Accepted rssh 2.3.4-5+deb9u4 (source amd64) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Russ Allbery
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

Format: 1.8
Date: Mon, 18 Feb 2019 19:40:06 -0800
Source: rssh
Binary: rssh
Architecture: source amd64
Version: 2.3.4-5+deb9u4
Distribution: stretch-security
Urgency: high
Maintainer: Russ Allbery 
Changed-By: Russ Allbery 
Description:
 rssh   - Restricted shell allowing scp, sftp, cvs, svn, rsync or rdist
Changes:
 rssh (2.3.4-5+deb9u4) stretch-security; urgency=high
 .
   * The fix for the scp security vulnerability in 2.3.4-9 combined with
 the regression fix in 2.3.4-10 rejected the -pf and -pt options, which
 are sent by libssh2's scp support.  Add support for those variants.
 (LP #1815935)
Checksums-Sha1:
 4a75518cbbf4a0180de49dba297b27ec5eb3126d 1514 rssh_2.3.4-5+deb9u4.dsc
 086a630bba640220d5ebce08da3a6d73acfd860c 30480 
rssh_2.3.4-5+deb9u4.debian.tar.xz
 a5293703f1bc982e04912021bc4abf3e33db4e8d 50812 
rssh-dbgsym_2.3.4-5+deb9u4_amd64.deb
 90d8d8680f2e87a6347f0f556f197c488b32e926 5735 
rssh_2.3.4-5+deb9u4_amd64.buildinfo
 7a91635957b73c63c57dcd081fbdbfbb9cfa077f 55914 rssh_2.3.4-5+deb9u4_amd64.deb
Checksums-Sha256:
 5d427ae457fca62cc76e71361529b77e5b5c14dbd5256f767a833d861b675832 1514 
rssh_2.3.4-5+deb9u4.dsc
 82e457db84238c5babe39dd4dbf85a6161483234b7d34c846f533fce86ce8aa6 30480 
rssh_2.3.4-5+deb9u4.debian.tar.xz
 0df9a0d163605e54918e22d00cccfc7c17cde1a4a766bd1d43d5640f503c11dd 50812 
rssh-dbgsym_2.3.4-5+deb9u4_amd64.deb
 9972135e48d3f510b6c9267c479591859b733ccfc1578287c9b1e1ed7379db68 5735 
rssh_2.3.4-5+deb9u4_amd64.buildinfo
 bafb3cc56acfab74c98d93d39753743dfa511d9342607614d83b23f37fd15c6d 55914 
rssh_2.3.4-5+deb9u4_amd64.deb
Files:
 b6634eeacc5146566ba44258049a25c2 1514 net optional rssh_2.3.4-5+deb9u4.dsc
 83d60c1f7062908a35fd99f46e7be678 30480 net optional 
rssh_2.3.4-5+deb9u4.debian.tar.xz
 eb5435380f24d4203b08b1183ab7ec5a 50812 debug extra 
rssh-dbgsym_2.3.4-5+deb9u4_amd64.deb
 8b4b1815509a924ea72adef6c7bd4aff 5735 net optional 
rssh_2.3.4-5+deb9u4_amd64.buildinfo
 edcacb96b1817e17f11aed6c928a13ea 55914 net optional 
rssh_2.3.4-5+deb9u4_amd64.deb

-BEGIN PGP SIGNATURE-

iQEzBAEBCAAdFiEE1zk0tJZ0z1zNmsJ4fYAxXFc23nUFAlxs3LsACgkQfYAxXFc2
3nWgIAf8Cjhe0tztrHM/sBDTnC25e/JnyehW1+67diFO9ssxE+MJcGZKLpWMjway
Q0ft5uheqP8/htGrWiLMX9KrA/8uZkSFATwm1Sy8NgKxyf6ScWRDGcfRwZ8p4beE
9zQL8t0kmGxNUUC+VB0Do/d9GtEmxFpq+31BISkVmyLRkZa4+Sy0hASTCtwTQMGS
HR0ZpKMOUz9QjkpWiLY1j52hULFGX5Kr6p/qMLAQTooBQiFGsS4Ex7HK8YEsbmX4
CkeNg+xRTBPfboso4jSomLyF4849mXulSc/eswv3wN5OuXmEgb191iwXxbvkJoYe
uMSXx2lLtXbLGKK7n9s8rLF6CzzeJA==
=cQ6v
-END PGP SIGNATURE-



