Format: 1.8 Date: Fri, 14 Oct 2022 11:15:33 -0300 Source: git Binary: git git-man git-doc git-cvs git-svn git-mediawiki git-email git-daemon-run git-daemon-sysvinit git-gui gitk git-el gitweb git-all Architecture: ppc64el ppc64el_translations Version: 1:2.17.1-1ubuntu0.13 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Leonidas Da Silva Barbosa Description: git - fast, scalable, distributed revision control system git-all - fast, scalable, distributed revision control system (all subpacka git-cvs - fast, scalable, distributed revision control system (cvs interope git-daemon-run - fast, scalable, distributed revision control system (git-daemon s git-daemon-sysvinit - fast, scalable, distributed revision control system (git-daemon s git-doc - fast, scalable, distributed revision control system (documentatio git-el - fast, scalable, distributed revision control system (emacs suppor git-email - fast, scalable, distributed revision control system (email add-on git-gui - fast, scalable, distributed revision control system (GUI) git-man - fast, scalable, distributed revision control system (manual pages git-mediawiki - fast, scalable, distributed revision control system (MediaWiki re git-svn - fast, scalable, distributed revision control system (svn interope gitk - fast, scalable, distributed revision control system (revision tre gitweb - fast, scalable, distributed revision control system (web interfac Changes: git (1:2.17.1-1ubuntu0.13) bionic-security; urgency=medium . * SECURITY UPDATE: Unexpected behavior - debian/patches/CVE-2022-39253-*.patch: disallow --local clones with symlinks and additionally changed the protocol.file.allow to be user by default in builtin/clone.c, transport.c, and modified tests in t/t5604-clone-reference.sh, lib-submodule-update.sh, t/t1091-sparse-checkout-builtin.sh, t/t1500-rev-parse.sh, t/t2400-worktree-add.sh, t/t2403-worktree-move.sh, t/t2405-worktree-submodule.sh, t/t3200-branch.sh, t/t3420-rebase-autostash.sh, t/t3426-rebase-submodule.sh, t/t3512-cherry-pick-submodule.sh, t/t3600-rm.sh, t/t3906-stash-submodule.sh, t/t4059-diff-submodule-not-initialized.sh, t/t4060-diff-submodule-option-diff-format.sh, t/t4067-diff-partial-clone.sh, t/t4208-log-magic-pathspec.sh, t/t5510-fetch.sh, t/t5526-fetch-submodules.sh, t/t5545-push-options.sh, t/t5572-pull-submodule.sh, t/t5601-clone.sh, t/t5614-clone-submodules-shallow.sh, t/t5616-partial-clone.sh, t/t5617-clone-submodules-remote.sh, t/t6008-rev-list-submodule.sh, t/t6134-pathspec-in-submodule.sh, t/t7001-mv.sh, t/t7064-wtstatus-pv2.sh, t/t7300-clean.sh, t/t7400-submodule-basic.sh, t/t7403-submodule-sync.sh, t/t7406-submodule-update.sh, t/t7407-submodule-foreach.sh, t/t7408-submodule-reference.sh, t/t7409-submodule-detached-work-tree.sh, t/t7411-submodule-config.sh, t/t7413-submodule-is-active.sh, t/t7414-submodule-mistakes.sh, t/t7415-submodule-names.sh, t/t7416-submodule-dash-url.sh, t/t7417-submodule-path-url.sh, t/t7418-submodule-sparse-gitmodules.sh, t/t7419-submodule-set-branch.sh, t/t7420-submodule-set-url.sh, t/t7421-submodule-summary-add.sh, t/t7506-status-submodule.sh, t/t7507-commit-verbose.sh, t/t7800-difftool.sh, t/t7814-grep-recurse-submodules.sh, t/t9304-fast-import-marks.sh, t/t9350-fast-export.sh, t/t1092-sparse-checkout-compatibility.sh, t/t2080-parallel-checkout-basics.sh, t/t7450-bad-git-dotfiles.sh. - CVE-2022-39253 * SECURITY UPDATE: Arbitrary heap writes - debian/patches/CVE-2022-39260-*.patch: limit size of interactive commands and reject too-long cmdline strings in split cmdline() in shell.c, t/t9850-shell.sh, alias.c. - CVE-2022-39260 Checksums-Sha1: 23c2c3aae5e5d66f2d209bd2cd899f45c8295101 49017588 git-dbgsym_2.17.1-1ubuntu0.13_ppc64el.ddeb b0e74b145364e6ae43b2e8c9ac56d6b07a1f0544 9103 git_2.17.1-1ubuntu0.13_ppc64el.buildinfo 87dd13d8abf7293cb650e89e38d7c3b54b04d4d9 5326232 git_2.17.1-1ubuntu0.13_ppc64el.deb c16be58c33023e4f8f1cddfd5f7d0a74a6f016cb 3379791 git_2.17.1-1ubuntu0.13_ppc64el_translations.tar.gz Checksums-Sha256: 1a0dc10045546443b7a13f7b41ce768957f78a8c12d7a1aeb69a14c1da8309be 49017588 git-dbgsym_2.17.1-1ubuntu0.13_ppc64el.ddeb 5206c9ca5af0763a463964f1b56cf07f8f7d3d9bd52f25829d3a4060b3d6a4e4 9103 git_2.17.1-1ubuntu0.13_ppc64el.buildinfo 1091301f010712e6d1c2b48c23c7b263cf61d6183a3926084b3347f0817aae0e 5326232 git_2.17.1-1ubuntu0.13_ppc64el.deb 0403c3a4181822a7628d6cff2f3d454158bf3a66a4e7e2071586ad32f1ab447c 3379791 git_2.17.1-1ubuntu0.13_ppc64el_translations.tar.gz Files: e476e813e0f32d0af4ac7c05c30aae63 49017588 debug optional git-dbgsym_2.17.1-1ubuntu0.13_ppc64el.ddeb 96be07dc1632619da2e6463ba59be8d5 9103 vcs optional git_2.17.1-1ubuntu0.13_ppc64el.buildinfo b5308b20491467dc67c307cb3931124e 5326232 vcs optional git_2.17.1-1ubuntu0.13_ppc64el.deb ca11ee0f29f7cfe662ac1a0cf11cddcb 3379791 raw-translations - git_2.17.1-1ubuntu0.13_ppc64el_translations.tar.gz Original-Maintainer: Gerrit Pape