Accepted libav 6:11.12-1~deb8u8 (source all amd64) into oldoldstable
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Sat, 31 Aug 2019 17:36:55 +0200 Source: libav Binary: libav-tools libav-dbg libav-doc libavutil54 libavcodec56 libavdevice55 libavformat56 libavfilter5 libswscale3 libavutil-dev libavcodec-dev libavdevice-dev libavformat-dev libavfilter-dev libswscale-dev libavresample-dev libavresample2 libavcodec-extra-56 libavcodec-extra Architecture: source all amd64 Version: 6:11.12-1~deb8u8 Distribution: jessie-security Urgency: medium Maintainer: Debian Multimedia Maintainers Changed-By: Mike Gabriel Description: libav-dbg - Debug symbols for Libav related packages libav-doc - Documentation of the Libav API libav-tools - Multimedia player, encoder and transcoder libavcodec-dev - Development files for libavcodec libavcodec-extra - Libav codec library (additional codecs meta-package) libavcodec-extra-56 - Libav codec library (additional codecs) libavcodec56 - Libav codec library libavdevice-dev - Development files for libavdevice libavdevice55 - Libav device handling library libavfilter-dev - Development files for libavfilter libavfilter5 - Libav video filtering library libavformat-dev - Development files for libavformat libavformat56 - Libav file format library libavresample-dev - Development files for libavresample libavresample2 - Libav audio resampling library libavutil-dev - Development files for libavutil libavutil54 - Libav utility library libswscale-dev - Development files for libswscale libswscale3 - Libav video scaling library Changes: libav (6:11.12-1~deb8u8) jessie-security; urgency=medium . * CVE-2019-14442: avformat/mpc8: fix hang with fuzzed file. * CVE-2018-5766: lavc/avpacket: Fix undefined behaviour, do not pass a null pointer to memcpy(). * CVE-2019-14372: wvdec: check for eof in wv_read_block_header(). * CVE-2017-9987: avcodec/mpegvideo_motion: Fix off by 1 error in MV bounds checking. * CVE-2018-11102: - mov_probe: fix integer overflows. - mov.c: Check for stsd + m1s tag indicating MOV-wrapped MPEG-PS, and force continued probing if found. Checksums-Sha1: 9c8f859f2f2f8fc39a7cab266208afc5bd0176f8 4023 libav_11.12-1~deb8u8.dsc 8afee23ed95809831208bb721228c8ad04bd2a8e 77184 libav_11.12-1~deb8u8.debian.tar.xz eaf4df3c04e673f7dc9cb3c2a6b63c3982debc30 18451734 libav-doc_11.12-1~deb8u8_all.deb e345230e328e1122dab4f8ef180b3058c01f516e 67106 libavcodec-extra_11.12-1~deb8u8_all.deb 5a2eadbea6305746dc4415b856506940133d7a7d 474584 libav-tools_11.12-1~deb8u8_amd64.deb ef814b94a670a78ff2477dc6c1843caa88c1925f 21598212 libav-dbg_11.12-1~deb8u8_amd64.deb 51427e8305dd9d72b90ebbbc51d618e6609955de 132016 libavutil54_11.12-1~deb8u8_amd64.deb ce65a2f52fcc06c015be13dcbf97e536f3ca0d49 3110478 libavcodec56_11.12-1~deb8u8_amd64.deb 9724c21244e137010bfdd742d63af88e71d557f6 91962 libavdevice55_11.12-1~deb8u8_amd64.deb a2aba929a2bbcf8c73be80ef79270ad3e037bc6d 587038 libavformat56_11.12-1~deb8u8_amd64.deb