Accepted wordpress 4.7.5+dfsg-2+deb9u5 (source all) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Craig Small
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Thu, 28 Feb 2019 20:25:00 +1100
Source: wordpress
Binary: wordpress wordpress-l10n wordpress-theme-twentysixteen 
wordpress-theme-twentyfifteen wordpress-theme-twentyseventeen
Architecture: source all
Version: 4.7.5+dfsg-2+deb9u5
Distribution: stretch-security
Urgency: medium
Maintainer: Craig Small 
Changed-By: Craig Small 
Description:
 wordpress  - weblog manager
 wordpress-l10n - weblog manager - language files
 wordpress-theme-twentyfifteen - weblog manager - twentytfifteen theme files
 wordpress-theme-twentyseventeen - weblog manager - twentyseventeen theme files
 wordpress-theme-twentysixteen - weblog manager - twentysixteen theme files
Closes: 916403
Changes:
 wordpress (4.7.5+dfsg-2+deb9u5) stretch-security; urgency=medium
 .
   *  Backport security patches from wordpress 5.0.1 Closes: #916403
  - CVE-2018-20147
Delete files through altered meta data
  - CVE-2018-20152
Create posts of unauthorized post types
  - CVE-2018-20148
PHP object injection through crafted meta data
  - CVE-2018-20153
Edit other users comments, leading to XSS
  - CVE-2018-20150
XSS in plugins through crafted URL inputs
  - CVE-2018-20151
User activation screen visible to search engines
  - CVE-2018-20149
Bypass MIME verification causing XSS
  - CVE-2019-8942
Remote Code Execution (RCE) in uploaded image files
Checksums-Sha1:
 460597156c19c5184757ee0def60c777ff9a42c4 2567 wordpress_4.7.5+dfsg-2+deb9u5.dsc
 f203b60b65e5f3752021ec841d00356e4ff7ff17 6796760 
wordpress_4.7.5+dfsg-2+deb9u5.debian.tar.xz
 b4211510d8f7d6c5132d7de2052e81685ae545b8 4383668 
wordpress-l10n_4.7.5+dfsg-2+deb9u5_all.deb
 bceeaf41b9159ca49a98050e0061933b2397f7bd 700948 
wordpress-theme-twentyfifteen_4.7.5+dfsg-2+deb9u5_all.deb
 54362585d9647913b2319fa0a22994e1aae6c184 940798 
wordpress-theme-twentyseventeen_4.7.5+dfsg-2+deb9u5_all.deb
 c8c2735ede36adf7a1486bf28d57f421f2a49a11 589792 
wordpress-theme-twentysixteen_4.7.5+dfsg-2+deb9u5_all.deb
 93d149114230f84f8a26a3ed240bd880f5fd2939 4003568 
wordpress_4.7.5+dfsg-2+deb9u5_all.deb
 b303be374aff0082ba75eff729b42611636be5fe 7445 
wordpress_4.7.5+dfsg-2+deb9u5_amd64.buildinfo
Checksums-Sha256:
 bc46b50915f4c7d482fd1fd3ba61d3901aff4439681f5ff8a2690c3c8bfc2d1a 2567 
wordpress_4.7.5+dfsg-2+deb9u5.dsc
 0c2eabf24870dcba9d2cffd77931f1fd8b566f3e76e5560f9bdcfec2df7970a4 6796760 
wordpress_4.7.5+dfsg-2+deb9u5.debian.tar.xz
 d00490f520ebf1f3bdab7be92939e07518b0a46a4c293b635c5ca1bf22be0f22 4383668 
wordpress-l10n_4.7.5+dfsg-2+deb9u5_all.deb
 f33d81386de882a3e639d9723b80bf92c7ead4669f65e5596e0cd0b855cbebfa 700948 
wordpress-theme-twentyfifteen_4.7.5+dfsg-2+deb9u5_all.deb
 024887fb7d6e6a5260daf8172157407527b6818ac76aa5b33436c25f55d7d65c 940798 
wordpress-theme-twentyseventeen_4.7.5+dfsg-2+deb9u5_all.deb
 98d9223ec76ad6024dd3ab78007a61bb06717d362b3e1409958f4f79add16955 589792 
wordpress-theme-twentysixteen_4.7.5+dfsg-2+deb9u5_all.deb
 8ab4fbd1f56562c10bfd4af2a4e34b00659b633624e4143d05a168328e3890f1 4003568 
wordpress_4.7.5+dfsg-2+deb9u5_all.deb
 d6824818f70579b258782a9bc97feaeb875d367320a1997ef2979010f99d22c7 7445 
wordpress_4.7.5+dfsg-2+deb9u5_amd64.buildinfo
Files:
 e7d84a51d5898419bb56757163267055 2567 web optional 
wordpress_4.7.5+dfsg-2+deb9u5.dsc
 c300655016d66421b8ad726a4d650f64 6796760 web optional 
wordpress_4.7.5+dfsg-2+deb9u5.debian.tar.xz
 35e902954803fb3390c8645b93bac9c7 4383668 localization optional 
wordpress-l10n_4.7.5+dfsg-2+deb9u5_all.deb
 0b0c4cf08bad7f77c2f2c2316bb34aed 700948 web optional 
wordpress-theme-twentyfifteen_4.7.5+dfsg-2+deb9u5_all.deb
 5decad61af62fd09f78bad531dbd1a07 940798 web optional 
wordpress-theme-twentyseventeen_4.7.5+dfsg-2+deb9u5_all.deb
 06574c52e070e264303733828d0cd55e 589792 web optional 
wordpress-theme-twentysixteen_4.7.5+dfsg-2+deb9u5_all.deb
 0b517dcf4510c6d8a55763274ed41bd4 4003568 web optional 
wordpress_4.7.5+dfsg-2+deb9u5_all.deb
 93412949d2139fdaea09a98ee7774acb 7445 web optional 
wordpress_4.7.5+dfsg-2+deb9u5_amd64.buildinfo

-BEGIN PGP SIGNATURE-
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=XldY
-END PGP SIGNATURE-



Accepted rdesktop 1.8.4-1~deb9u1 (source amd64) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread GCS
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

