-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Jun 2024 13:22:35 +0200 Source: gnutls28 Binary: gnutls-bin gnutls-bin-dbgsym guile-gnutls guile-gnutls-dbgsym libgnutls-dane0 libgnutls-dane0-dbgsym libgnutls-openssl27 libgnutls-openssl27-dbgsym libgnutls28-dev libgnutls30 libgnutls30-dbgsym libgnutlsxx30 libgnutlsxx30-dbgsym Architecture: armhf Version: 3.7.9-2+deb12u3 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-arm-01) Changed-By: Andreas Metzler Description: gnutls-bin - GNU TLS library - commandline utilities guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dane0 - GNU TLS library - DANE security support libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30 - GNU TLS library - main runtime library libgnutlsxx30 - GNU TLS library - C++ runtime library Closes: 1067463 1067464 Changes: gnutls28 (3.7.9-2+deb12u3) bookworm; urgency=medium . * Update to 3.7.11: + Replace 60-auth-rsa_psk-side-step-potential-side-channel.patch 61-x509-detect-loop-in-certificate-chain.patch 62-rsa-psk-minimize-branching-after-decryption.patch with versions from gnutls_3_7_x branch instead of manual backports from 3.8.x. + Add 53-fips-fix-checking-on-hash-algorithm-used-in-ECDSA.patch (Fix checking on hash algorithm used in ECDSA in FIPS mode) and 54-fips-mark-composite-signature-API-not-approved.patch (Mark composite signature API non-approved in FIPS mode.) to allow straight cherry-picking of later patches. + 63_01-gnutls_x509_trust_list_verify_crt2-remove-length-lim.patch libgnutls: Fixed a bug where certtool crashed when verifying a certificate chain with more than 16 certificates. Reported by William Woodruff (#1525) and yixiangzhike (#1527). [GNUTLS-SA-2024-01-23, CVSS: medium] [CVE-2024-28835] Closes: #1067463 + 63_02-nettle-avoid-normalization-of-mpz_t-in-deterministic.patch libgnutls: Fix side-channel in the deterministic ECDSA. Reported by George Pantelakis (#1516). [GNUTLS-SA-2023-12-04, CVSS: medium] [CVE-2024-28834] Closes: #1067464 + 63_03-serv-fix-memleak-when-a-connected-client-disappears.patch Fix a memleak in gnutls-serv when a connected client disappears. + 63_04-lib-fix-a-segfault-in-_gnutls13_recv_end_of_early_da.patch Fix a segfault in _gnutls13_recv_end_of_early_data(). + 63_05-lib-fix-a-potential-segfault-in-_gnutls13_recv_finis.patch Fix a potential segfault in _gnutls13_recv_finished(). Checksums-Sha1: fc472ed8f1c5fbfc193636eb838c9b603c49a888 842108 gnutls-bin-dbgsym_3.7.9-2+deb12u3_armhf.deb 3f106db48ad4adad0d84c10646452da794de61ce 615848 gnutls-bin_3.7.9-2+deb12u3_armhf.deb f5201e89e89d64f57a025b9d660deaa00fb45cd2 11096 gnutls28_3.7.9-2+deb12u3_armhf-buildd.buildinfo 30f72d57a4101b9a83d883ccfabb7319f66de6d9 253684 guile-gnutls-dbgsym_3.7.9-2+deb12u3_armhf.deb 6f5b424c762d4280326434eeef4e7a2aa33df367 453688 guile-gnutls_3.7.9-2+deb12u3_armhf.deb ff1d6d917b2f4304afcaa70ae2f5efadf59ea1c2 90364 