• [RFR] wml://security/2022/dsa-506{4,5}.wml

    From Jean-Pierre Giraud@21:1/5 to All on Thu Feb 3 12:30:02 2022
    This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --------------RjBZte2TGOyzspJVVdIA67gS
    Content-Type: multipart/mixed; boundary="------------pBlt5qo2EeUof9Mw46IWCX80"

    --------------pBlt5qo2EeUof9Mw46IWCX80
    Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: base64

    Qm9uam91ciwNCmRldXggbm91dmVsbGVzIGFubm9uY2VzIGRlIHPDqWN1cml0w6kgb250IMOp dMOpIHB1Ymxpw6llcy4gRW4gdm9pY2kgdW5lIA0KdHJhZHVjdGlvbi4gTWVyY2kgZCdhdmFu Y2UgcG91ciB2b3MgcmVsZWN0dXJlcy4NCkFtaWNhbGVtZW50LA0KamlwZWdlDQo= --------------pBlt5qo2EeUof9Mw46IWCX80
    Content-Type: text/vnd.wap.wml; charset=UTF-8; name="dsa-5065.wml" Content-Disposition: attachment; filename="dsa-5065.wml" Content-Transfer-Encoding: base64

    I3VzZSB3bWw6OmRlYmlhbjo6dHJhbnNsYXRpb24tY2hlY2sgdHJhbnNsYXRpb249IjU5YmVl NTZiYTQ3ZWIyOTA1OGYwOTVlOWNiNGI2MGJhODIxN2ViYjAiIG1haW50YWluZXI9IkplYW4t UGllcnJlIEdpcmF1ZCIKPGRlZmluZS10YWcgZGVzY3JpcHRpb24+TWlzZSDDoCBqb3VyIGRl IHPDqWN1cml0w6k8L2RlZmluZS10YWc+CjxkZWZpbmUtdGFnIG1vcmVpbmZvPgo8cD5JUHl0 aG9uLCB1biBpbnRlcnByw6l0ZXVyIGRlIGNvbW1hbmRlIFB5dGhvbiBpbnRlcmFjdGlmIMOp dm9sdcOpLCBleMOpY3V0YWl0CmRlcyBmaWNoaWVycyBkZSBjb25maWd1cmF0aW9uIMOgIHBh cnRpciBkdSByw6lwZXJ0b2lyZSBkZSB0cmF2YWlsIGVuIGNvdXJzIGNlCnF1aSBwb3V2YWl0 IGF2b2lyIHBvdXIgY29uc8OpcXVlbmNlcyBkZXMgYXR0YXF1ZXMgZW50cmUgdXRpbGlzYXRl dXJzIHMnaWwKZXN0IGV4w6ljdXTDqSDDoCBwYXJ0aXIgZCd1biByw6lwZXJ0b2lyZSBhdXF1 ZWwgcGx1c2lldXJzIHV0aWxpc2F0ZXVycyBvbnQKYWNjw6hzIGVuIMOpY3JpdHVyZS48L3A+ Cgo8cD5Qb3VyIGxhIGRpc3RyaWJ1dGlvbiBvbGRzdGFibGUgKEJ1c3RlciksIGNlIHByb2Js w6htZSBhIMOpdMOpIGNvcnJpZ8OpIGRhbnMKbGEgdmVyc2lvbsKgNS44LjAtMStkZWIxMHUx LjwvcD4KCjxwPlBvdXIgbGEgZGlzdHJpYnV0aW9uIHN0YWJsZSAoQnVsbHNleWUpLCBjZSBw cm9ibMOobWUgYSDDqXTDqSBjb3JyaWfDqSBkYW5zCmxhIHZlcnNpb27CoDcuMjAuMC0xK2Rl YjExdTEuPC9wPgoKPHA+Tm91cyB2b3VzIHJlY29tbWFuZG9ucyBkZSBtZXR0cmUgw6Agam91 ciB2b3MgcGFxdWV0cyBpcHl0aG9uLjwvcD4KCjxwPlBvdXIgZGlzcG9zZXIgZCd1biDDqXRh dCBkw6l0YWlsbMOpIHN1ciBsYSBzw6ljdXJpdMOpIGRlIGlweXRob24sIHZldWlsbGV6CmNv bnN1bHRlciBzYSBwYWdlIGRlIHN1aXZpIGRlIHPDqWN1cml0w6kgw6AgbCdhZHJlc3NlwqA6 CjxhIGhyZWY9Imh0dHBzOi8vc2VjdXJpdHktdHJhY2tlci5kZWJpYW4ub3JnL3RyYWNrZXIv aXB5dGhvbiI+XApodHRwczovL3NlY3VyaXR5LXRyYWNrZXIuZGViaWFuLm9yZy90cmFja2Vy L2lweXRob248L2E+LjwvcD4KPC9kZWZpbmUtdGFnPgoKIyBkbyBub3QgbW9kaWZ5IHRoZSBm b2xsb3dpbmcgbGluZQojaW5jbHVkZSAiJChFTkdMSVNIRElSKS9zZWN1cml0eS8yMDIyL2Rz YS01MDY1LmRhdGEiCiMgJElkOiAkCg==
    --------------pBlt5qo2EeUof9Mw46IWCX80
    Content-Type: text/vnd.wap.wml; charset=UTF-8; name="dsa-5064.wml" Content-Disposition: attachment; filename="dsa-5064.wml" Content-Transfer-Encoding: base64