Format: 1.8
Date: Sun, 03 Feb 2019 09:38:27 +
Source: rdesktop
Binary: rdesktop
Architecture: source amd64
Version: 1.8.4-1~deb9u1
Distribution: stretch-security
Urgency: medium
Maintainer: Laszlo Boszormenyi (GCS) 
Changed-By: Laszlo Boszormenyi (GCS) 
Description:
 rdesktop   - RDP client for Windows NT/2000 Terminal Server and Windows Server
Changes:
 rdesktop (1.8.4-1~deb9u1) stretch-security; urgency=medium
 .
   * Security backport for Stretch.
   * Relax debhelper build dependency.
   * Relax Standards-Version to 3.9.8 .
Checksums-Sha1:
 f6f5a94f58b692da4236ea2518d94e402f5c9d1d 1897 rdesktop_1.8.4-1~deb9u1.dsc
 b937573e3f76a494a2b9092a440c9ea3e862d1f3 321448 rdesktop_1.8.4.orig.tar.gz
 8a5ff5eb8274d026b1688f841304092c298af1d7 10076 
rdesktop_1.8.4-1~deb9u1.debian.tar.xz
 7f953554540487b91702050f901b0c880b3bfff8 7297 
rdesktop_1.8.4-1~deb9u1_amd64.buildinfo
 429e5e78681e394b02e14e6a4e18e9079e0b0902 164492 
rdesktop_1.8.4-1~deb9u1_amd64.deb
Checksums-Sha256:
 57f29d17708df3307e8de8dad82e7968155d4edf4cafdaf8a4456104d51f9d5f 1897 
rdesktop_1.8.4-1~deb9u1.dsc
 9b98b8e73aa83e93aa1d9ae82ce38c08395f64b67799edc24821bb26a84dcd2d 321448 
rdesktop_1.8.4.orig.tar.gz
 e0473f4d6a77bca9ab53abb174604a9183ba09b99dec7cc39570485d09d6f392 10076 
rdesktop_1.8.4-1~deb9u1.debian.tar.xz
 e841bf674190356e18d9fe31d249a2a14ee0d3d6e3788912eac35092508fbdc1 7297 
rdesktop_1.8.4-1~deb9u1_amd64.buildinfo
 c7aa23e91e9cfed0f6a32387d35c424a0e525e7b98f35eb642ebb0e6a5ed7472 164492 
rdesktop_1.8.4-1~deb9u1_amd64.deb
Files:
 ad3f244a0c77d9e4f6a5729289905d6f 1897 x11 optional rdesktop_1.8.4-1~deb9u1.dsc
 7273f9dad833f6899a3e5b39d7fdd6f2 321448 x11 optional rdesktop_1.8.4.orig.tar.gz
 e3d22e9620369de4eab3fdc2be9d3850 10076 x11 optional 
rdesktop_1.8.4-1~deb9u1.debian.tar.xz
 b1f33d8e4e43c16d07baa528ef79f3e9 7297 x11 optional 
rdesktop_1.8.4-1~deb9u1_amd64.buildinfo
 9469f8cd8e092a38af274145574c4293 164492 x11 optional 
rdesktop_1.8.4-1~deb9u1_amd64.deb

-BEGIN PGP SIGNATURE-
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=XNOy
-END PGP SIGNATURE-



Accepted php7.0 7.0.33-0+deb9u2 (source amd64 all) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Moritz Mühlenhoff
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Tue, 26 Feb 2019 00:13:19 +0100
Source: php7.0
Binary: libapache2-mod-php7.0 libphp7.0-embed php7.0 php7.0-cgi php7.0-cli 
php7.0-dev php7.0-fpm php7.0-phpdbg php7.0-xsl php7.0-intl php7.0-odbc 
php7.0-readline php7.0-recode php7.0-common php7.0-sqlite3 php7.0-xml 
php7.0-sybase php7.0-zip php7.0-gd php7.0-mcrypt php7.0-ldap php7.0-interbase 
php7.0-tidy php7.0-snmp php7.0-curl php7.0-json php7.0-pgsql php7.0-mbstring 
php7.0-enchant php7.0-opcache php7.0-imap php7.0-gmp php7.0-mysql php7.0-bcmath 
php7.0-soap php7.0-dba php7.0-xmlrpc php7.0-pspell php7.0-bz2
Architecture: source amd64 all
Version: 7.0.33-0+deb9u2
Distribution: stretch-security
Urgency: medium
Maintainer: Debian PHP Maintainers 
Changed-By: Moritz Mühlenhoff 
Description:
 libapache2-mod-php7.0 - server-side, HTML-embedded scripting language (Apache 
2 module)
 libphp7.0-embed - HTML-embedded scripting language (Embedded SAPI library)
 php7.0 - server-side, HTML-embedded scripting language (metapackage)
 php7.0-bcmath - Bcmath module for PHP
 php7.0-bz2 - bzip2 module for PHP
 php7.0-cgi - server-side, HTML-embedded scripting language (CGI binary)
 php7.0-cli - command-line interpreter for the PHP scripting language
 php7.0-common - documentation, examples and common module for PHP
 php7.0-curl - CURL module for PHP
 php7.0-dba - DBA module for PHP
 php7.0-dev - Files for PHP7.0 module development
 php7.0-enchant - Enchant module for PHP
 php7.0-fpm - server-side, HTML-embedded scripting language (FPM-CGI binary)
 php7.0-gd  - GD module for PHP
 php7.0-gmp - GMP module for PHP
 php7.0-imap - IMAP module for PHP
 php7.0-interbase - Interbase module for PHP
 php7.0-intl - Internationalisation module for PHP
 php7.0-json - JSON module for PHP
 php7.0-ldap - LDAP module for PHP
 php7.0-mbstring - MBSTRING module for PHP
 php7.0-mcrypt - libmcrypt module for PHP
 php7.0-mysql - MySQL module for PHP
 php7.0-odbc - ODBC module for PHP
 php7.0-opcache - Zend OpCache module for PHP
 php7.0-pgsql - PostgreSQL module for PHP
 php7.0-phpdbg - server-side, HTML-embedded scripting language (PHPDBG binary)
 php7.0-pspell - pspell module for PHP
 php7.0-readline - readline module for PHP
 php7.0-recode - recode module for PHP
 php7.0-snmp - SNMP module for PHP
 php7.0-soap - SOAP module for PHP
 php7.0-sqlite3 - SQLite3 module for PHP
 php7.0-sybase - Sybase module for PHP
 php7.0-tidy - tidy module for PHP
 php7.0-xml - DOM, SimpleXML, WDDX, XML, and XSL module for PHP
 php7.0-xmlrpc - XMLRPC-EPI module for PHP
 php7.0-xsl - XSL module for PHP (dummy)
 php7.0-zip - Zip module for PHP
Changes:
 php7.0 (7.0.33-0+deb9u2) stretch-security; urgency=medium
 .
   * CVE-2019-9020
   * CVE-2019-9021
   * CVE-2019-9022 (plus backport for CAA support)
   * CVE-2019-9023
   * CVE-2019-9024
Checksums-Sha1:
 e56476953654178b88c857491aab2a01c06c6d19 5660 php7.0_7.0.33-0+deb9u2.dsc
 f31eaa1fbcd2dcb406152e5f165ea51d3f8f107b 70604 
php7.0_7.0.33-0+deb9u2.debian.tar.xz
 863aac3522a39786fb59daf93bc2924a4653889d 5048680 
libapache2-mod-php7.0-dbgsym_7.0.33-0+deb9u2_amd64.deb
 6e24d1be83aa5e1ce2add8667d82bd6ac0c7923b 1223154 
libapache2-mod-php7.0_7.0.33-0+deb9u2_amd64.deb
 452c715138e573265da38da149eef986d6429d01 5008690 
libphp7.0-embed-dbgsym_7.0.33-0+deb9u2_amd64.deb
 1671b7e276c77db0c5486e7b36c0df1db8f3fa29 1222598 
libphp7.0-embed_7.0.33-0+deb9u2_amd64.deb
 0dab37cb630af30630284ac9e0396b5fce5d1e36 135080 
php7.0-bcmath-dbgsym_7.0.33-0+deb9u2_amd64.deb
 a4767e3957bf51461f5bbaee1ea82a23acd9d708 15738 
php7.0-bcmath_7.0.33-0+deb9u2_amd64.deb
 b1ece8fdc66b6429a438267cb4efe6d18a5d330e 41530 
php7.0-bz2-dbgsym_7.0.33-0+deb9u2_amd64.deb
 045d369539710a252f12f565a1d1a2d896f29035 9986 
php7.0-bz2_7.0.33-0+deb9u2_amd64.deb
 c6aa895a0dbea5e263c5eaf436204228ef0a16df 5062478 
php7.0-cgi-dbgsym_7.0.33-0+deb9u2_amd64.deb
 964563c93cea3940bc5ad49118a69aa7f74967ff 1245468 
php7.0-cgi_7.0.33-0+deb9u2_amd64.deb
 491b6ea8ef3e5e1ac6235b9f23e67be2ce10e0e2 5103254 
php7.0-cli-dbgsym_7.0.33-0+deb9u2_amd64.deb
 7a5ab41d8db5618d1ccf11b9e550af2ac163bc12 1282840 
php7.0-cli_7.0.33-0+deb9u2_amd64.deb
 b233085dad49b26a008583d69bcf5cfcebb0e962 1315370 
php7.0-common-dbgsym_7.0.33-0+deb9u2_amd64.deb
 89c0344575808aa1e252863fbf0b638fe315b3b8 885450 
php7.0-common_7.0.33-0+deb9u2_amd64.deb
 1cc86b38a53444065dc5f3360b381d4ae644c2b3 106840 
php7.0-curl-dbgsym_7.0.33-0+deb9u2_amd64.deb
 8ff94540fd86b984553d53393c16aef0b3a849f6 27376 
php7.0-curl_7.0.33-0+deb9u2_amd64.deb
 a66fc376b7a7aed65736df0453e8e5dc39a61bc1 162814 
php7.0-dba-dbgsym_7.0.33-0+deb9u2_amd64.deb
 9b53daf82967386aee6d87f5f9b5a15b3848d29e 22900 
php7.0-dba_7.0.33-0+deb9u2_amd64.deb
 f7fb665c18c6778e2223f5819586bfd601bd2818 516660 
php7.0-dev_7.0.33-0+deb9u2_amd64.deb
 1d675a22c7472b65fcf129ca75af239f5b2cb485 29666 
php7.0-enchant-dbgsym_7.0.33-0+deb9u2_amd64.deb
 a26232b8fe840072dd4b49e68e6a73c56a989c7d 9056 
php7.0-enchant_7.0.33-0+deb9u2_amd64.deb
 48c3b2523c7afee75c85

