-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 21 Jun 2023 11:16:56 +0200 Source: trafficserver Binary: trafficserver trafficserver-dbgsym trafficserver-dev trafficserver-experimental-plugins trafficserver-experimental-plugins-dbgsym Architecture: i386 Version: 8.1.7+ds-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Jean Baptiste Favre Description: trafficserver - fast, scalable and extensible HTTP/1.1 and HTTP/2.0 caching proxy trafficserver-dev - Apache Traffic Server Software Developers Kit (SDK) trafficserver-experimental-plugins - experimental plugins for Apache Traffic Server Closes: 1038248 Changes: trafficserver (8.1.7+ds-1~deb11u1) bullseye-security; urgency=high . * New upstream version 8.1.7+ds * Multiple CVE fixes for 8.1.x (Closes: #1038248) + CVE-2022-47184: Exposure of Sensitive Information to an Unauthorized Actor vulnerability + CVE-2023-30631: Improper Input Validation vulnerability + CVE-2023-33933: Exposure of Sensitive Information to an Unauthorized Actor vulnerability Checksums-Sha1: aa8a00e88bb9f2fc716dbfcbfa21557c1b219dfc 27243912 trafficserver-dbgsym_8.1.7+ds-1~deb11u1_i386.deb d71d81c78dd3f7cb2822c0dd3cf186cb7f7e868c 320532 trafficserver-dev_8.1.7+ds-1~deb11u1_i386.deb dc9ed4ea091954419750f3ed35e37663f78d24be 3250012 trafficserver-experimental-plugins-dbgsym_8.1.7+ds-1~deb11u1_i386.deb 39209472cdfab1a1cfa2a3e88651ac6b4a9ed520 435484 trafficserver-experimental-plugins_8.1.7+ds-1~deb11u1_i386.deb d4e97b061243c33a652ccd2a98e7920762c4a12a 15568 trafficserver_8.1.7+ds-1~deb11u1_i386-buildd.buildinfo 1e7086a279edc3867628a620d01e4d2e1326f52c 3263600 trafficserver_8.1.7+ds-1~deb11u1_i386.deb Checksums-Sha256: 36db2774755e6d350365281c7421dbeda109b775a9f59b764ff76807c0c44981 27243912 trafficserver-dbgsym_8.1.7+ds-1~deb11u1_i386.deb aabb2f85f05105d770459b71e6db96b170cda04c27c8fa61968159e79400be1f 320532 trafficserver-dev_8.1.7+ds-1~deb11u1_i386.deb 0a313b212e6f4a026331259fcacc2095a2105e499c6097bebb5ba0be5d834a47 3250012 trafficserver-experimental-plugins-dbgsym_8.1.7+ds-1~deb11u1_i386.deb e9706b79392db3716d16ea8687d9288c3d570d56324044659c5a1cdd5b1462e7 435484 trafficserver-experimental-plugins_8.1.7+ds-1~deb11u1_i386.deb 8be58bcb38905d5819a985c6fd8726255a8dd9ebd5319cd88a806a754b096ac7 15568 trafficserver_8.1.7+ds-1~deb11u1_i386-buildd.buildinfo c0aa05840f0c6f76cc3dbb2f24ef978d41a23884a98774f8b5316842c38cfe47 3263600 trafficserver_8.1.7+ds-1~deb11u1_i386.deb Files: f641b54e7bf37d3dfe39ecdefe531feb 27243912 debug optional trafficserver-dbgsym_8.1.7+ds-1~deb11u1_i386.deb 7fdb41237c1100a57f19d6f5cccfec5f 320532 web optional trafficserver-dev_8.1.7+ds-1~deb11u1_i386.deb afb2abda05bea6eaecdf5cb906bfb09d 3250012 debug optional trafficserver-experimental-plugins-dbgsym_8.1.7+ds-1~deb11u1_i386.deb 6011a48e8fc7e89f009b09cba91d6b79 435484 web optional trafficserver-experimental-plugins_8.1.7+ds-1~deb11u1_i386.deb 8943181a83379d27d2af23b33bea689d 15568 web optional trafficserver_8.1.7+ds-1~deb11u1_i386-buildd.buildinfo c3682d1443dcaacf5b58253627cfa94a 3263600 web optional trafficserver_8.1.7+ds-1~deb11u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEi/TVpVg0yb7dq8QfDZWW6X29YdoFAmSS63IACgkQDZWW6X29 YdoIxhAAwUePSdwjtXt0+Twb3f4isvZ3Rt/oLG5gJi5itZPTBZ5AtNQmt3Cd5CgO MRuGZil65ZwhIEprpCIrAbk9vEnc+qCh+cquXRClTfbXM3vg7NDScvB/k5pBtp4s MWqPB6LC98b9i1THC34lKOESTDPU4YLRjPZAiPDzDw1Yh/8KCdXNz3stJgMjs5nQ Cby3j0l+rjhM5Fui0rUAsDsMaa/lbr7gdrcGRPyqlDyUntfPUtzTpYEc3GyO1DZ4 HpE70Prm4M1JnoOPQTymRWWKD37P7AzRX0ldepfbSkLzm8qtNtnzjWg+odxnjCPO qMj41YVtgtRzAcDvnZWkvJZztyeEAaZ98JZTJeP2hdv7FqVNjtAW5AajtxCm96c7 gd6wwB0KpvFKHqIQHriUJCv/zb69KfOAeNOZsSG2YvFUaNO535TxmL3n8aqR/bIv EOxiKfcGZCXaOvIQ0IE7unQQp3BD7I1qhbbyF9+dyZGwBUzvfVQ8Tq0DkLJfF5kt mRbrMA9xpMaIb1aJA4xjBxFbVuCuJJKfPG5byBaFdHjo9+3ZoLPfMgyTxUwehe8J iinsPPFAHtm/DQ900X9TIG7u4jGpUX0KYG7z1OKNY41vBVSDEfhkWKldnR2CL3AV r9QxdshmASld6NGA3aQz3DYYqpUQxIsi8LQULAQHFdrP/xhGxgs= =3cpW -----END PGP SIGNATURE-----