    I3VzZSB3bWw6OmRlYmlhbjo6dHJhbnNsYXRpb24tY2hlY2sgdHJhbnNsYXRpb249Ijg4ZmRi MzJmNGUxNGRmMjI3OTk5MzQ4YmZhYTNjMjAwZGQ5NWE0MGYiIG1haW50YWluZXI9IkplYW4t UGllcnJlIEdpcmF1ZCIKPGRlZmluZS10YWcgZGVzY3JpcHRpb24+TWlzZSDDoCBqb3VyIGRl IHPDqWN1cml0w6k8L2RlZmluZS10YWc+CjxkZWZpbmUtdGFnIG1vcmVpbmZvPgo8cD5MJ2Fi c2VuY2UgZGUgdsOpcmlmaWNhdGlvbiBkZXMgZW50csOpZXMgZGFucyBweXRob24tbmJ4bXBw LCB1bmUKYmlibGlvdGjDqHF1ZSBQeXRob24gcG91ciBKYWJiZXIvWE1QUCwgcG91dmFpdCBh dm9pciBwb3VyIGNvbnPDqXF1ZW5jZSB1bgpkw6luaSBkZSBzZXJ2aWNlIGRhbnMgbGVzIGNs aWVudHMgYmFzw6lzIHN1ciBlbGxlIChjb21tZSBHYWppbSkuPC9wPgoKPHA+TGEgZGlzdHJp YnV0aW9uIG9sZHN0YWJsZSAoQnVzdGVyKSBuJ2VzdCBwYXMgY29uY2VybsOpZS48L3A+Cgo8 cD5Qb3VyIGxhIGRpc3RyaWJ1dGlvbiBzdGFibGUgKEJ1bGxzZXllKSwgY2UgcHJvYmzDqG1l IGEgw6l0w6kgY29ycmlnw6kgZGFucwpsYSB2ZXJzaW9uwqAyLjAuMi0xK2RlYjExdTEuPC9w PgoKPHA+Tm91cyB2b3VzIHJlY29tbWFuZG9ucyBkZSBtZXR0cmUgw6Agam91ciB2b3MgcGFx dWV0cyBweXRob24tbmJ4bXBwLjwvcD4KCjxwPlBvdXIgZGlzcG9zZXIgZCd1biDDqXRhdCBk w6l0YWlsbMOpIHN1ciBsYSBzw6ljdXJpdMOpIGRlIHB5dGhvbi1uYnhtcHAsCnZldWlsbGV6 IGNvbnN1bHRlciBzYSBwYWdlIGRlIHN1aXZpIGRlIHPDqWN1cml0w6kgw6AgbCdhZHJlc3Nl wqA6CjxhIGhyZWY9Imh0dHBzOi8vc2VjdXJpdHktdHJhY2tlci5kZWJpYW4ub3JnL3RyYWNr ZXIvcHl0aG9uLW5ieG1wcCI+XApodHRwczovL3NlY3VyaXR5LXRyYWNrZXIuZGViaWFuLm9y Zy90cmFja2VyL3B5dGhvbi1uYnhtcHA8L2E+LjwvcD4KPC9kZWZpbmUtdGFnPgoKIyBkbyBu b3QgbW9kaWZ5IHRoZSBmb2xsb3dpbmcgbGluZQojaW5jbHVkZSAiJChFTkdMSVNIRElSKS9z ZWN1cml0eS8yMDIyL2RzYS01MDY0LmRhdGEiCiMgJElkOiAkCg==

