Accepted mosquitto 1.3.4-2+deb8u4 (source amd64 all) into oldoldstable

2019-10-26 Thread Thorsten Alteholz
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Thu, 24 Oct 2019 19:03:02 +0200
Source: mosquitto
Binary: mosquitto libmosquitto1 libmosquitto-dev libmosquittopp1 
libmosquittopp-dev mosquitto-clients python-mosquitto python3-mosquitto 
mosquitto-dbg
Architecture: source amd64 all
Version: 1.3.4-2+deb8u4
Distribution: jessie-security
Urgency: high
Maintainer: Roger A. Light 
Changed-By: Thorsten Alteholz 
Description:
 libmosquitto-dev - MQTT version 3.1 client library, development files
 libmosquitto1 - MQTT version 3.1 client library
 libmosquittopp-dev - MQTT version 3.1 client C++ library, development files
 libmosquittopp1 - MQTT version 3.1 client C++ library
 mosquitto  - MQTT version 3.1/3.1.1 compatible message broker
 mosquitto-clients - Mosquitto command line MQTT clients
 mosquitto-dbg - debugging symbols for mosquitto binaries
 python-mosquitto - MQTT version 3.1 Python client library
 python3-mosquitto - MQTT version 3.1 Python 3 client library
Changes:
 mosquitto (1.3.4-2+deb8u4) jessie-security; urgency=high
 .
   * Non-maintainer upload by the LTS Team.
   * CVE-2019-11779
 Fix for processing a crafted SUBSCRIBE packet containing a topic
 that consists of approximately 65400 or more '/' characters.
 (setting TOPIC_HIERARCHY_LIMIT to 200)
   * CVE-2018-12550
 An ACL file with no statements was treated as having a default
 allow policy. The new behaviour of an empty ACL file is a default
 policy of access denied.
 (this is in compliance with all newer releases)
   * CVE-2018-12551
 Malformed authentication data in the password file could allow
 clients to circumvent authentication and get access to the broker.
   * CVE-2017-7655
 A Null dereference vulnerability in the Mosquitto library could
 lead to crashes for those applications using the library.
Checksums-Sha1:
 8e615eec8d678a2370dcde12dd5b1c1f844ed48f 2634 mosquitto_1.3.4-2+deb8u4.dsc
 b818672cc0db723995d7c3201ef6962931dd891a 351761 mosquitto_1.3.4.orig.tar.gz
 b8f7db14c91d4a08db75eac121b9ecea2155e97a 30036 
mosquitto_1.3.4-2+deb8u4.debian.tar.xz
 b006bb4657cd41f9007bdb46ba685f8141bff45f 113378 
mosquitto_1.3.4-2+deb8u4_amd64.deb
 1bcd129f14928dfd50d2dcfa3210631b8644972c 42704 
libmosquitto1_1.3.4-2+deb8u4_amd64.deb
 b4320c7ae495c6841020b0097d75d00fa6d0e24e 33222 
libmosquitto-dev_1.3.4-2+deb8u4_all.deb
 d9a84740766d97e56cd64e03c4d30903a7a4f4a6 25594 
libmosquittopp1_1.3.4-2+deb8u4_amd64.deb
 aefe54460863fb44decb79971209e27d743d21c5 21878 
libmosquittopp-dev_1.3.4-2+deb8u4_all.deb
 934c7e52be3f5d10f7a8b4f1eab1d51ad5ec5337 41812 
mosquitto-clients_1.3.4-2+deb8u4_amd64.deb
 a0743dbc5c549cdd7cc830487f4a707dc6d130c2 35438 
python-mosquitto_1.3.4-2+deb8u4_all.deb
 bdfca72ee3f84f802c8835b2cf7ccd711e2fab91 35502 
python3-mosquitto_1.3.4-2+deb8u4_all.deb
 0bb42d9088ef233609f15c0ab604fbe3d80eafe0 545830 
mosquitto-dbg_1.3.4-2+deb8u4_amd64.deb
Checksums-Sha256:
 4c4299e8b8b59d8499eb584da46b0073c0f5591c01510461e34bb7c4deee4998 2634 
mosquitto_1.3.4-2+deb8u4.dsc
 0a3982d6b875a458909c8828731da04772035468700fa7eb2f0885f4bd6d0dbc 351761 
mosquitto_1.3.4.orig.tar.gz
 6b5daf902d1534d27aacc91bd8e2da1691d21b5354f2b889ace625bfe989ea87 30036 
mosquitto_1.3.4-2+deb8u4.debian.tar.xz
 b70042cfe00bd54b719900ba282b06b8cff98dddea95c410e04ee3460e7e472e 113378 
mosquitto_1.3.4-2+deb8u4_amd64.deb
 6244948b0952dd86c2d9dad0b3b6ed115033d632376165141d6f3ebea4aa79a5 42704 
libmosquitto1_1.3.4-2+deb8u4_amd64.deb
 6f8673fdc05ab96328f4ee681ec22df49996ef5ca0cc8251b57c718997ba668b 33222 
libmosquitto-dev_1.3.4-2+deb8u4_all.deb
 deb13359474cad4fa376bc80951f2c5592e2f6aac8647cc1155fb376d8245264 25594 
libmosquittopp1_1.3.4-2+deb8u4_amd64.deb
 40aa0d15a0529b516dcb333a9854879c2fdb23ee07929ed4215d8115bcd8a0ce 21878 
