[RFR] wml://security/2022/dsa-5174.wml

Полина Вдовкина <[email protected]>
Newsgroups gmane.linux.debian.internationalization.russian
Message-ID <CALztyOpRP2ee=a2Q55jeqQdz2h8ENn6O5NXjrU6BxjbvA+Sw_g@mail.gmail.com>
$ diff -u
"C:\Users\User\simple-repo\project\english\security\2022\dsa-5174.wml"
"C:\Users\User\simple-repo\project\russian\security\2022\dsa-5174.wml"

---
"C:\\Users\\User\\simple-repo\\project\\english\\security\\2022\\dsa-5174.wml"
    2023-11-12 13:37:44.694953400 +0500

+++
"C:\\Users\\User\\simple-repo\\project\\russian\\security\\2022\\dsa-5174.wml"
    2023-11-28 22:46:59.790764200 +0500

@@ -1,26 +1,27 @@

-<define-tag description>security update</define-tag>

+#use wml::debian::translation-check
translation="164444cbecfd020d8d175f39ee937174aa31976a"

+<define-tag description>обновление системы безопасности</define-tag>

 <define-tag moreinfo>

-<p>Demi Marie Obenour discovered a flaw in GnuPG, allowing for signature

-spoofing via arbitrary injection into the status line. An attacker who

-controls the secret part of any signing-capable key or subkey in the

-victim's keyring, can take advantage of this flaw to provide a

-correctly-formed signature that some software, including gpgme, will

-accept to have validity and signer fingerprint chosen from the
attacker.</p>

+<p>Деми Мари Обенур обнаружила уязвимость в GnuPG, позволяющую подделывать

+подписи путем произвольного ввода в строку состояния. Злоумышленник,

+который контролирует секретную часть любого ключа или подраздела с

+возможностью подписи в связке ключей жертвы, может воспользоваться этим

+недостатком, чтобы предоставить правильно сформированную подпись, которую

+некоторые программы, включая gpgme, примут за действительную и выберут

+отпечаток пальца подписывающего лица у злоумышленника.</p>

-<p>For the oldstable distribution (buster), this problem has been fixed

-in version 2.2.12-1+deb10u2.</p>

+<p>Для старого дистрибутива ("buster"), эта проблема была исправлена

+в версии 2.2.12-1+deb10u2.</p>

-<p>For the stable distribution (bullseye), this problem has been fixed in

-version 2.2.27-2+deb11u2.</p>

+<p>Для настоящего дистрибутива("bullseye"), эта проблема была исправлена

+в версии 2.2.27-2+deb11u2.</p>

-<p>We recommend that you upgrade your gnupg2 packages.</p>

+<p>Мы рекомендуем вам обновить ваши пакеты gnupg2.</p>

-<p>For the detailed security status of gnupg2 please refer to its security

-tracker page at:

+<p>Для получения подробной информации о статусе безопасности gnupg2,

+пожалуйста, обратитесь к его странице отслеживания безопасности:

 <a href="https://security-tracker.debian.org/tracker/gnupg2">\

 https://security-tracker.debian.org/tracker/gnupg2</a></p>

 </define-tag>

 # do not modify the following line

 #include "$(ENGLISHDIR)/security/2022/dsa-5174.data"

-# $Id: $
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.