Mapping stable-security to proposed-updates. Accepted:
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 09 May 2018 22:55:11 +0200 Source: kwallet-pam Binary: libpam-kwallet-common libpam-kwallet4 libpam-kwallet5 Architecture: source all amd64 Version: 5.8.4-1+deb9u2 Distribution: stretch-security Urgency: high Maintainer: Debian/Kubuntu Qt/KDE Maintainers <debian-qt-kde@lists.debian.org> Changed-By: Maximiliano Curia <m...@debian.org> Description: libpam-kwallet-common - KWallet integration with PAM (common files) libpam-kwallet4 - KWallet (KDE 4) integration with PAM libpam-kwallet5 - KWallet (Kf5) integration with PAM Changes: kwallet-pam (5.8.4-1+deb9u2) stretch-security; urgency=high . * Add patch Avoid-giving-an-stderr-to-kwallet.patch. The fixes for CVE-2018-10380 introduced a regression, the reorder of the close calls and creating a new socket caused that the socket is always assigned the file descriptor 2, aka stderr, causing kwalletd to break the socket when printing something. This patch reorders the calls to avoid having the socket in stderr. Checksums-Sha1: e00208fde88c0278ca71c98ee41264bc613c370d 2276 kwallet-pam_5.8.4-1+deb9u2.dsc 771c731eb497346e72d29097478439e427f49cf9 7892 kwallet-pam_5.8.4-1+deb9u2.debian.tar.xz 16da7e6c70174052e5e9800d453ee66b6268fb50 12374 kwallet-pam_5.8.4-1+deb9u2_amd64.buildinfo 2a77c83d51f040b162bd36029391631d079a875b 6022 libpam-kwallet-common_5.8.4-1+deb9u2_all.deb d0f0756d8031f04992d1945acdf1f80a9350f84d 16504 libpam-kwallet4-dbgsym_5.8.4-1+deb9u2_amd64.deb d787039fe0602a22ebc42419f78e58500e24cf05 10982 libpam-kwallet4_5.8.4-1+deb9u2_amd64.deb 655a6ab30d8946ffb5ae62dc0bb10c24e2b2de1f 16524 libpam-kwallet5-dbgsym_5.8.4-1+deb9u2_amd64.deb 31a17d369a986e8c903e4f2dd0ce0656140ddc3d 10944 libpam-kwallet5_5.8.4-1+deb9u2_amd64.deb Checksums-Sha256: 953518cb48685ff9de645617a18e4aa935f54d83fbb359f9b7fa6b288deadc92 2276 kwallet-pam_5.8.4-1+deb9u2.dsc 835513dec413ce1aa40758aa8f974e5a516520ff8b33684703adf90e5256b876 7892 kwallet-pam_5.8.4-1+deb9u2.debian.tar.xz b30811116c63138a9f78853dcc0afb3bf583677053f71bbdf55879977e5e3c1b 12374 kwallet-pam_5.8.4-1+deb9u2_amd64.buildinfo ce5d593e705352c930573be3bad90ff52d2b316b14b8cca2f570f5ea67caba5c 6022 libpam-kwallet-common_5.8.4-1+deb9u2_all.deb 55b230aed381b5464cca01f4fd6212d30119a799001c2d1af79531d0c3bbc7fa 16504 libpam-kwallet4-dbgsym_5.8.4-1+deb9u2_amd64.deb 5dff51ab097d3c4129bda787f6bb4b513d9ba01a9097129188f3730b164e5a9c 10982 libpam-kwallet4_5.8.4-1+deb9u2_amd64.deb 0a09c374e63798adb946e1db8f6a487b56e07ddd8e7b4fa62e9290bf3f62fa13 16524 libpam-kwallet5-dbgsym_5.8.4-1+deb9u2_amd64.deb 9cabac4a5d26a9dde9744b54eb1b6bdbea22acf4bc14cacc90b9af34ce25f2d5 10944 libpam-kwallet5_5.8.4-1+deb9u2_amd64.deb Files: f330151be238b42950c8ff23ad8c2380 2276 kde optional kwallet-pam_5.8.4-1+deb9u2.dsc b41b72a338f16bd06a0a23d0123710cc 7892 kde optional kwallet-pam_5.8.4-1+deb9u2.debian.tar.xz 7679537c90d138f229bbd0780c2f51ed 12374 kde optional kwallet-pam_5.8.4-1+deb9u2_amd64.buildinfo 43383400881527a67c326253bcd34d3f 6022 kde optional libpam-kwallet-common_5.8.4-1+deb9u2_all.deb 4e328bcb55df6e2d506acd5277e43540 16504 debug extra libpam-kwallet4-dbgsym_5.8.4-1+deb9u2_amd64.deb df1b1925517099774f0e40d99aac8920 10982 kde optional libpam-kwallet4_5.8.4-1+deb9u2_amd64.deb 4e7b97d1540def552878ea12df180383 16524 debug extra libpam-kwallet5-dbgsym_5.8.4-1+deb9u2_amd64.deb 4386bfee51f55f4020fe2864f2d64459 10944 kde optional libpam-kwallet5_5.8.4-1+deb9u2_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE+JIdOnQEyG4RNSIVxxl2mbKbIyoFAlrza40ACgkQxxl2mbKb IyqhtQ//Tg79PB76si9/IiFSSACdCMlDRuR5Fc2jBJnYL3zdA8Jc1Zypz1zbUW4I uBJnfA5At1RQ2KlQI0GGcSfADdAbJLnU4f3Liy/BemXB92UP2gKq7tXtCgI6qL6c L7hJEG6qTPf35yU6bvlM8gvvR7bbGBuLyYELZkUaaeODJvSxs7rksMG160T6m+Nb 6JezQjbZ+xeW9AlrG6IFccOmFsrWcByobuq7U5L9dYvSmzrkcbf722FsW/yh6ipq 1y+sVKYAcrYfJvbcV1Gqu1Rycz9PFwj1JJaChG/0qkDLJzW4D2a2lspyJXs6pdNk 88OTOMl3m2L10BNZLjsZNZNm2a3OpUEmVtnwef5HOtIQgRQ6G0FHF+DX1KXBiOnN KVpWYikx2tuoTml+DLuJemgukY1C7hYSh5Lurz0OleFa0nFBBjvJunfA4VMht1Gk tThCuWmPBJaCuGXVS+KIF2eQMk/huoFN3lbgqaKetsFfHLgW+xgPoQb3d/VQwNgP oquql0DneJPgg3IvnIiVwLG9GkTt+Tu1hMRYR4yjFWNAZVLkAOiMelHbpz3OVMYm X2iKxhcZeQ5gzRG1iTpNPURI/zw2jDlEiTqYdwYzLGy2mWf3V/dvtGuYYOGG0POa 2U+6tp5qsYuHjIjvuhKUipOz+cCuNjH51cjr7W7bE5ccJfCwv5o= =ihnq -----END PGP SIGNATURE----- Thank you for your contribution to Debian.