Accepted ikiwiki 3.20170111.1 (source) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Simon McVittie
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

Format: 1.8
Date: Tue, 26 Feb 2019 22:57:58 +
Source: ikiwiki
Binary: ikiwiki
Architecture: source
Version: 3.20170111.1
Distribution: stretch-security
Urgency: high
Maintainer: Simon McVittie 
Changed-By: Simon McVittie 
Description:
 ikiwiki- wiki compiler
Changes:
 ikiwiki (3.20170111.1) stretch-security; urgency=high
 .
   * aggregate: Use LWPx::ParanoidAgent if available.
 Previously blogspam, openid and pinger used this module if available,
 but aggregate did not. This prevents server-side request forgery or
 local file disclosure, and mitigates denial of service when slow
 "tarpit" URLs are accessed.
 (CVE-2019-9187)
   * blogspam, openid, pinger: Use a HTTP proxy if configured, even if
 LWPx::ParanoidAgent is installed.
 Previously, only aggregate would obey proxy configuration. If a proxy
 is used, the proxy (not ikiwiki) is responsible for preventing attacks
 like CVE-2019-9187.
   * aggregate, blogspam, openid, pinger: Do not access non-http, non-https
 URLs.
 Previously, these plugins would have allowed non-HTTP-based requests if
 LWPx::ParanoidAgent was not installed. Preventing file URIs avoids local
 file disclosure, and preventing other rarely-used URI schemes like
 gopher mitigates request forgery attacks.
   * aggregate, openid, pinger: Document LWPx::ParanoidAgent as strongly
 recommended.
 These plugins can request attacker-controlled URLs in some site
 configurations.
   * blogspam: Document LWPx::ParanoidAgent as desirable.
 This plugin doesn't request attacker-controlled URLs, so it's
 non-critical here.
   * blogspam, openid, pinger: Consistently use cookiejar if configured.
 Previously, these plugins would only obey this configuration if
 LWPx::ParanoidAgent was not installed, but this appears to have been
 unintended.
Checksums-Sha1:
 8c7ec3f78150f5c57ddbcc64df5c86cd222bc1ba 2223 ikiwiki_3.20170111.1.dsc
 9b6b95c1da66d4492f5d935db0df73f3b949faa2 2618416 ikiwiki_3.20170111.1.tar.xz
 15e570feae476535dba5b0fe5722cdb5529c255f 5494 
ikiwiki_3.20170111.1_source.buildinfo
Checksums-Sha256:
 7ae898ad6564010f968ea260edcc9364110f46b2c3f8152285efd179bd127f01 2223 
ikiwiki_3.20170111.1.dsc
 443039c9b0ae748d7cb80543a217ac4074cc32a89d12c52ff5ff39e836b70488 2618416 
ikiwiki_3.20170111.1.tar.xz
 a5733c439bc019713e95919c6530e686bad797f3769f445eaf1f981f1528c013 5494 
ikiwiki_3.20170111.1_source.buildinfo
Files:
 b7fd75ad3a26cb0d7b38eee430963f03 2223 web optional ikiwiki_3.20170111.1.dsc
 707a04bb99abf54670dfb7f60b76723e 2618416 web optional 
ikiwiki_3.20170111.1.tar.xz
 1bfe891d16b617d2b4d8d0b32f59819b 5494 web optional 
ikiwiki_3.20170111.1_source.buildinfo