libmosquittopp-dev_1.3.4-2+deb8u4_all.deb
 704a9ad50e61be8f256af884ee56ede71a8e5c9fba779ed480203658f9c4e4c2 41812 
mosquitto-clients_1.3.4-2+deb8u4_amd64.deb
 b04316c83410a90251beef879c068a345338dc7fb55e0286cfc73e1958ca8af9 35438 
python-mosquitto_1.3.4-2+deb8u4_all.deb
 f108ebf66a2f4dce9e7780e447481c4210828ab772a7b0ba317e20faa695fc33 35502 
python3-mosquitto_1.3.4-2+deb8u4_all.deb
 b31b064fb757582c5360ac34d83dd82b9cc41ed162dd67a639889267e01e5d21 545830 
mosquitto-dbg_1.3.4-2+deb8u4_amd64.deb
Files:
 09cc4ba6220138f8c3c893e9527d5ade 2634 net optional mosquitto_1.3.4-2+deb8u4.dsc
 9d729849efd74c6e3eee17a4a002e1e9 351761 net optional 
mosquitto_1.3.4.orig.tar.gz
 e27b28f376fc8b7828fa91f71508b40a 30036 net optional 
mosquitto_1.3.4-2+deb8u4.debian.tar.xz
 922fab2d1c6c9ab1b6040aec808f63c4 113378 net optional 
mosquitto_1.3.4-2+deb8u4_amd64.deb
 a3d914c28c958c6822751bf0c83d944f 42704 libs optional 
libmosquitto1_1.3.4-2+deb8u4_amd64.deb
 6e9c6685ea2a5e711dfba59ad3a24335 33222 libdevel optional 
libmosquitto-dev_1.3.4-2+deb8u4_all.deb
 3e006cd74eb92735f1ce45a5a392ab0a 25594 libs optional 
libmosquittopp1_1.3.4-2+deb8u4_amd64.deb
 c98ddab6a372b474048f4936e59f859a 21878 libdevel optional 

Accepted php5 5.6.40+dfsg-0+deb8u7 (source all amd64) into oldoldstable

2019-10-26 Thread Sylvain Beucler
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA512

Format: 1.8
Date: Sat, 26 Oct 2019 15:27:12 +0200
Source: php5
Binary: php5 php5-common libapache2-mod-php5 libapache2-mod-php5filter php5-cgi 
php5-cli php5-phpdbg php5-fpm libphp5-embed php5-dev php5-dbg php-pear 
php5-curl php5-enchant php5-gd php5-gmp php5-imap php5-interbase php5-intl 
php5-ldap php5-mcrypt php5-readline php5-mysql php5-mysqlnd php5-odbc 
php5-pgsql php5-pspell php5-recode php5-snmp php5-sqlite php5-sybase php5-tidy 
php5-xmlrpc php5-xsl
Architecture: source all amd64
Version: 5.6.40+dfsg-0+deb8u7
Distribution: jessie-security
Urgency: high
Maintainer: Debian PHP Maintainers 
Changed-By: Sylvain Beucler 
Description:
 libapache2-mod-php5 - server-side, HTML-embedded scripting language (Apache 2 
module)
 libapache2-mod-php5filter - server-side, HTML-embedded scripting language 
(apache 2 filter mo
 libphp5-embed - HTML-embedded scripting language (Embedded SAPI library)
 php-pear   - PEAR - PHP Extension and Application Repository
 php5   - server-side, HTML-embedded scripting language (metapackage)
 php5-cgi   - server-side, HTML-embedded scripting language (CGI binary)
 php5-cli   - command-line interpreter for the php5 scripting language
 php5-common - Common files for packages built from the php5 source
 php5-curl  - CURL module for php5
 php5-dbg   - Debug symbols for PHP5
 php5-dev   - Files for PHP5 module development
 php5-enchant - Enchant module for php5
 php5-fpm   - server-side, HTML-embedded scripting language (FPM-CGI binary)
 php5-gd- GD module for php5
 php5-gmp   - GMP module for php5
 php5-imap  - IMAP module for php5
 php5-interbase - interbase/firebird module for php5
 php5-intl  - internationalisation module for php5
 php5-ldap  - LDAP module for php5
 php5-mcrypt - MCrypt module for php5
 php5-mysql - MySQL module for php5
 php5-mysqlnd - MySQL module for php5 (Native Driver)
 php5-odbc  - ODBC module for php5
 php5-pgsql - PostgreSQL module for php5
 php5-phpdbg - server-side, HTML-embedded scripting language (PHPDBG binary)
 php5-pspell - pspell module for php5
 php5-readline - Readline module for php5
 php5-recode - recode module for php5
 php5-snmp  - SNMP module for php5
 php5-sqlite - SQLite module for php5
 php5-sybase - Sybase / MS SQL Server module for php5
 php5-tidy  - tidy module for php5
 php5-xmlrpc - XML-RPC module for php5
 php5-xsl   - XSL module for php5
Changes:
 php5 (5.6.40+dfsg-0+deb8u7) jessie-security; urgency=high
 .
