Format: 1.8
Date: Mon, 01 Sep 2025 08:24:14 +0000
Source: python-eventlet
Binary: python-eventlet-doc python3-eventlet
Architecture: source all
Version: 0.26.1-7+deb11u2~bpo11+1
Distribution: bullseye
Urgency: medium
Maintainer: Debian Python Team <team+python@tracker.debian.org>
Changed-By: Jenkins <jenkins@bullseye-victoria.infomaniak.ch>
Description:
 python-eventlet-doc - concurrent networking library - doc
 python3-eventlet - concurrent networking library
Closes: 1112515
Changes:
 python-eventlet (0.26.1-7+deb11u2~bpo11+1) UNRELEASED; urgency=medium
 .
   [ Thomas Goirand ]
   * CVE-2025-58068: Eventlet is a concurrent networking library for Python.
     Prior to version 0.40.3, the Eventlet WSGI parser is vulnerable to HTTP
     Request Smuggling due to improper handling of HTTP trailer sections. This
     vulnerability could enable attackers to, bypass front-end security
     controls, launch targeted attacks against active site users, and poison web
     caches. Applied upstream patch (Closes: #1112515):
     - Fix_request_smuggling_vulnerability_by_discarding_trailers.patch
   * Add openstack-pkg-tools as build-depends and include pkgos.make in d/rules.
 .
   [ Jenkins ]
   * Rebuilt by bop.
Checksums-Sha1:
 7a6265213139845c17a146484fadf6bc83b8550e 1708 python-eventlet_0.26.1-7+deb11u2~bpo11+1.dsc
 d3912079a8c92e1a38e6232ae359d352a53aed46 26624 python-eventlet_0.26.1-7+deb11u2~bpo11+1.debian.tar.xz
 2f6e3cecfc64e70d83e129fc3809112aec4681d3 162872 python-eventlet-doc_0.26.1-7+deb11u2~bpo11+1_all.deb
 99c05511a1aec138560102b4f707117c445b547e 7966 python-eventlet_0.26.1-7+deb11u2~bpo11+1_amd64.buildinfo
 88274459d37e5a87c184164509c53b5f765776f9 175344 python3-eventlet_0.26.1-7+deb11u2~bpo11+1_all.deb
Checksums-Sha256:
 7263c046792fdf313b6113bee3cbba168e0cb9d93db0e7772563e7c71e6df205 1708 python-eventlet_0.26.1-7+deb11u2~bpo11+1.dsc
 4133b0daca41a9a0a547d40c9de95c55f34bf3fbac44d19581973336346f5723 26624 python-eventlet_0.26.1-7+deb11u2~bpo11+1.debian.tar.xz
 04cdddabee0c66b8a8d492fad0cb2e55f0c6c3e02ae1f82196c10da1b44ef9da 162872 python-eventlet-doc_0.26.1-7+deb11u2~bpo11+1_all.deb
 9f57694192d502f00941e359c49e01618948f3862f71c4cacd8fdbd75ed41fd4 7966 python-eventlet_0.26.1-7+deb11u2~bpo11+1_amd64.buildinfo
 5846b6e478b891f46e53c68eec7cbeec91489135a70bdb4753c967015fb64884 175344 python3-eventlet_0.26.1-7+deb11u2~bpo11+1_all.deb
Files:
 6fea2338d18580848a03ff2c75c7b12c 1708 python optional python-eventlet_0.26.1-7+deb11u2~bpo11+1.dsc
 742dfaba0bebc2dfd6c6a306cca99a95 26624 python optional python-eventlet_0.26.1-7+deb11u2~bpo11+1.debian.tar.xz
 636690dcec93660a32fe003ab561352d 162872 doc optional python-eventlet-doc_0.26.1-7+deb11u2~bpo11+1_all.deb
 3930c1c502ccbec06cd0561d3ce669c7 7966 python optional python-eventlet_0.26.1-7+deb11u2~bpo11+1_amd64.buildinfo
 35bb7ae4a10ad364d8eee9229797bdf2 175344 python optional python3-eventlet_0.26.1-7+deb11u2~bpo11+1_all.deb