-BEGIN PGP SIGNATURE-
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=A7Dm
-END PGP SIGNATURE-



Accepted openssl1.0 1.0.2r-1~deb9u1 (source) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Kurt Roeckx
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Wed, 27 Feb 2019 21:58:52 +0100
Source: openssl1.0
Binary: libssl1.0.2 libssl1.0-dev libcrypto1.0.2-udeb libssl1.0.2-udeb
Architecture: source
Version: 1.0.2r-1~deb9u1
Distribution: stretch-security
Urgency: medium
Maintainer: Debian OpenSSL Team 
Changed-By: Kurt Roeckx 
Description:
 libcrypto1.0.2-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb)
 libssl1.0-dev - Secure Sockets Layer toolkit - development files
 libssl1.0.2 - Secure Sockets Layer toolkit - shared libraries
 libssl1.0.2-udeb - ssl shared library - udeb (udeb)
Changes:
 openssl1.0 (1.0.2r-1~deb9u1) stretch-security; urgency=medium
 .
   [ Kurt Roeckx ]
   * New upstream version
 - Fixes CVE-2019-1559
 .
   [ Sebastian Andrzej Siewior ]
   * Use openssl.cnf from the build directory for the testsuite.
Checksums-Sha1:
 09fb0a9345e21f3d001f0020bd3dc9342f9c49cf 2557 openssl1.0_1.0.2r-1~deb9u1.dsc
 b9aec1fa5cedcfa433aed37c8fe06b0ab0ce748d 5348369 openssl1.0_1.0.2r.orig.tar.gz
 429b554ad9c3f3ec8350a5939f577d5fd4fc8aaf 488 openssl1.0_1.0.2r.orig.tar.gz.asc
 18bfccdde6274e64bae9f94b6f22e0d88c1305e1 94600 
openssl1.0_1.0.2r-1~deb9u1.debian.tar.xz
 0a2f35523cb83e1a6ae7644247f74cc50c43bfe2 7330 
openssl1.0_1.0.2r-1~deb9u1_source.buildinfo
Checksums-Sha256:
 f6d40cc0e325d6ca58322b850866223da9c839876525961f1a2e8ca517ff6402 2557 
openssl1.0_1.0.2r-1~deb9u1.dsc
 ae51d08bba8a83958e894946f15303ff894d75c2b8bbd44a852b64e3fe11d0d6 5348369 
openssl1.0_1.0.2r.orig.tar.gz
 da941c886c404599c6c66fc01e4e0dfd5a0cb60d6b56688858d3128807a5fc64 488 
openssl1.0_1.0.2r.orig.tar.gz.asc
 347d87c07fcc8ac4987dedcb4d5f0404a03fd1c041548194234597767d7b77bc 94600 
openssl1.0_1.0.2r-1~deb9u1.debian.tar.xz
 cca1270cef176f543cca411c3e04f4c7ead38f3f30b62819a7f2d062c47b76e8 7330 
openssl1.0_1.0.2r-1~deb9u1_source.buildinfo
Files:
 90f72e124a87d0ba40466378bdaf556c 2557 utils optional 
openssl1.0_1.0.2r-1~deb9u1.dsc
 0d2baaf04c56d542f6cc757b9c2a2aac 5348369 utils optional 
openssl1.0_1.0.2r.orig.tar.gz
 25aee263ea59154a5afd7a197fbf513c 488 utils optional 
openssl1.0_1.0.2r.orig.tar.gz.asc
 ccce915af8136e8f9954bf3ae5151476 94600 utils optional 
openssl1.0_1.0.2r-1~deb9u1.debian.tar.xz
 11407d657323b67ac9ffb151d9044ab3 7330 utils optional 
openssl1.0_1.0.2r-1~deb9u1_source.buildinfo

-BEGIN PGP SIGNATURE-
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=0O9U
-END PGP SIGNATURE-