c816f6352c9b8f4e264f80d0c5b70b1b5fa2bf1b 173194 libavfilter5_11.12-1~deb8u8_amd64.deb ecb162768ad7efddb67d20626f370c2a353bbb9c 145562 libswscale3_11.12-1~deb8u8_amd64.deb 78f81e17a85bf5d388416d852aae0aca0296b24f 194290 libavutil-dev_11.12-1~deb8u8_amd64.deb 371e350e49ea159f3294e80d292ddac57ab4a9fb 3434346 libavcodec-dev_11.12-1~deb8u8_amd64.deb 6d1071aaebce3cf83837c47f586b61fbb4063382 95012 libavdevice-dev_11.12-1~deb8u8_amd64.deb aa6cf5149a8ab531dfc3178e72a2ae0b25ed0c00 692936 libavformat-dev_11.12-1~deb8u8_amd64.deb 15043384cabec3b1796e96d3b88c24a07f6c7d2a 204424 libavfilter-dev_11.12-1~deb8u8_amd64.deb e140fb2e8a403a056d54353bab4066018db5ba7f 158448 libswscale-dev_11.12-1~deb8u8_amd64.deb 7ff8450b4bc920bb49241b2e680840dd0399b78e 113466 libavresample-dev_11.12-1~deb8u8_amd64.deb 3bf7cb0507b6432290e25f1be3c543fbb57aa9b6 104476 libavresample2_11.12-1~deb8u8_amd64.deb 31e835a22497bb5d73f9196c89b5d42bb90f0a5a 3114510 libavcodec-extra-56_11.12-1~deb8u8_amd64.deb Checksums-Sha256: 9e73600e703bd583b6591235e0d54cfa5d3d55cc67d8db8a2f484691282e142a 4023 libav_11.12-1~deb8u8.dsc 0af563999abf4d91b61a36a823d7114c733fa535de100d665bb8a5b717f1c40b 77184 libav_11.12-1~deb8u8.debian.tar.xz 73a9b843042f0271ffd915a20c71280cfd52f7c4a8f3a7bafd731bdab1c992c8 18451734 libav-doc_11.12-1~deb8u8_all.deb d119d4bd378f8dd6eb09dc561e98bcdd1f00dd203369fe8eafae838358ab43e3 67106 libavcodec-extra_11.12-1~deb8u8_all.deb 2e338d4f1f67cb8a043874e7783464c9463d9688aec88e85f86e43958289598f 474584 libav-tools_11.12-1~deb8u8_amd64.deb c4dc0f45e5720649cf4107c9f66858501d4c3d367f39703e048c421a7582efb0 21598212 libav-dbg_11.12-1~deb8u8_amd64.deb b99a1c2035860abc852c950635d2028a447b97642123620dd34906a5ed3837ab 132016 libavutil54_11.12-1~deb8u8_amd64.deb acfc4b48f4681329b039913863c9dc2ef8a13d122f41eef318ee3cae882c6fe8 3110478 libavcodec56_11.12-1~deb8u8_amd64.deb ee0c0f9e6568972c3b7b5d5f22799ca0e09ed562ac7a8ac9e575b8a2fdb0a2bf 91962 libavdevice55_11.12-1~deb8u8_amd64.deb
Accepted python2.7 2.7.9-2+deb8u4 (source all amd64) into oldoldstable
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Format: 1.8 Date: Fri, 30 Aug 2019 19:10:02 +0200 Source: python2.7 Binary: python2.7 libpython2.7-stdlib python2.7-minimal libpython2.7-minimal libpython2.7 python2.7-examples python2.7-dev libpython2.7-dev libpython2.7-testsuite idle-python2.7 python2.7-doc python2.7-dbg libpython2.7-dbg Architecture: source all amd64 Version: 2.7.9-2+deb8u4 Distribution: jessie-security Urgency: high Maintainer: Matthias Klose Changed-By: Thorsten Alteholz Description: idle-python2.7 - IDE for Python (v2.7) using Tkinter libpython2.7 - Shared Python runtime library (version 2.7) libpython2.7-dbg - Debug Build of the Python Interpreter (version 2.7) libpython2.7-dev - Header files and a static library for Python (v2.7) libpython2.7-minimal - Minimal subset of the Python language (version 2.7) libpython2.7-stdlib - Interactive high-level object-oriented language (standard library