-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 19 Apr 2011 00:07:54 +0200 Source: libmojolicious-perl Binary: libmojolicious-perl Architecture: source all Version: 0.999926-1+squeeze1 Distribution: stable-security Urgency: high Maintainer: Debian Perl Group Changed-By: Salvatore Bonaccorso Description: libmojolicious-perl - Model-View-Controller Web Application Framework Closes: 622952 Changes: libmojolicious-perl (0.999926-1+squeeze1) stable-security; urgency=high . * [SECURITY] Add 622952-path-traversal-vulnerability.patch to fix path traversal security vulnerability. Fix CVE-2011-1589. (Closes: #622952). * Add improve-RFC3986-compliance-of-Mojo-Path.patch backported from upstream commit 748ef373291dd342c18a0811f967ea0d88df5368. This prevents FTBFS with the applied security patch. Thanks to Ansgar Burchardt (ansgar) for suggestion. Checksums-Sha1: c05898783dda76542b3a36382e9814a5622c9a74 2105 libmojolicious-perl_0.999926-1+squeeze1.dsc b5d06f4e6a5afa29c392732e0c5dfc9f6e590375 230633 libmojolicious-perl_0.999926.orig.tar.gz 46c2cd53a1d1b8fd3f078326d62df1cc33c6b8b8 6634 libmojolicious-perl_0.999926-1+squeeze1.debian.tar.gz 2531d2ae32d25861e7d7fbf3d1b3886c25075865 445812 libmojolicious-perl_0.999926-1+squeeze1_all.deb Checksums-Sha256: 4c50ae39f65515401cf2b9273e2c18eaec40a8f25368649cada7d84218677ea7 2105 libmojolicious-perl_0.999926-1+squeeze1.dsc fed8a2d37493700ab0fe209a269d2fd3c710dce77f18664652157f1f0d1090ae 230633 libmojolicious-perl_0.999926.orig.tar.gz 13d0256670561b7948b9202dc71a91cdf7c970ec5a9d174297c6c028cde1b36f 6634 libmojolicious-perl_0.999926-1+squeeze1.debian.tar.gz 585a51afd7dfa4924d29af6f0b68384171b87f62d3a09b61e5fa59d634f3748f 445812 libmojolicious-perl_0.999926-1+squeeze1_all.deb Files: 1874a8e397f8c1a84be69f47912b6d5e 2105 perl optional libmojolicious-perl_0.999926-1+squeeze1.dsc ecdbb51f457ef220d675a5f8ac4522ef 230633 perl optional libmojolicious-perl_0.999926.orig.tar.gz a30b3bdf11b843d2d3a5128b722a21ac 6634 perl optional libmojolicious-perl_0.999926-1+squeeze1.debian.tar.gz 9f2b61456cfb32cf2c71b5fc9e6389e6 445812 perl optional libmojolicious-perl_0.999926-1+squeeze1_all.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) iQIcBAEBCAAGBQJNrLd9AAoJEHidbwV/2GP+LuAP/3OYRR5G1xiGS3EwVavU0jv3 7KypvDGav6m1N4mSBdL9rsAObmwLoU1h3IWx0Q52U9OmJKYD71xAuKfP42MhdgfN bprILb3YRTN8xqO4alhqSZF8rOkeMkdQvasquEthle6azR4hb9grT3RYRI5dSjLr /MQoWmADFP8ITCtWnuxr6PT9ujE/BLsDiumUu0c9SbPFpJn3pWXikW1zw05/KH4+ kjTM6pIM9OftJrHEp0DG00uQjKPGbCeW22dSEVx3weDYoOw27aw8Mb+3luNR4y/Z IihBlNB8e6AGW9/r1k/UYVVd702A53bAGdSTlhWBZIc8oraYmuZBOqbrcJxivanM UXDsGPJJKDo312vJGuclJ/6k5rF5iAKpD16UhFa+12uFdZk55iVSW2yfhxJw2KGb qh7hEi7czRefCGL6wwdYh8WWkcifFds2RPxXb/m1xB7jRhi/6EM/TdqN71X0gI4V g95zy22zZWaMlarBDH74ylZprN79ckBewQBq7oX+s+gaj3DSz6n2+xeq/GRgOmHb TTZ4vGkOrpNpV6As5NOg8X1M1EnHQ9DCI54A8YI7FNIyks7HtKyA2sd5bf5zxoup uvNIsDTvZD+V9aQ9u+Z9B3idQy2BPBaHbkm+Wrdio2ytQ7p/HvPAYOQTVxnGAaKZ vhcl3kRaktiCypn5pfnS =7swx -----END PGP SIGNATURE-----