Accepted ansible 2.2.1.0-2+deb9u1 (source all) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Lee Garrett
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Mon, 11 Feb 2019 00:11:51 +0100
Source: ansible
Binary: ansible
Architecture: source all
Version: 2.2.1.0-2+deb9u1
Distribution: stretch-security
Urgency: high
Maintainer: Harlan Lieberman-Berg 
Changed-By: Lee Garrett 
Description:
 ansible- Configuration management, deployment, and task execution system
Changes:
 ansible (2.2.1.0-2+deb9u1) stretch-security; urgency=high
 .
   * Add patch to fix CVE 2018-10855.
   * Add patch to fix CVE 2018-16837.
   * Add patch to fix CVE 2018-10875.
   * Add patch to fix CVE 2018-16876.
   * Add patch to fix CVE 2019-3828.
Checksums-Sha1:
 00f0afb4c8b670a2f381a9512b37870676e5e520 2227 ansible_2.2.1.0-2+deb9u1.dsc
 224964b68e4069a1297783c282662bf115d35988 2511062 ansible_2.2.1.0.orig.tar.gz
 eb1c88853d4803be4c4e368fb83158057ae15a65 23208 
ansible_2.2.1.0-2+deb9u1.debian.tar.xz
 acaa13694d5e709c7044cc8a65e801125d0a341c 1675354 
ansible_2.2.1.0-2+deb9u1_all.deb
 8ec68ce3b830ae4032658f07e12db2143222e044 7036 
ansible_2.2.1.0-2+deb9u1_amd64.buildinfo
Checksums-Sha256:
 074d5b1b86e64a47113f0bf2524ca732af3563d919c32eaeab3dbdad3f2a771b 2227 
ansible_2.2.1.0-2+deb9u1.dsc
 63a12ea784c0f90e43293b973d5c75263634c7415e463352846cd676c188e93f 2511062 
ansible_2.2.1.0.orig.tar.gz
 58bfb416d1cb9cfe4f068ffde7a347b096bde807af1eac57fe680291a8e23f9e 23208 
ansible_2.2.1.0-2+deb9u1.debian.tar.xz
 612f7be35b0661962a67a32085f840356a5e3448f2fa7334837dd2f16303b1ea 1675354 
ansible_2.2.1.0-2+deb9u1_all.deb
 078d3e5e6738a19ad9b4d9eb6e9a71efdee9bf3d9cfb45638649cbf3e14bb329 7036 
ansible_2.2.1.0-2+deb9u1_amd64.buildinfo
Files:
 3b3acbd6998c69987a88feb87d0ffd15 2227 admin optional 
ansible_2.2.1.0-2+deb9u1.dsc
 9e6e3961a0aa78a94b2fcdbb73e94fe9 2511062 admin optional 
ansible_2.2.1.0.orig.tar.gz
 371056004ad9dda1bc37708421cefb02 23208 admin optional 
ansible_2.2.1.0-2+deb9u1.debian.tar.xz
 2dd28b38ed8609a7bcff6ee68ca5a7c6 1675354 admin optional 
ansible_2.2.1.0-2+deb9u1_all.deb
 52cb3ec2c6dbb38a21e34eba4abca2ac 7036 admin optional 
ansible_2.2.1.0-2+deb9u1_amd64.buildinfo

-BEGIN PGP SIGNATURE-
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=2EI4
-END PGP SIGNATURE-



Accepted mumble 1.2.18-1+deb9u1 (source) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Christopher Knadle
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Mon, 04 Mar 2019 23:42:33 +
Source: mumble
Binary: mumble mumble-server mumble-dbg
Architecture: source
Version: 1.2.18-1+deb9u1
Distribution: stretch-security
Urgency: high
Maintainer: Christopher Knadle 
Changed-By: Christopher Knadle 
Description:
 mumble - Low latency encrypted VoIP client
 mumble-dbg - Low latency encrypted VoIP client (debugging symbols)
 mumble-server - Low latency encrypted VoIP server
Changes:
 mumble (1.2.18-1+deb9u1) stretch-security; urgency=high
 .
   * debian/patches:
 - Add 60-fix-message-flood.diff to fix instability and crash due to
   message flooding
   Thanks to "the zombi community" for finding the bug, committing
   a fix upstream, and contacting me to fix the issue in Debian
 - Add 61-configurable-rate-limit.diff to make message rate limit
   configurable
Checksums-Sha1:
 e3e70f5acd60d53ff96339c56a375f47d7792a13 2370 mumble_1.2.18-1+deb9u1.dsc
 28cb93e590f9a524fc15af047a7e55e721512152 3210749 mumble_1.2.18.orig.tar.gz
 05f8cf59d5a388ebecb8ace69402126faaa3d49c 41328 
mumble_1.2.18-1+deb9u1.debian.tar.xz
 2d141b9c8b7c07b145aff1becfba5ec2d9b4 5764 
mumble_1.2.18-1+deb9u1_source.buildinfo
Checksums-Sha256:
 587cc47fc7c6abd8573460cc1471a8215504a68b903786efeb007d642e4360d9 2370 
mumble_1.2.18-1+deb9u1.dsc
 e0f7acc82691b9090e5d10a23ff4a7ceb9affe429b8f5221a9766129dc6f55aa 3210749 
mumble_1.2.18.orig.tar.gz
 4a78aaf969e6d2240c394ba4bc1fd9c7d2e49acc0896fb43848143e32b556647 41328 
mumble_1.2.18-1+deb9u1.debian.tar.xz
 96b0a11aaff5c28c3d861ea462e1fe0efd7a5958cce1ce28e258762322afe38f 5764 
mumble_1.2.18-1+deb9u1_source.buildinfo
Files:
 b83aa54e8fe20a7f4ec0ae50f59ea3c5 2370 sound optional mumble_1.2.18-1+deb9u1.dsc
 3c448632142e0f38e693250965e8b6b1 3210749 sound optional 
mumble_1.2.18.orig.tar.gz
 3403e3f5d27149d6ae1518dcf04de08b 41328 sound optional 
mumble_1.2.18-1+deb9u1.debian.tar.xz
 7ac83b2128be16efcb50cb8fbda38d7b 5764 sound optional 
mumble_1.2.18-1+deb9u1_source.buildinfo