   * Non-maintainer upload by the LTS Security Team.
   * CVE-2019-11043: env_path_info underflow in fpm_main.c can lead to RCE
Checksums-Sha1:
 b0fc572e43cb117eaeafc58f903a72023248db8b 4723 php5_5.6.40+dfsg-0+deb8u7.dsc
 25400d8e896c85895979ef7e1f6aa1deea73d388 254612 
php5_5.6.40+dfsg-0+deb8u7.debian.tar.xz
 62191883b5d89182c328bb2d5b56161e5b4d6c8c 1310 php5_5.6.40+dfsg-0+deb8u7_all.deb
 d0a9240defcacc75afd415980196b1cbd41cf593 268908 
php-pear_5.6.40+dfsg-0+deb8u7_all.deb
 fa1ca54b9e56262994b4e808449d99e2c6dd4993 745096 
php5-common_5.6.40+dfsg-0+deb8u7_amd64.deb
 9cb7441bc12de6ef7a9c72bc01b879bb341fb64b 2231684 
libapache2-mod-php5_5.6.40+dfsg-0+deb8u7_amd64.deb
 e7e8167495254920be8d3ded83067a3fa7394891 2225842 
libapache2-mod-php5filter_5.6.40+dfsg-0+deb8u7_amd64.deb
 8faa3f7074726e74efee85a48a7384cf4922e488 4318352 
php5-cgi_5.6.40+dfsg-0+deb8u7_amd64.deb
 267132acd9a0acb9fdaf8a5280ea96aea28e7476 2198650 
php5-cli_5.6.40+dfsg-0+deb8u7_amd64.deb
 2b3c9f4e1f53456fd2f3ebeee333950e0a00461f 2208878 
php5-phpdbg_5.6.40+dfsg-0+deb8u7_amd64.deb
 9eecb5ffc00b338576d14f62702ce47882169e38 2210396 
php5-fpm_5.6.40+dfsg-0+deb8u7_amd64.deb
 7dfaf4cb8fb6d80783044a1c50ee628c33cf4fcf 2224690 
libphp5-embed_5.6.40+dfsg-0+deb8u7_amd64.deb
 6c7cd0078cea69eee9dfd02d2149fa074a3bf93b 357988 
php5-dev_5.6.40+dfsg-0+deb8u7_amd64.deb
 6c0fcf33ad09bb8e958a005dbd83ab961cdb8aed 45520612 
php5-dbg_5.6.40+dfsg-0+deb8u7_amd64.deb
 434047e1873ba2d6c36437544be9be17145a4278 27988 
php5-curl_5.6.40+dfsg-0+deb8u7_amd64.deb
 b8782d3c7bde8275eb334ee17e33e64f429c52d6 9458 
php5-enchant_5.6.40+dfsg-0+deb8u7_amd64.deb
 fca0f29f9e155e577baae466320e6976c516b7c5 29222 
php5-gd_5.6.40+dfsg-0+deb8u7_amd64.deb
 174990be0927efdf7f4579ad09dee650e4487e17 21656 
php5-gmp_5.6.40+dfsg-0+deb8u7_amd64.deb
 da11b286f894dd39d21f8c77a9f16a2e0dff2925 31888 
php5-imap_5.6.40+dfsg-0+deb8u7_amd64.deb
 989868efbdc9c21c0017b50a9f8623d85e81b32b 42984 
php5-interbase_5.6.40+dfsg-0+deb8u7_amd64.deb
 f84a5fd299ed2fa96dff50ff227b3b9cc9118e18 112416 
php5-intl_5.6.40+dfsg-0+deb8u7_amd64.deb
 84b031eb435ad084a8b8e1cae174363851cb9d15 22470 
php5-ldap_5.6.40+dfsg-0+deb8u7_amd64.deb
 2c701f630e0eaa4d5cfd198df7e463572725116a 15720 
php5-mcrypt_5.6.40+dfsg-0+deb8u7_amd64.deb
 011d37c98d79273e6a4b558a744263a3257dcd65 12722 
php5-readline_5.6.40+dfsg-0+deb8u7_amd64.deb
 51b7d972627e31068110c7fa8cd7e5d5ceb8ee0b 65786 
php5-mysql_5.6.40+dfsg-0+deb8u7_amd64.deb
 11ca72fd165654b6f9ac3ebc151a878263131bde 141870