-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Sat, 06 Apr 2019 03:42:57 +0200 Source: python2.7 Architecture: source Version: 2.7.16-2 Distribution: unstable Urgency: high Maintainer: Matthias Klose <d...@debian.org> Changed-By: Matthias Klose <d...@debian.org> Closes: 924073 Changes: python2.7 (2.7.16-2) unstable; urgency=high . [ Matthias Klose ] * CVE-2019-9636. Fix issue #36216: Add check for characters in netloc that normalize to separators. Closes: #924073. * CVE-2019-9948. Fix issue #35907: Stop urllib exposing the local_file schema (file://). . [ Dimitri John Ledkov ] * Bump Build-Depedency and Dependency of libssl-dev and libss1.1 to 1.1.1 or higher. As TLS1.3 constants leak into ssl module, thus one shouldn't mix and match python2.7 & libssl1.1. LP: #1808476 Checksums-Sha1: aafcc8959ac1ac31aea46f895290244ce66d2190 3355 python2.7_2.7.16-2.dsc 742223c8194250f167daaf85cdac8f3af69aa4cc 288124 python2.7_2.7.16-2.diff.gz d43bff199d438c0081a846267ac1e57a720a0cbd 9755 python2.7_2.7.16-2_source.buildinfo Checksums-Sha256: 52fd1acdfe3e96ac389403ee54e78f2495234c15edbeae6a7859e4044d0a9aa2 3355 python2.7_2.7.16-2.dsc 6ef1adb23d697d68a41d41cf97822179569852bce7b6ab5613b664a158f1609c 288124 python2.7_2.7.16-2.diff.gz 921ab93ca65c14dbdf0f724b0269d17b1f90adc2764282ac15a3a6260555f5f5 9755 python2.7_2.7.16-2_source.buildinfo Files: f65e661c33d2ea4507a9abe82d1ad9da 3355 python optional python2.7_2.7.16-2.dsc d2d2979efdc5d8673d001ee97f79ae64 288124 python optional python2.7_2.7.16-2.diff.gz 2fc1f9e607c84cb4c57cf8e10d8146e3 9755 python optional python2.7_2.7.16-2_source.buildinfo
-----BEGIN PGP SIGNATURE----- iQJEBAEBCAAuFiEE1WVxuIqLuvFAv2PWvX6qYHePpvUFAlyoBI8QHGRva29AZGVi aWFuLm9yZwAKCRC9fqpgd4+m9aDuD/43E4DdfzHi7NkLAuX4VCA4Xqok5A7zIoBf 3QiRMwFGO0XXiuUEIVoURGOEDYAMgZhUcvWwegWq/FLLOtS7azsno+7erG2rU20w li+7JgMuhZT0okDRqX8fTXCDf+W5QnqUW9bwNFVD6sXhaPecCaLi3VQGcoSs/KES 3V4L2GuNVUnRAwbWxjW/F99NPGvqqqqaDz1hMzQjfCWiEX4AtE8enkQI7gr6FQeH Ta5HMnq+mw9RwqZu2v6uSRQtepgVC+dKL1WwRxmbf8x09/4aqSSojZW07L4MhPHu 2hBwQ/hYgLLN7kMODhsplWWUxU8iMS0s36aADudNy3LWNPeEt82PfhDyIi0852+a dGY7ZaPeavHhrCmF5Ryu5ki6sU6ByUy3qtFO9UA9Bv5MoFugcclrNzOnZRkzmhjU 3LXZqpoZ26Wt9CfJ0gTfnkXslQ7PANkoT02FxWBCx+e0HsHCTrCkGMqm4C1TfH/d MN8YDbIy6GWFw+YFZx/1RlN5+u4wgIesl/Y4cc1U4wbaXudsPWk0zI1nxeq3cyOj mrl1iuyGkpLcm1ZVi7UTddeHbuTv1R1BRn/J3rK1r9vti2+XpMyT+n3pyal/x3Om w6ss3TH4NiETH34lTfCu97raChIZD1HZ9FkSiFuNB9QLmZu8Tz5kSxGP20LjrZOI rb7Fcisjqw== =G04g -----END PGP SIGNATURE-----