-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 08 Jul 2025 10:27:28 +0300 Source: erlang Architecture: source Version: 1:27.3.4.1+dfsg-1 Distribution: unstable Urgency: medium Maintainer: Debian Erlang Packagers <pkg-erlang-de...@lists.alioth.debian.org> Changed-By: Sergei Golovan <sgolo...@debian.org> Closes: 1107939 Changes: erlang (1:27.3.4.1+dfsg-1) unstable; urgency=medium . * New upstream bugfix release. * Fix CVE-2025-4748 in erlang-stdlib application, where unzipping a ZIP archive could overwrite files using absolute paths because of insufficient path sanitizing (closes: #1107939). Checksums-Sha1: f06d43bb72fadbee37da3fbb0d39bc79f087c763 4910 erlang_27.3.4.1+dfsg-1.dsc c5e31111a88a6175bcdbb333ef2fdf172500a6ce 47613664 erlang_27.3.4.1+dfsg.orig.tar.xz 7b5b2e6e9a38cc898734f38117e4ca6c4d4d5b1a 57580 erlang_27.3.4.1+dfsg-1.debian.tar.xz 17fcedfe22a238ba654f7e1fba6f1bb5f3fff687 30791 erlang_27.3.4.1+dfsg-1_amd64.buildinfo Checksums-Sha256: aa5ba0733c9842ff69147b4ed3706b8d6c92932a7bf3d3f040421ccb4114951a 4910 erlang_27.3.4.1+dfsg-1.dsc 0834643ef1e17886d5e334a39527d8429bcf50613b86d59d4757466f32984b7e 47613664 erlang_27.3.4.1+dfsg.orig.tar.xz 323037a5891893b70df4eabd1ac9f3e2d76f1465b54be40851d9374665eadee0 57580 erlang_27.3.4.1+dfsg-1.debian.tar.xz 1463585bdd14ee3b82a7c25ddd85010de53da068d663f94ff439705fdedcb2b0 30791 erlang_27.3.4.1+dfsg-1_amd64.buildinfo Files: 75110b5f912e8613ea54b1169488e7f2 4910 interpreters optional erlang_27.3.4.1+dfsg-1.dsc 8e316a9e63f5c4167ba34596b146ab35 47613664 interpreters optional erlang_27.3.4.1+dfsg.orig.tar.xz e739685166d0c3e59e4d2041c57935b2 57580 interpreters optional erlang_27.3.4.1+dfsg-1.debian.tar.xz 681a8e85bbd39b7011c5dd34577faeef 30791 interpreters optional erlang_27.3.4.1+dfsg-1_amd64.buildinfo
-----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE/SYPsyDB+ShSnvc4Tyrk60tj54cFAmhsybwACgkQTyrk60tj 54dVDg//UpMaVicoEKLU2N/71D3YXjhCUAud2wVyTUcjWwsAkTs4917ypzQ1+QvF dss0T0ZhNHxDecZZibD7PFuW76QF8Cfs30OA/I42kHrA6BynziRkVIMJkmy2nQ/9 ZJi5duXnYSr5p3YblXeQFt8zt/m9rx7kEA56K2m7tDF5kJzCfIfPLpmUF9x51858 76ztEoMNCN11Tl2Rm87kbjQGBie3JPSookBE8q+OiYfuJc70THusdAuRAvKJvGUa 6EXaEw45KyTT2V86XgwFhE7SGliAETJLX41DDBDIGm2pLzf/Kq1Ur2KAcnBUYL/N d3Sm47Fq/77j0AHIfg5Dr36NfmlShvVJlFQsA8dyNBIGX2DlnXrvguukRbAWsvUg hzkNJX8e/y2AaGJQAq19vzBfgCSyLu/P3dFV2I3n/V6NjSS9WBMJpmhjMQkXf0A3 ap3wYGIrZ0vFaLsmqRXc6Zc2B2S2NJY0BMIWBVzJoFiTtEuWihlZ+8YcSFzPw53R SlCujcBCpDe/23NIq/zblghIglcDrfJPiCTgIU5YHa1T0puPL0j8wL6XJpiOkgIj Sj8eSfSs2oRVKmVwsim2vb7bNGqRoHosGbYEJ6W+7Ke6XCO2MyntGtBjN+EWZT9w T/z2QLrrc2dV2x3URGCaK5ul9vwFPJt/2SITbBvxMBUT24RYbyM= =EhpQ -----END PGP SIGNATURE-----
pgpDE0f8TsSFp.pgp
Description: PGP signature