-BEGIN PGP SIGNATURE-

iQIzBAEBCgAdFiEEe1KzyGmRW/4DhtV6ieLKD9m6RHAFAlx9urUACgkQieLKD9m6
RHB+Lg//Yng4MCx2eZFFd40vhzDXfnsmNAk+BA1hMEomRDXTChEP1Q10cEGfxEgQ
X1TsS04mEpD+4hSg4Yzb/8qNXldcBISs72drKeacACc0pY/KpFqgymUKCdaH14RO
GvTpdawLAjjFH3o0veWcEo1aw6ZCkGUKjP2aRV4IoPY/ZLpQJRSYAZ4oBuv+rIbn
TDcJvwEo4Gk0lYmeNAevVaWigRl7Yq9u2xMksJMw/g6ZsJYdrejJY+ZPUbGW/1rT
gKO1pXgrihQUfBvx0AX1XTcVf3Vyc4UcJCAEJrqae+emUmktX/YWgNUxLLvTME0j
fpV56XvY8c73+y65NgR6D0bktvDznJSOlhJROfzKy12QVVY9NcuCoturwzP6Z/T1
VwL+nz/DWDDX/0v0MVoLSx4w61KR6PSHug2Lcj8o4xFFN9uSrmAfL0JBodceN+pB
3OpsNiEb3XYHbPmJW5XrHh0IVMbPIpSuxiwrFc4lu93DHwc4bSHaFNl5czZOIUMw
FcSZsrodwqgTI6BEtPoCggtTKN1t5XOzURFpIF/OwOFgE5So434YmOvj47RZAvk7
1wfnDdNStIDeESpU0OWE/02BzaOgggPdmFvcEAUfduntMwIbKDZY2QDNbLEktPfc
PnOZsmc9CogKBrOZbA55ONU2jYI1swLY6ULDN6NGgPbT0L2rHso=
=XDDp
-END PGP SIGNATURE-



Accepted openssh 1:7.4p1-10+deb9u6 (source) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Salvatore Bonaccorso
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Fri, 01 Mar 2019 17:19:28 +0100
Source: openssh
Architecture: source
Version: 1:7.4p1-10+deb9u6
Distribution: stretch-security
Urgency: high
Maintainer: Debian OpenSSH Maintainers 
Changed-By: Salvatore Bonaccorso 
Closes: 923486
Changes:
 openssh (1:7.4p1-10+deb9u6) stretch-security; urgency=high
 .
   * Non-maintainer upload by the Security Team.
   * Apply upstream patch to make scp handle shell-style brace expansions
 when checking that filenames sent by the server match what the client
 requested (closes: #923486).
Checksums-Sha1: 
 69bbef5108f86cad3dd4086c3393832633d97b7f 3079 openssh_7.4p1-10+deb9u6.dsc
 771c24434cb69527dc463b4d303ceecd86a9a7e5 170724 
openssh_7.4p1-10+deb9u6.debian.tar.xz
Checksums-Sha256: 
 fa095ccdb143684092f0ca9671d46cd9587872324846e20ad6b022704557c403 3079 
openssh_7.4p1-10+deb9u6.dsc
 e5b5fb4bbcb11134d9c666e6763d8a2b0a097efe389013447bddcb39a261bc94 170724 
openssh_7.4p1-10+deb9u6.debian.tar.xz
Files: 
 3cdeb02effad9e1cd5298376fb796d19 3079 net standard openssh_7.4p1-10+deb9u6.dsc
 a32ca694f98c8104a7e853ae096ac3a3 170724 net standard 
openssh_7.4p1-10+deb9u6.debian.tar.xz

-BEGIN PGP SIGNATURE-

iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAlx5Xy9fFIAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2
NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk
ZWJpYW4ub3JnAAoJEAVMuPMTQ89E00IP/RiHkO7EypiOyebN+R4hUh9nv40QjFLX
N1UmTQiQ0XmRTZEpsaaHEGA+47BTTo11UpAZQkmdtrTJ7kBLHwGcWkIYWnEe62AO
7E55DCx/V9JjbxGbdgoDb0gB2IYPYix8UH1J8/6yuz/xJ1r5apnui0YLuWzOCUGh
IZnPCyfdHgmwCY4N8HWMFdhwYR4WSFjn0vQeOxjfZA5UY0b4B9KdUgJySPqain+y
yNEWhTtRiH4tbQFDKiCwNOYXQTk1fFFG5jxPjPcFZ76bbo7VyV3N8TuDzDPZOFIQ
k7fijvTK9JkpuN9oLfG9wlzumJ/xd795mLRnemkje5WLNAmZbAHlnVFuXhFSMnvD
Ir+Hpn1k8yR5qt+tq31RvBzMJas8zalwdLNoWKCE/ax6chHF6w6ZJFmXMHfg751G
p2lXbMUb5uDej14yjLN2rj/CQbdt004hit3EhrIr0d/hMRPzO+VBn6rtOcR6XP5U
qf71qKvVyvHuGmzO4XXUye31p36Zg6HHerLyLafeipQkJZtMC9H/hvtAxcgyzTjT
2HoAUnfMWdUts/Opt1UoMLqyWSvif2GbaRrl4m8pO21PY26GqB3tnT5PjFpLvPJk
74NuC7/z9dQUxt5nj7BUksSe4xCgdUucMSJsYRTY33t8GnuY3CTcDHYTggvuahLI
WHmGV7sO/yeo
=8TYQ
-END PGP SIGNATURE-



Accepted ldb 2:1.1.27-1+deb9u1 (source amd64) into proposed-updates->stable-new, proposed-updates

