Changelog
salt (3004.1+dfsg-1) unstable; urgency=medium
* New upstream security/bugfix release. (Closes: #1008945)
- Sign authentication replies to prevent MiTM (CVE-2022-22935)
- Prevent job and fileserver replays (CVE-2022-22936)
- Sign pillar data to prevent MiTM attacks. (CVE-2202-22934)
- Fixed targeting bug, especially visible when using syndic and user auth.
(CVE-2022-22941) (#60413)
- Fix denial of service in junos ifconfig output parsing.
* d/watch: Drop number from repack suffix
* Refresh patches
* Mark test_list_available_packages requiring network
* Rely on pytest-skip-markers 1.1.0-3 that supports NO_INTERNET
* Don't rely on importlib.metadata, it's still not ready for our usage
(Closes: #1008896)
* test_aptpkg.py: Fix UnboundLocalError: local variable 'test_repo'
(Closes: #1006036)
* Update my email address to @debian.org
-- Benjamin Drung <email address hidden> Sat, 16 Apr 2022 03:43:12 +0200