJtLahWnJm6Uz y2fW4cXZHiQpJGJ5zLabBMOsEoT2+gnMYRPV4NKIX3FQxxWNl70UeJ74uzkljFka qxXv+yKxph/1nj/VzaDygTKgqop3qFInmaWFEduAgf2OEByoXItdHMvxfpL+uhoi bSoIqBZrYWtYcM+x54D5SKnnldPH+w45oIKfvxdoTrBtX6Nbe6nicW5vzrO46YBE GKDQxPoxnK1WrWzZC462jn9zQppBZgCEtWAOHaPioIlAx5N/gqs= =q9/G -----END PGP SIGNATURE-----