-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 11 Jan 2025 20:46:03 +0100 Source: git Binary: git git-dbgsym Architecture: armhf Version: 1:2.39.5-0+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-05) Changed-By: Salvatore Bonaccorso Description: git - fast, scalable, distributed revision control system Changes: git (1:2.39.5-0+deb12u2) bookworm-security; urgency=high . * Non-maintainer upload by the Security Team. * credential_format(): also encode [:] * credential: sanitize the user prompt (CVE-2024-50349) * credential: disallow Carriage Returns in the protocol by default (CVE-2024-52006) Checksums-Sha1: f09da44e37c6bda266934db05a98e348436820cd 43704184 git-dbgsym_2.39.5-0+deb12u2_armhf.deb 0be15076cb90caa8a48054fb626c4c279953bc5d 8478 git_2.39.5-0+deb12u2_armhf-buildd.buildinfo 7393e7393eeadd19a13f2bcaef88363449d2b566 6059768 git_2.39.5-0+deb12u2_armhf.deb Checksums-Sha256: 172619c43cfeba25e2fae6137e016b1e79076af54ceea43d91e6a4e55f404079 43704184 git-dbgsym_2.39.5-0+deb12u2_armhf.deb 83b4b3f95b9fafb47b5c825165f38fb4eab647984c49367ee5f5b6b6a16db2a4 8478 git_2.39.5-0+deb12u2_armhf-buildd.buildinfo 4226817d648e761d2efaa7199eefff0556d1f520ba7c6a7fb665e57a08d15496 6059768 git_2.39.5-0+deb12u2_armhf.deb Files: 44bfc6238540f942c3e389e22765d907 43704184 debug optional git-dbgsym_2.39.5-0+deb12u2_armhf.deb e3a39f786cb59dac57c96041a19ad341 8478 vcs optional git_2.39.5-0+deb12u2_armhf-buildd.buildinfo d91e49d6ce3b46917e079c8d378daf69 6059768 vcs optional git_2.39.5-0+deb12u2_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEmbvtGd+QaAE2Bi5fsFgOvjtRcdMFAmeEJ4AACgkQsFgOvjtR cdOTUQ//Q1x3c63FOW0IEd/URVHbW+RcXAUqWUJksXoSC1rsa0Ego8T/7jRmhroh gIiOnrtP+ja113pfbX3YdFdX9jlVLfR0O7AJLdvSbWxfS6yG7642vr/yPvS3WLM6 35xeWjc7QSB8ibgdk7kHLUDP/+DKzWpoEhh83BRYGRmjXmvFK8lUJtekwYVqNKGi 435dpxMUxS9HR7Khf5vunt6J16xAI+jBotoOpu5MMhv41+35XXwpdjGUQrT+Z9Ka NKnU+gipMq8wsRllD/olHDWOReqS1Ays4pPlLKXyveETprhxMfe1Sjzvx5e6/ac1 /WHcrJ58JgDJZ+u9xgBh0+LRIdt9VQtOWqiK4dXumtpwuhH6Gc0gHPOlmkdH6G1I fhsqz2LqERCQuCXLUkHl7U/L35ig0JwcTiCW1AITBjYj+/kypnCqaPqxhlGfj4Dg oqqZfSUlkKDHxgJdVIYM/D/fXCg7Fmw3sQ8mu5z4mV3wMoxl1hVf0vNgVdupxw70 pnEL611AXXr8E05ub1CqKKzkRkjjyiVfpoA0x/+ZUzCEAS2tx65/vM5qBM2WPXy3 wLEWdzZXUnkqGPHaZ650knl+DvOp+kx2mRTbb0Ihif05GONae+OzX4w8riuZvIjM JIitIjIDQ9C1ukgeZmuRiOky1wJyk2GZbvlH1n4VDLQ6ZsTGyrk= =dpiq -----END PGP SIGNATURE-----