-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 3.0 (quilt) Source: request-tracker4 Binary: request-tracker4, rt4-clients, rt4-fcgi, rt4-apache2, rt4-db-postgresql, rt4-db-mysql, rt4-db-sqlite Architecture: all Version: 4.0.7-5+deb7u3 Maintainer: Debian Request Tracker Group <[email protected]> Uploaders: Niko Tyni <[email protected]>, Dominic Hargreaves <[email protected]>, Dmitry Smirnov <[email protected]> Homepage: http://bestpractical.com/rt/ Standards-Version: 3.9.3 Vcs-Browser: http://anonscm.debian.org/gitweb/?p=pkg-request-tracker/request-tracker4.git Vcs-Git: git://anonscm.debian.org/pkg-request-tracker/request-tracker4.git Build-Depends: debhelper (>= 5), po-debconf Build-Depends-Indep: perl (>= 5.8.3) Package-List: request-tracker4 deb misc optional rt4-apache2 deb misc optional rt4-clients deb misc optional rt4-db-mysql deb misc optional rt4-db-postgresql deb misc optional rt4-db-sqlite deb misc optional rt4-fcgi deb misc optional Checksums-Sha1: a6c11cc16bc002f63225071bf7b8d7fe4f787e52 785270 request-tracker4_4.0.7.orig-third-party-source.tar.gz 4c6ba7c3311e0fc42bb99434e91d03318c24186f 5896400 request-tracker4_4.0.7.orig.tar.gz 10d3cfc2c5ee66b7778628e69db6760b10a0c251 88105 request-tracker4_4.0.7-5+deb7u3.debian.tar.gz Checksums-Sha256: 39a4dd1cbc89a0123149449c89fc8ed0c4751edff1cf16ac93a91d88ad798c9e 785270 request-tracker4_4.0.7.orig-third-party-source.tar.gz 3b382f05bededa478fbbd0b6bae2381b52eb7f6c11f1136e48c1c57de06d65ed 5896400 request-tracker4_4.0.7.orig.tar.gz 640ef86db6593a1987ccf431a6af1f91542f7e20433e615ab6246d5b714ed1da 88105 request-tracker4_4.0.7-5+deb7u3.debian.tar.gz Files: 8ada3c6dab42e62aff4480b65165e87a 785270 request-tracker4_4.0.7.orig-third-party-source.tar.gz 9536589c5403f1c18c1545a432d541d3 5896400 request-tracker4_4.0.7.orig.tar.gz 9ecbacaec2581c63adfdbcae6ae39592 88105 request-tracker4_4.0.7-5+deb7u3.debian.tar.gz -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJU341EAAoJEMAFfnFNaU+y1zkQAMHHKRzfc2uGSxPUp8kxcEcu 5XWhFxaKWz1eA0KcAwuTPKepWn3rGIIywmXoxaJ3TMAahqe5wZJKJO8oYEhWdAkl B/rd5Zjf6fPAmDKUFMezavmXurt3E2oM6bsmk1twV6ZoZ2CRHNtY1i05KKbMbnki KT+kPTLFccYaEdu1g6qKfZwp4GPG+/4sZieq6Y7mRprvaSMXDAEkILvIZZWhEciA xqlLA26Hu1ty4s+hNqpz/UXVI3jV1UC93pVdePUcUsQygZSeAAP8wRWcOH5BFfEM JVgexiMqxHhT6zV85bslchJ3tIkdnlN28JnZ6o0bva0m3aIiVF2s5RUnKbeJ9mVg 2vzFfKq/DcMiuzprotJpxjPGRFXymtZmQ0SSljjyRqOyg3Wx9TV2Ad/C0wiuiwxZ we3yLV43Q/uXg+Xwex03zGrIsWdV3w9raeHtfU8JSyIfI7wJrA3tX9bq2eufCYf8 q6kVwbxFTMqGLbwb3ezw4BvF773trFsqJaKL/ibmsPgUsfyBf+HklSHkAePbIDp3 X1C/Q6IxGh8fI5z0eutTXB3vz7nPdHbMlqZWCk5vIYlkGMvOTGLVb/+0n74NmL7S pZQ00FDF6xpYcu0ruv4MLoLjNuXk12iZh3K65pjd4PkOZz1kIeqCM/dAHLQuZ4TO isMolNr0rICVRgRWPN92 =puat -----END PGP SIGNATURE----- Changes: request-tracker4 (4.0.7-5+deb7u3) wheezy-security; urgency=high * Fix remote DoS via email gateway (CVE-2014-9472) * Fix information discloure revealing RSS feed URLs (CVE-2015-1165) * Fix privilege escalation via RSS feed URLs (CVE-2015-1464) -- Dominic Hargreaves <[email protected]> Sat, 14 Feb 2015 16:26:08 +0000