    --------------pBlt5qo2EeUof9Mw46IWCX80--

    --------------RjBZte2TGOyzspJVVdIA67gS--

    -----BEGIN PGP SIGNATURE-----

    wsF5BAABCAAjFiEEcH/R3vmpi4JWBoDfeBP2a44wMXIFAmH7uvIFAwAAAAAACgkQeBP2a44wMXIZ Ng/6A3AL7r727H/F9U9UMT2sAoWNiy+Wlwj67pSG/9mebl4UXOl/JlEcLsmlg59u8cuTEhGjEyEU 5qN6OD1ud9fORVFc2ClN1b0NEFtAOUh9NA6BRzwo/7osp+mz2MS5f226YHaExHBya/RhlTh7kB5F 2Ij3x+h5RGrNxc92TiN+HKEo6Oq87EyjSima1TUXVeCzXqbm2M8MK29AB4QXz5GYfgG6WZ2PTokT pxQtaGbNyDa/dUX+K6vY8eVjbCHcVmUBZA0r2HdYraiRcpzmDjjCqY/WgpfTYohmD60HGkWQ3lI/ jmq7Npn+UdrE3jBMFLysVmB0HGoR60UcE5yDNJBexPJgUUBKl9FVQRJl6TVKLLXFlTuiZcG8DmfP 9vmqAXouJ/LGN2GVuDZfquosLkXKgxGQq3bsJ1Nb9Dy7mw3pQ3TlvDohLbTX+qDqYgNCyC/KFtY2 mtI0scj1Xj5KG5VNIQHu+fZUwJ4Ts1R1/ltCn3EXc4zLVhWVf1sxWP0Ut//jO6eQEjZr07d/VhzV f5WujGKmzWy+mDjjeQEzQ4wMq10ebe2EofizIJGArFzWTjkOvM7lmsZbf8MaEfpZp4Ee1U0UVbiD YzNRnSKCvxCtsD1pu7U1wohtZSI57J66R9Iisw9qpENTJ5SDyh/AKrBOuukuoOmbTrd7aGIrs36m HtU=
    =c1ts
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From bubub@no-log.org@21:1/5 to All on Thu Feb 3 12:40:01 2022
    bonjour,
    suggestions,

    amicalement,
    bubu



    Bonjour,
    deux nouvelles annonces de sécurité ont été publiées. En voici une traduction. Merci d'avance pour vos relectures.
    Amicalement,
    jipege


    --- dsa-5065.wml 2022-02-03 12:25:52.462801293 +0100
    +++ dsa-5065.relu.wml 2022-02-03 12:27:45.136790603 +0100
    @@ -2,9 +2,9 @@
    <define-tag description>Mise à jour de sécurité</define-tag>
    <define-tag moreinfo>
    <p>IPython, un interpréteur de commande Python interactif évolué, exécutait
    -des fichiers de configuration à partir du répertoire de travail en cours ce +des fichiers de configuration à partir du répertoire de travail en cours, ce
    qui pouvait avoir pour conséquences des attaques entre utilisateurs s'il
    -est exécuté à partir d'un répertoire auquel plusieurs utilisateurs ont +était exécuté à partir d'un répertoire auquel plusieurs utilisateurs ont
    accès en écriture.</p>

    <p>Pour la distribution oldstable (Buster), ce problème a été corrigé dans

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)