2019-03-07 Thread Mathieu Parent
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Tue, 26 Feb 2019 18:30:09 +0100
Source: ldb
Binary: libldb1 ldb-tools libldb-dev python-ldb python-ldb-dev
Architecture: source amd64
Version: 2:1.1.27-1+deb9u1
Distribution: stretch-security
Urgency: high
Maintainer: Debian Samba Maintainers 
Changed-By: Mathieu Parent 
Description:
 ldb-tools  - LDAP-like embedded database - tools
 libldb-dev - LDAP-like embedded database - development files
 libldb1- LDAP-like embedded database - shared library
 python-ldb - Python bindings for LDB
 python-ldb-dev - LDB Python bindings - development files
Changes:
 ldb (2:1.1.27-1+deb9u1) stretch-security; urgency=high
 .
   * Fixes CVE-2019-3824: "Out of bound read in ldb_wildcard_compare"
 - Add CVE-2019-3824-master-v4-5-02.patch from upstream's bug 13773
 - Update path in CVE-2019-3824-master-v4-5-02.patch
Checksums-Sha1:
 0622f10f9c024b2f1786f153c6cb3602f53568a6 2481 ldb_1.1.27-1+deb9u1.dsc
 7334d6ac8a199b4d3a21f76c2352f7564f229378 1270356 ldb_1.1.27.orig.tar.gz
 773cd0ec8b645877fed635d0e218ef761aad9f22 20328 
ldb_1.1.27-1+deb9u1.debian.tar.xz
 9f9bfd232493d945485383f205a399310459ab3d 62816 
ldb-tools-dbgsym_1.1.27-1+deb9u1_amd64.deb
 dddb3c1add65593416f228e04813ea1583a79f52 33388 
ldb-tools_1.1.27-1+deb9u1_amd64.deb
 4d8e108ba6d416fb7b2d945135cfb1e8c2fb103e 9562 
ldb_1.1.27-1+deb9u1_amd64.buildinfo
 63315979b182d55353c50a4198c515b6121f7331 90210 
libldb-dev_1.1.27-1+deb9u1_amd64.deb
 046a7265eda3bf1dcecae593bf13a743a7b0b8ce 309970 
libldb1-dbgsym_1.1.27-1+deb9u1_amd64.deb
 90214b9a7baec7bb2fb68d5ce9b493ad83004ae4 113252 
libldb1_1.1.27-1+deb9u1_amd64.deb
 ff4fadeab19b4f8ec9f9448ce7eb2e2938ad40d8 66326 
python-ldb-dbgsym_1.1.27-1+deb9u1_amd64.deb
 8d2050692d7eaa9cab034bd5cebcdabf57aa96af 8772 
python-ldb-dev_1.1.27-1+deb9u1_amd64.deb
 2fb19bb460dde42d3c23df29fed42f4e02e01ba7 34800 
python-ldb_1.1.27-1+deb9u1_amd64.deb
Checksums-Sha256:
 fc2351d4594372506ded6c622c594a106ba26bf09c0293c520c287ce2c06d439 2481 
ldb_1.1.27-1+deb9u1.dsc
 cdb8269cba09006ddf3766eb7721192b52ae3fdc8a6b95f4318b6b740b9d35ac 1270356 
ldb_1.1.27.orig.tar.gz
 a25c1e0a1fcf9340c721b7ba2bc783c651a9a3efda0f81180b25d1c3aeea3d23 20328 
ldb_1.1.27-1+deb9u1.debian.tar.xz
 62fb9f87cbd333ef24b6c1e64ee1e8e5c503ff28e6b1260567490032d43ac89e 62816 
ldb-tools-dbgsym_1.1.27-1+deb9u1_amd64.deb
 d4dfbd0ae4d75f3ab9085c51878e2818f983b295d478b4b3202bc47ca674d7ab 33388 
ldb-tools_1.1.27-1+deb9u1_amd64.deb
 a4b047954e5657e23d79db518005b96d3db5bd6511e5a0b2d39b557e71095c44 9562 
ldb_1.1.27-1+deb9u1_amd64.buildinfo
 34e299c86f7d723ede77b62cb0aaeb30962c62c43f92607393fe4de43d434c9a 90210 
libldb-dev_1.1.27-1+deb9u1_amd64.deb
 b32669ac25707c2745624eb16fc6e9bfec36a323f837922170f224d88ac62e77 309970 
libldb1-dbgsym_1.1.27-1+deb9u1_amd64.deb
 bc3f2d252627a0165aa4cdb33e84942de65031f32b028a5e8a8002756bcc2c1a 113252 
libldb1_1.1.27-1+deb9u1_amd64.deb
 626c46bd4d30c372a98c59fd990e906a81a9a75a12215a7b80c18bfc2228d63c 66326 
python-ldb-dbgsym_1.1.27-1+deb9u1_amd64.deb
 cc0c4e213c7cc326e580ffc366d9e6300ea8417fb223ff3a5e872f41213d8256 8772 
python-ldb-dev_1.1.27-1+deb9u1_amd64.deb
 e9d8ea9cb63f1f7bd0b4e098e65663d69a03b41eab47017adda8b6cbb27429e3 34800 
python-ldb_1.1.27-1+deb9u1_amd64.deb
Files:
 599ac4cb046b18b9333970d81c516300 2481 devel optional ldb_1.1.27-1+deb9u1.dsc
 50a194dea128d062cf4b44c59130219b 1270356 devel optional ldb_1.1.27.orig.tar.gz
 7743530a5e864bbe203a50a478fe14c2 20328 devel optional 
ldb_1.1.27-1+deb9u1.debian.tar.xz
 94f8a15bbe9a4ae991cdbf3e6d81a153 62816 debug extra 
ldb-tools-dbgsym_1.1.27-1+deb9u1_amd64.deb
 9e05fd65c8740a997ef4982df326d715 33388 utils optional 
ldb-tools_1.1.27-1+deb9u1_amd64.deb
 4cc1e474585dbb3bab645d344489239f 9562 devel optional 
ldb_1.1.27-1+deb9u1_amd64.buildinfo
 9176d866108267360b6d3b43c7152b38 90210 libdevel optional 
libldb-dev_1.1.27-1+deb9u1_amd64.deb
 43255d13de7c6f28444881d04cddb0ef 309970 debug extra 
libldb1-dbgsym_1.1.27-1+deb9u1_amd64.deb
 8ceed3c2532c67f608c91c2ec45efb31 113252 libs optional 
libldb1_1.1.27-1+deb9u1_amd64.deb
 d3a88d9d8309609ac4e4a56e055fcb79 66326 debug extra 
python-ldb-dbgsym_1.1.27-1+deb9u1_amd64.deb
 113a4838962f7334d15e49ee0946c3d6 8772 libdevel optional 
python-ldb-dev_1.1.27-1+deb9u1_amd64.deb
 9768a741599c65c7c771e0794b53f144 34800 python optional 
python-ldb_1.1.27-1+deb9u1_amd64.deb

-BEGIN PGP SIGNATURE-
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