b12u2) bookworm; urgency=medium
+
+ * Add patch for "oidc_check_x_forwarded_hdr check segfaults"
+(Closes: #1076429)
+
+ -- Moritz Schlarb Tue, 23 Jul 2024 10:47:49 +0200
+
libapache2-mod-auth-openidc (2.4.12.3-2+deb12u1) bookworm; urgency=medium
* CVE-2024-24814: Missing inpu
: #1064183)
+
+ -- Moritz Schlarb Thu, 18 Apr 2024 14:20:00 +0200
+
libapache2-mod-auth-openidc (2.4.12.3-2) unstable; urgency=high
* Add patch to Fix CVE-2023-28625 (Closes: #1033916)
diff -Nru libapache2-mod-auth-openidc-2.4.12.3/debian/gbp.conf
libapache2-mod-auth-openidc-2.4.12.3/debian
)
+
+ -- Moritz Schlarb Thu, 18 Apr 2024 14:27:26 +0200
+
libapache2-mod-auth-openidc (2.4.9.4-0+deb11u3) bullseye-security; urgency=high
* Add patch to Fix CVE-2023-28625 (Closes: #1033916)
diff -Nru
libapache2-mod-auth-openidc-2.4.9.4/debian/patches/0004-fix-DoS-CVE-2024-24814.patch
Package: release.debian.org
Severity: normal
User: release.debian@packages.debian.org
Usertags: unblock
X-Debbugs-Cc: libapache2-mod-auth-open...@packages.debian.org
Control: affects -1 + src:libapache2-mod-auth-openidc
Please unblock package libapache2-mod-auth-openidc
Fixes CVE-2023-28625 "
redirect in default setup
+when OIDCRedirectURLsAllowed is not configured
+see:
https://github.com/zmartzone/mod_auth_openidc/security/advisories/GHSA-q6f2-285m-gr53
+(Closes: #1026444)
+
+ -- Moritz Schlarb Wed, 21 Dec 2022 11:40:16 +0100
+
libapache2-mod-auth-openidc (2.3.10.2-1+deb10
redirect in default setup
+when OIDCRedirectURLsAllowed is not configured
+see:
https://github.com/zmartzone/mod_auth_openidc/security/advisories/GHSA-q6f2-285m-gr53
+(Closes: #1026444)
+
+ -- Moritz Schlarb Tue, 20 Dec 2022 12:20:52 +0100
+
libapache2-mod-auth-openidc (2.4.9.4-0+deb11u1
ional reminder and I am so so sorry for simply
forgetting about this until now...
Especially given that everything had been ready since I opened this
buster-pu bug...
I have just now uploaded the package for the buster distribution.
Best wishes,
--
Moritz Schlarb
Unix und Cloud
Zentru
-1) unstable; urgency=medium
* New upstream version 2.4.9.4
* Fix "CVE-2021-39191" (Closes: #993648)
* 2.4.9.2 fixed a regression regarding segfault at reload/restart
(Closes: #883616, #891224, #868949)
-- Moritz Schlarb Tue, 07 Sep 2021 09:37:15 +0200
[ Impact ]
Apache2 co
3.10.2-1+deb10u1) buster; urgency=medium
+
+ * Add patch for CVE-2019-14857
+ (Closes: #942165)
+
+ -- Moritz Schlarb Wed, 27 Nov 2019 11:09:17 +0100
+
libapache2-mod-auth-openidc (2.3.10.2-1) unstable; urgency=medium
* New upstream version 2.3.10.2
diff -Nru libapache2-mod-auth-openidc-2.3.1
or regular expression for filtering out dhcpd and dhclient as
+false positives from the packet sniffer test.
+
+ [ Lorenzo "Palinuro" Faletra ]
+ * Update /etc/cron.daily/chkrootkit (Closes: #600109)
+
+ -- Moritz Schlarb Mon, 21 Jan 2019 11:45:44 +0100
+
chkrootkit (0.50-4) unstabl
Control: retitle -1 unblock: nagstamon/2.0.1-5
Hi everyone,
I changed the patch to kind of the reverse: It now explicitly does not
call disable_warnings.
Regards,
Moritz
Attached nagstamon_2.0.1-5.debdiff
unblock nagstamon/2.0.1-5
On 03.05.2017 10:13, Moritz Schlarb wrote:
> Pack
kage being put in
the removal queue...
If you'd like, we can explicitly re-enable the warnings so the behavior
is visible to the users.
But I don't want to have nagstamon removed simply because of that...
What do you think?
Regards,
--
Moritz Schlarb
Unix-Gruppe | Systembetreuung
Zen
rning warnings
+Closes: #861152
+
+ -- Moritz Schlarb Fri, 28 Apr 2017 21:16:17 +0200
+
+nagstamon (2.0.1-1~bpo8+1) jessie-backports; urgency=medium
+
+ * jessie-backports rebuild
+
+ -- Christoph Martin Tue, 24 Jan 2017 12:31:59 +0100
+
nagstamon (2.0.1-1) unstable; urgency=medium
[ M
.cgi?id=740520
+Screenshots are often uploaded to web services or copied to (possibly
+FAT) external drives.
+Don't use characters that would be incompatible with those.
+(Closes: #850837)
+
+ -- Moritz Schlarb Wed, 08 Feb 2017 10:19:30 +0100
+
gnome-settings-daemon (3.14.2-3
ency=medium
+
+ * Non-maintainer upload.
+ * filename-builder-use-dash-for-time-format-separator.patch:
+Combination of the patch from upstream bug #698740 and upstream
+commit aa23783 to achieve the behaviour intended by successive
+upstream releases.
+ (Closes: #850836)
+
+ -- Moritz S
15 matches
Mail list logo