-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-4509-2 security@xxxxxxxxxx https://www.debian.org/security/ Moritz Muehlenhoff October 2, 2019 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : subversion Debian Bug : 936034 The security fixes for the HTTP/2 code in Apache 2 shipped in DSA 4509 unveiled a bug in Subversion which caused a regression in mod_dav_svn when used with HTTP/2. For the oldstable distribution (stretch), this problem has been fixed in version 1.9.5-1+deb9u5. We recommend that you upgrade your subversion packages. For the detailed security status of subversion please refer to its security tracker page at: https://security-tracker.debian.org/tracker/subversion Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@xxxxxxxxxxxxxxxx -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAl2U/7AACgkQEMKTtsN8 TjZFBhAAtPx65ol7Q3Co8a9BH+hDdGe0606UYG1zZjyJQn+ILGZvcVXZmNroTgrW EQ1fV34APbIRn7ooZdAYzkOM2iTF3F7c3Dagh2TTMwkPPsljvz0YRnVN17FIumns 9SiYDuQCCQR/VcNZkkZsfWZNBABac3qzovdQ4JaI+S6kx39H2JjvyJoJm9aRJsVe uJZZR1wev4XQZbafLaHYSBmbC3pJnPEjFBI5uYHagxYhpF604y0c+3siggHqJb44 FSJdLhDl9tgv7phhRqp/XI3NHvsZJ4oRHgWJic4uwiA3OmBo/DhYh5ldTrfmWzzP s3Jfk8kKCy0XinTB25v9PWOZktMeqMdTc2XcAgtxCqq3ycjbZtRBGnbgo41ckZiU NpD6CDkTzn9kWKNKZOz81G90kyHA//ka2mmI96x6mtIolYNXek9J9bkMRW55Zh96 X0Ix+Ws5XLnQHugbbgVUAbkDrNLoWFgYzI0X2Da5IXby8pSfytS3kQaA7Ul7w0aJ SwMTYdM6H+X9Hbf+tjpKONMFvBCN4nimsqO522VpXwzMiVn+GAunv989sgDtFuCc vvL/CX4j0fjhVWTPAXexgKUFYX2qQgq5JhRdPsiMD4D+3Rhvdod46CyUYBVp47qP AORYYYI1+ALBB8Tb/oLiHH4Lbt8/cc2tBsy+ofVYWVDwiD4oV6c= =TyX/ -----END PGP SIGNATURE-----