Format: 1.8 Date: Fri, 14 May 2021 05:36:47 +0000 Source: python-babel Binary: python-babel-doc python-babel-localedata python3-babel Architecture: source Version: 2.8.0+dfsg.1-7~cloud0 Distribution: focal Urgency: medium Maintainer: Debian Python Team Changed-By: Openstack Ubuntu Testing Bot Description: python-babel-doc - tools for internationalizing Python applications - documentation python-babel-localedata - tools for internationalizing Python applications - locale data fi python3-babel - tools for internationalizing Python applications - Python 3.x Closes: 987824 Changes: python-babel (2.8.0+dfsg.1-7~cloud0) focal-xena; urgency=medium . * New update for the Ubuntu Cloud Archive. . python-babel (2.8.0+dfsg.1-7) unstable; urgency=medium . * CVE-2021-20095: Relative Path Traversal in Babel 2.9.0 allows an attacker to load arbitrary locale files on disk and execute arbitrary code. Applied upstream patch: Run locale identifiers through `os.path.basename()`. (Closes: #987824). Checksums-Sha1: 3acff232ddec4e617c91cb83e47531daea051d8e 2357 python-babel_2.8.0+dfsg.1-7~cloud0.dsc 2e56cc811ac58916d68615ae1dd785149e2adfb7 14029964 python-babel_2.8.0+dfsg.1.orig.tar.xz 824ad8a38177a8b54a51028224175299cf9f8373 13816 python-babel_2.8.0+dfsg.1-7~cloud0.debian.tar.xz Checksums-Sha256: 856714de96caeca475001057d22888f84cba222738ba2607b866649c22a4794c 2357 python-babel_2.8.0+dfsg.1-7~cloud0.dsc 099ee52ffe5d386321d0108b2de0f93aa8cd5a56149dbb55b7c77e3b9637e4e4 14029964 python-babel_2.8.0+dfsg.1.orig.tar.xz 1c7d75f891056b118eace800f8fb3b6a16e4b390a0079d2ec51325e8e8ed1b21 13816 python-babel_2.8.0+dfsg.1-7~cloud0.debian.tar.xz Files: 07c1cb45297e1341240a0c1829d41996 2357 python optional python-babel_2.8.0+dfsg.1-7~cloud0.dsc 93ca7dbeca492b9a710a54dcae9dff41 14029964 python optional python-babel_2.8.0+dfsg.1.orig.tar.xz 514a7e06e92b79d55abfc96ee9830e21 13816 python optional python-babel_2.8.0+dfsg.1-7~cloud0.debian.tar.xz