libpython2.7-testsuite - Testsuite for the Python standard library (v2.7) python2.7 - Interactive high-level object-oriented language (version 2.7) python2.7-dbg - Debug Build of the Python Interpreter (version 2.7) python2.7-dev - Header files and a static library for Python (v2.7) python2.7-doc - Documentation for the high-level object-oriented language Python python2.7-examples - Examples for the Python language (v2.7) python2.7-minimal - Minimal subset of the Python language (version 2.7) Changes: python2.7 (2.7.9-2+deb8u4) jessie-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2018-20852 Cookie handling could be tricked to steal cookies for other domains. Checksums-Sha1: 1568fe2209581ae764d014662a168af83f90f387 3444 python2.7_2.7.9-2+deb8u4.dsc 2eca098bdad3b94f94188f5f4cf78a3345444537 15148821 python2.7_2.7.9.orig.tar.gz 98cc32fedf3882eea549cad0fdc4f1122cc04528 282256 python2.7_2.7.9-2+deb8u4.diff.gz 857b2cc00aba7c0a7f9d357486a056f9b65847ba 594810 python2.7-examples_2.7.9-2+deb8u4_all.deb 27a1973556f3916e78f4ab6162b2a519387b17d6 2696590 libpython2.7-testsuite_2.7.9-2+deb8u4_all.deb d7240e1866da1a28ce53579251323f50f9ba2ff2 305310 idle-python2.7_2.7.9-2+deb8u4_all.deb 0d58a580dd93cf652171e66d6867c15548323262 4208206 python2.7-doc_2.7.9-2+deb8u4_all.deb 5a38b01ed80c31bb580b6a144809b1a7a38c3481 251542 python2.7_2.7.9-2+deb8u4_amd64.deb cdd15fe7cd5b4491fd689409d548838c82a6126d 1849426 libpython2.7-stdlib_2.7.9-2+deb8u4_amd64.deb 582a66821ad478fd38cb8b07c4980a980ab2c450 1399028 python2.7-minimal_2.7.9-2+deb8u4_amd64.deb bda8a96422fd4be8df95d22ee962e7403b543d44 378358 libpython2.7-minimal_2.7.9-2+deb8u4_amd64.deb bedc15157395c4a52f4fca95cd28a209f5efdf5b 1079970 libpython2.7_2.7.9-2+deb8u4_amd64.deb f67091c823a6ca90efbb482eaa85a6944af1bb4d 297932 python2.7-dev_2.7.9-2+deb8u4_amd64.deb 83fe7120c967d54d98ef5d1dd70a835935562d90 18581950 libpython2.7-dev_2.7.9-2+deb8u4_amd64.deb 75d0e44f6ff922ed4ed664adfa93eb9972af6e96 6276622 python2.7-dbg_2.7.9-2+deb8u4_amd64.deb 31fe18d904d05539cda21a6539395ac31e8e31e1 4278320 libpython2.7-dbg_2.7.9-2+deb8u4_amd64.deb Checksums-Sha256: da13c38d3d92c05c824953980c358f3b3c8733eefa1b20c592e33ed9ba373afd 3444 python2.7_2.7.9-2+deb8u4.dsc 46454dc4cb20e1f9b85aef63985890fa7e247f5941991761afd97d68e69b1901 15148821 python2.7_2.7.9.orig.tar.gz ad00dff397f0692ec44c57f0c8d15c080160b67f1c1938169b5362675841b47b 282256 python2.7_2.7.9-2+deb8u4.diff.gz 6a0c4d3f800fd6c522f8d4dc3554c98bdca363ca9b79056813593c768475997f 594810 python2.7-examples_2.7.9-2+deb8u4_all.deb d7f4265d267bd1cdc31b8a7047cffc254ed1ccf6b1fc0eb7028a5c9abe798960 2696590 libpython2.7-testsuite_2.7.9-2+deb8u4_all.deb 5b6835df31dfc49d835217eacb53e0c21ba7fa0151c9fec5b7fde4ea7d1890c4 305310 idle-python2.7_2.7.9-2+deb8u4_all.deb 26baf9af20a5fcfd92d1efbc78c022a44091899c63ad9e9a4a8e281412c2c55d 4208206 python2.7-doc_2.7.9-2+deb8u4_all.deb 1388542da44c1b90ce8003f9cf1611b67f4cefef3e40ca4f1243d6eef439bc1a 251542 python2.7_2.7.9-2+deb8u4_amd64.deb