Format: 1.8 Date: Sat, 12 Feb 2022 23:00:09 +0100 Source: zsh Binary: zsh zsh-dev zsh-static Built-For-Profiles: noudeb Architecture: i386 Version: 5.8.1-1 Distribution: jammy-proposed Urgency: high Maintainer: Launchpad Build Daemon Changed-By: Axel Beckert Description: zsh - shell with lots of features zsh-dev - shell with lots of features (development files) zsh-static - shell with lots of features (static link) Changes: zsh (5.8.1-1) unstable; urgency=high . * [1a490c705,12eb3e53,a13f7a2b] Import new upstream security and bugfix release 5.8.1. + [c187154f,fdb8b0ce,bdc4d70a] Fixes CVE-2021-45444, a vulnerability in prompt expansion which could be exploited through e.g. VCS_Info to execute arbitrary shell commands without a user's knowledge. + [92d7d4dd] Refresh patches as needed. Drop cherry-picked patch with commit 754658af, included in upstream bugfix release. * [2556a97c] Drop debian/zsh-static.NEWS, zsh-static will stay. Thanks to those who gave feedback about our proposed zsh-static removal back in 2015, especially Vincent Bernat. * [0fbb22e7] Extend zsh-static package description to explain its use cases. Thanks to shirish शिरीष to make us aware of this deficency of the package description by asking the right questions (back in 2015). :-) * [daf87c89] zsh-static: Drop dep. on zsh, recommend zsh-common instead. * [2f5cd2e1] Update lintian overrides wrt. to change tag formats. * [cf14eeb5] Add lintian override for bash-term-in-posix-shell. It's zsh code and it's guarded by a check if we're running zsh or not. * [ca06fcef] Add lintian overrides for bin-sbin-mismatch false positives. * [db8c6c1c] debian/zsh5: Add ${static} suffix also to alternative path in warning. * [dc50ace5] Update copyright years in debian/copyright. Thanks Lintian! * [e872908c] debian/copyright: Remove obsolete upstream URLs. (FTP + SF) * [60187dd3] debian/watch: Drop comment about FTP timeouts. * [34379187] Make paths in lintian overrides agnostic to upstream versions * [566bf8c1] Add lintian overrides for all occurrences of very-long-line-length-in-source-file. They're all false positives. * [32c07ee0] Update copyright years in debian/copyright. Thanks Lintian! Checksums-Sha1: 02b9f63ceb3a151046dd6fe631907b528d4d0360 1676956 zsh-dbgsym_5.8.1-1_i386.ddeb eca0c10460d2d1ed800f2946d050358ebba33263 99814 zsh-dev_5.8.1-1_i386.deb c142326c4bd3ddfcda7f117106cce6d37549eff4 1384186 zsh-static-dbgsym_5.8.1-1_i386.ddeb ff7b0d319197f73c6c8818c0a24b21e5bc42cbf2 1132950 zsh-static_5.8.1-1_i386.deb 24f45f68cc8ab523c46932ce3c51c0234bcff7d4 7063 zsh_5.8.1-1_i386.buildinfo f907fda7525cc68f6dc4ab677f8d6414fe5d8351 809418 zsh_5.8.1-1_i386.deb Checksums-Sha256: d38629264a0321f50bf0eb4b983fc655ca9916f3f573a5a5961103cd9de01665 1676956 zsh-dbgsym_5.8.1-1_i386.ddeb 16e6b5bc610342659f59016afd45ce8633bbd5535d64d45e281bf6af96c3e719 99814 zsh-dev_5.8.1-1_i386.deb 16f6b09635ea65a5af112e1c33b483a3edc24ceb4581bbfd1ec790d51ef95dd6 1384186 zsh-static-dbgsym_5.8.1-1_i386.ddeb fd6fea23365bf86e74c0a965de3a91406905e2deb24c39bb6987dcd79a81a4c2 1132950 zsh-static_5.8.1-1_i386.deb a6e914c40e71e43baab448c48099f2dc8d8585f65f42b63c939baa8bc114d1c9 7063 zsh_5.8.1-1_i386.buildinfo 9a1f04684d62a28fd7b9439e795ebe93244157193d40f25c49eb9a416aca33f7 809418 zsh_5.8.1-1_i386.deb Files: ccb24b786d5e0d3dfb714e3701799cff 1676956 debug optional zsh-dbgsym_5.8.1-1_i386.ddeb 5296b525d3cf2c0e3b7e9f55f9a1fc79 99814 libdevel optional zsh-dev_5.8.1-1_i386.deb 875703c26f82fdfebafaa9c62dadf42d 1384186 debug optional zsh-static-dbgsym_5.8.1-1_i386.ddeb 90ab02b64c2983d66f9a1085b5620ed1 1132950 shells optional zsh-static_5.8.1-1_i386.deb da4c704ab8d92bb3ef2f56ff39557ac7 7063 shells optional zsh_5.8.1-1_i386.buildinfo f2c3821c6a4f489807519b0769081514 809418 shells optional zsh_5.8.1-1_i386.deb