[ubuntu/kinetic-proposed] git 1:2.36.1-1ubuntu1 (Accepted)
Gianfranco Costamagna
locutusofborg at debian.org
Mon May 23 10:20:15 UTC 2022
git (1:2.36.1-1ubuntu1) kinetic; urgency=low
* Merge from Debian unstable. Remaining changes:
- Build diff-highlight in the contrib dir
- Don't build-depend on subversion on i386, it is not reasonable to
support on the partial arch.
git (1:2.36.1-1) unstable; urgency=low
* new upstream point release (closes: #1010720; see
RelNotes/2.36.1.txt).
git (1:2.36.0-1) unstable; urgency=low
* new upstream release (see RelNotes/2.36.0.txt).
git (1:2.35.2-1) unstable; urgency=medium
* new upstream point release (see RelNotes/2.35.2.txt).
* Addresses the security issue CVE-2022-24765: Git users might
have found themselves unexpectedly in a Git worktree, e.g. when
another user created a repository in `/tmp/.git`, in a mounted
network drive or in a scratch space. Having a Git-aware prompt
that runs `git status` (or `git diff`) and navigating to a
directory which is supposedly not a Git worktree, or opening
such a directory in an IDE with Git support such as VS Code,
could then run commands specified by that other user.
Thanks to 俞晨东 for discovering this vulnerability and
Johannes Schindelin for the mitigation.
git (1:2.35.1-1) unstable; urgency=low
* new upstream release (see RelNotes/2.35.0.txt, RelNotes/2.35.1.txt).
Date: Mon, 23 May 2022 12:09:08 +0200
Changed-By: Gianfranco Costamagna <locutusofborg at debian.org>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/git/1:2.36.1-1ubuntu1
-------------- next part --------------
Format: 1.8
Date: Mon, 23 May 2022 12:09:08 +0200
Source: git
Architecture: source
Version: 1:2.36.1-1ubuntu1
Distribution: kinetic
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Gianfranco Costamagna <locutusofborg at debian.org>
Closes: 1010720
Changes:
git (1:2.36.1-1ubuntu1) kinetic; urgency=low
.
* Merge from Debian unstable. Remaining changes:
- Build diff-highlight in the contrib dir
- Don't build-depend on subversion on i386, it is not reasonable to
support on the partial arch.
.
git (1:2.36.1-1) unstable; urgency=low
.
* new upstream point release (closes: #1010720; see
RelNotes/2.36.1.txt).
.
git (1:2.36.0-1) unstable; urgency=low
.
* new upstream release (see RelNotes/2.36.0.txt).
.
git (1:2.35.2-1) unstable; urgency=medium
.
* new upstream point release (see RelNotes/2.35.2.txt).
* Addresses the security issue CVE-2022-24765: Git users might
have found themselves unexpectedly in a Git worktree, e.g. when
another user created a repository in `/tmp/.git`, in a mounted
network drive or in a scratch space. Having a Git-aware prompt
that runs `git status` (or `git diff`) and navigating to a
directory which is supposedly not a Git worktree, or opening
such a directory in an IDE with Git support such as VS Code,
could then run commands specified by that other user.
.
Thanks to 俞晨东 for discovering this vulnerability and
Johannes Schindelin for the mitigation.
.
git (1:2.35.1-1) unstable; urgency=low
.
* new upstream release (see RelNotes/2.35.0.txt, RelNotes/2.35.1.txt).
Checksums-Sha1:
2c6c3d16a9704d0e48312374731c7951b43b37f0 2919 git_2.36.1-1ubuntu1.dsc
8d6d370d0a5dec947640ce09cb25ff697b1ca963 7004044 git_2.36.1.orig.tar.xz
5823c064bcd22eef728dc1105d9ddbf88b1296e5 720200 git_2.36.1-1ubuntu1.debian.tar.xz
4f8437a4d93ce3ae4039256b54feb61e6f5745ad 10206 git_2.36.1-1ubuntu1_source.buildinfo
Checksums-Sha256:
3bbe4a909f893a1a63fb60d832edc3bd3c3bdc4c8fc99fb7dc7297ebedb9d401 2919 git_2.36.1-1ubuntu1.dsc
405d4a0ff6e818d1f12b3e92e1ac060f612adcb454f6299f70583058cb508370 7004044 git_2.36.1.orig.tar.xz
5a6d182209cbd2074b852d06b159d76221be61c1ba96b6690640f0da1aa23b2a 720200 git_2.36.1-1ubuntu1.debian.tar.xz
abeedba5829e20b9a862b581138372f55ec8055a804c8ae6375e4de7780d86f3 10206 git_2.36.1-1ubuntu1_source.buildinfo
Files:
4dd9f50c057d0e8be29f5d34c005475b 2919 vcs optional git_2.36.1-1ubuntu1.dsc
b069d4919c8d9faf28db4fd90feb8e1d 7004044 vcs optional git_2.36.1.orig.tar.xz
a2006d45420a77a654934bea27599cd7 720200 vcs optional git_2.36.1-1ubuntu1.debian.tar.xz
438fcfd491adfa847902931883a1b3f0 10206 vcs optional git_2.36.1-1ubuntu1_source.buildinfo
Original-Maintainer: Jonathan Nieder <jrnieder at gmail.com>
More information about the kinetic-changes
mailing list