fb6beaa1d41ed10db379943a5ecf28ceff006a5784ad99f2cbc20872d7e35092 1849426 libpython2.7-stdlib_2.7.9-2+deb8u4_amd64.deb 3c32e4780f283d22f3c93f2e941af166e91bed2d4a8cca9d35c0cf3c9dfe1b20 1399028 python2.7-minimal_2.7.9-2+deb8u4_amd64.deb 7f8642cdb30dd00f3a48f1e0f5356de19192e0aed45f7c47f122de8d47643f91 378358 libpython2.7-minimal_2.7.9-2+deb8u4_amd64.deb 0d7ce6f96825055643bbfe6f6079cd86b9c88fb1243f261c338f1bb720ea1fb7 1079970 libpython2.7_2.7.9-2+deb8u4_amd64.deb 8f1eb8698fb897847040f12de6b257f5867453f9a5c64a02eefa124598103678 297932 python2.7-dev_2.7.9-2+deb8u4_amd64.deb 7fba2cf460618cb38d3113eb9a594e466cf65ef1faf353332d9a46168e00e345 18581950 libpython2.7-dev_2.7.9-2+deb8u4_amd64.deb aff267e0b8aaa4fb1ae4be35dd11997428befc34ccc0cfc4f95098743b6fa7ca 6276622 python2.7-dbg_2.7.9-2+deb8u4_amd64.deb 96b41bdfbe3935fe750dc867470f320e10aa0571986216396e5d067f5529c199 4278320 libpython2.7-dbg_2.7.9-2+deb8u4_amd64.deb Files: 874a767fa9bb322892e0b485393afc09 3444 python optional
Accepted gosa 2.7.4+reloaded2-1+deb8u5 (source all) into oldoldstable
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Format: 1.8 Date: Sat, 31 Aug 2019 13:37:45 +0200 Source: gosa Binary: gosa gosa-dev gosa-desktop gosa-schema gosa-help-en gosa-help-de gosa-help-fr gosa-help-nl gosa-plugin-connectivity gosa-plugin-dhcp gosa-plugin-dhcp-schema gosa-plugin-dns gosa-plugin-dns-schema gosa-plugin-fai gosa-plugin-fai-schema gosa-plugin-gofax gosa-plugin-gofon gosa-plugin-goto gosa-plugin-kolab gosa-plugin-kolab-schema gosa-plugin-ldapmanager gosa-plugin-mail gosa-plugin-mit-krb5 gosa-plugin-mit-krb5-schema gosa-plugin-nagios gosa-plugin-nagios-schema gosa-plugin-netatalk gosa-plugin-opengroupware gosa-plugin-openxchange gosa-plugin-openxchange-schema gosa-plugin-opsi gosa-plugin-phpgw gosa-plugin-phpgw-schema gosa-plugin-phpscheduleit gosa-plugin-phpscheduleit-schema gosa-plugin-pptp gosa-plugin-pptp-schema gosa-plugin-pureftpd gosa-plugin-pureftpd-schema gosa-plugin-rolemanagement gosa-plugin-rsyslog gosa-plugin-samba gosa-plugin-scalix gosa-plugin-squid gosa-plugin-ssh gosa-plugin-ssh-schema gosa-plugin-sudo gosa-plugin-sudo-schema gosa-plugin-systems gosa-plugin-uw-imap gosa-plugin-webdav Architecture: source all Version: 2.7.4+reloaded2-1+deb8u5 Distribution: jessie-security Urgency: medium Maintainer: Debian Edu Packaging Team Changed-By: Mike Gabriel Description: gosa - Web Based LDAP Administration Program gosa-desktop - Desktop integration for GOsa² gosa-dev - GOsa² development utilities gosa-help-de - German online help for GOsa² gosa-help-en - English online help for GOsa gosa-help-fr - French online help for GOsa² gosa-help-nl - Dutch online help for GOsa gosa-plugin-connectivity - connectivity plugin for GOsa² gosa-plugin-dhcp - dhcp plugin for GOsa² gosa-plugin-dhcp-schema - LDAP schema for GOsa² dhcp plugin gosa-plugin-dns - dns plugin for GOsa² gosa-plugin-dns-schema - LDAP schema for GOsa² dns plugin gosa-plugin-fai - fai plugin for GOsa² gosa-plugin-fai-schema - LDAP schema for GOsa² fai plugin gosa-plugin-gofax - gofax plugin for GOsa² gosa-plugin-gofon - gofon plugin for GOsa² gosa-plugin-goto - goto plugin for GOsa² gosa-plugin-kolab - kolab plugin for GOsa² gosa-plugin-kolab-schema - LDAP schema for GOsa² kolab plugin gosa-plugin-ldapmanager - ldapmanager plugin for GOsa² gosa-plugin-mail - base mail plugin for GOsa² gosa-plugin-mit-krb5 - mit-krb5 plugin for GOsa² gosa-plugin-mit-krb5-schema - LDAP schema for GOsa² mit-krb5 plugin gosa-plugin-nagios - nagios plugin for GOsa² gosa-plugin-nagios-schema - LDAP schema for GOsa² nagios plugin gosa-plugin-netatalk - netatalk plugin for GOsa² gosa-plugin-opengroupware - opengroupware plugin for GOsa² gosa-plugin-openxchange - openxchange plugin for GOsa² gosa-plugin-openxchange-schema - LDAP schema for GOsa² openxchange plugin gosa-plugin-opsi - opsi plugin for GOsa² gosa-plugin-phpgw - phpgw plugin for GOsa² gosa-plugin-phpgw-schema - LDAP schema for GOsa² phpgw plugin gosa-plugin-phpscheduleit - phpscheduleit plugin for GOsa² gosa-plugin-phpscheduleit-schema - LDAP schema for GOsa² phpscheduleit plugin gosa-plugin-pptp - pptp plugin for GOsa² gosa-plugin-pptp-schema - LDAP schema for GOsa² pptp plugin gosa-plugin-pureftpd - pureftpd plugin for GOsa² gosa-plugin-pureftpd-schema - LDAP schema for GOsa² pureftpd plugin gosa-plugin-rolemanagement - rolemanagement plugin for GOsa² gosa-plugin-rsyslog - rsyslog plugin for GOsa² gosa-plugin-samba - samba3 plugin for GOsa² gosa-plugin-scalix - scalix plugin for GOsa² gosa-plugin-squid - squid plugin for GOsa² gosa-plugin-ssh - ssh plugin for GOsa² gosa-plugin-ssh-schema - LDAP schema for GOsa² ssh plugin gosa-plugin-sudo - sudo plugin for GOsa² gosa-plugin-sudo-schema - LDAP schema for GOsa² sudo plugin gosa-plugin-systems - systems plugin for GOsa² gosa-plugin-uw-imap - uw-imap plugin for GOsa² gosa-plugin-webdav - webdav plugin for GOsa² gosa-schema - LDAP schema for GOsa Changes: gosa (2.7.4+reloaded2-1+deb8u5) jessie-security; urgency=medium . * debian/patches: + Add 1047_CVE-2019-14466-{1,2}_replace_unserialize_with_json_encode+json_ decode.patch. Replace (un)serialize with json_encode/json_decode to mitigate PHP object injection. Checksums-Sha1: 315382a37ac5565a73ea9b6aa1be0f62e32b3967 15371 gosa_2.7.4+reloaded2-1+deb8u5.dsc bc3749f1ed763d5bab6a6558d76a803931867ac9 14245 gosa_2.7.4+reloaded2.orig-apache2.tar.gz 4cb26a0bc7e9b19b642503718f52eb070bec0f3a 13239 gosa_2.7.4+reloaded2.orig-connectivity.tar.gz 964df02a742168a9d892b4a6d947b11b8bf210f0 53759 gosa_2.7.4+reloaded2.orig-dhcp.tar.gz b3436e1147cf10c86352885f9a85ad936bc2ed58 42732 gosa_2.7.4+reloaded2.orig-dns.tar.gz d32cb8123d9b756b64ae8dfd5291eb732f6aea2f 254412 gosa_2.7.4+reloaded2.orig-fai.tar.gz 37025022b3b1e1782b386f07c9131ea1078aa5f4 71639 gosa_2.7.4+reloaded2.orig-gofax.tar.gz bfbaacd307d42ebdb4bac9106a6cc343c0cf3530 189055 gosa_2.7.4+reloaded2.orig-gofon.tar.gz