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_armhf.deb bdad9d4113c76768373b452cc91bb5693dcda3f9 399776 libgnutls-dane0_3.7.9-2+deb12u3_armhf.deb 84cc2875867dfa8dbd820351cd5279f72d170281 91636 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_armhf.deb 12acc92829d9c2de4735a394efab88b1e6404a13 399624 libgnutls-openssl27_3.7.9-2+deb12u3_armhf.deb e73ad0277b00f3fcc7b3817ae88b7eeeb57cf0d5 1286368 libgnutls28-dev_3.7.9-2+deb12u3_armhf.deb 93ab079ac3c900997c099c9442fb968acde6faed 2026120 libgnutls30-dbgsym_3.7.9-2+deb12u3_armhf.deb a843925717ceadc2d39ec38088b06fdce44d46b9 1320396 libgnutls30_3.7.9-2+deb12u3_armhf.deb c15ded049b8a8b25ce9c9cf85ffe29185a5201a5 49336 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_armhf.deb da1efad9d9b30d4067e0ed5417ca66187ca9eb1c 12188 libgnutlsxx30_3.7.9-2+deb12u3_armhf.deb Checksums-Sha256: c8c59ccf5f3ee7be53196d3915e79af0d17425fc1890cc02344a28f2d6c3bb18 842108 gnutls-bin-dbgsym_3.7.9-2+deb12u3_armhf.deb 77a9c1cb1b3eaddab9d2072acab2da4348b25cbcfc434fc335a817e3b5e5fce6 615848 gnutls-bin_3.7.9-2+deb12u3_armhf.deb 7e0a99bfde1655ee95cc73387b471a1937991fb5a5961570c5c2b23b232eb7ca 11096 gnutls28_3.7.9-2+deb12u3_armhf-buildd.buildinfo a4db4e1cbe3d6127bd2752cdc37d6a530f0a7264759aa320a32a96f7f6730cfa 253684 guile-gnutls-dbgsym_3.7.9-2+deb12u3_armhf.deb f9bec67995717530e4f91d284f0a8dd82fcf8d45963908c5464bd17360549e9c 453688 guile-gnutls_3.7.9-2+deb12u3_armhf.deb b9391cbb6e7a844f6f41a291621ef142d17dbfc95123c3c71022a5d5f479164f 90364 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_armhf.deb 352a67d33577607f19f73d96c942dabf4e92ac3d638732c4e869ddf4a8a332c6 399776 libgnutls-dane0_3.7.9-2+deb12u3_armhf.deb 885bfd524c5e808d1fa3cf16ad96c10fb9c288a849b0745f8d376b8ea6ed3a5e 91636 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_armhf.deb 2980fc98d20bfcd0433ab2f3c883d778dcb15813cb92cd8e750220eb9ffb2411 399624 libgnutls-openssl27_3.7.9-2+deb12u3_armhf.deb 815d10ca0f400d4f4db0134e51e95ed27124d1e86a8cac3b003d7888ed5f9f82 1286368 libgnutls28-dev_3.7.9-2+deb12u3_armhf.deb 8fcb09fa3251970544c5189ea7cbffd0ca98062c87a0ddf758c0ac82980c217a 2026120 libgnutls30-dbgsym_3.7.9-2+deb12u3_armhf.deb eee53dd06ee61624a3cb9a20f6a6f26dced4a9d3adeef91985d40921b599d45e 1320396 libgnutls30_3.7.9-2+deb12u3_armhf.deb e1d3b7e6e96693c2d95f13ac66253ed206a13fe67672ca966552039d91c56246 49336 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_armhf.deb a983c9e83a3c50027e4e2a92e8e60dcf0d82d3a51c0ca4b52aa046d8b1b390a5 12188 libgnutlsxx30_3.7.9-2+deb12u3_armhf.deb Files: 73ccca32fe1e547920eb45c7d8268ddd 842108 debug optional gnutls-bin-dbgsym_3.7.9-2+deb12u3_armhf.deb a601ab8c9626bdaaf933d1a32456e1ae 615848 net optional gnutls-bin_3.7.9-2+deb12u3_armhf.deb 910940450ea9257e89781435cb98584f 11096 libs optional gnutls28_3.7.9-2+deb12u3_armhf-buildd.buildinfo b15cb28a619621778f2b1050c3272225 253684 debug optional guile-gnutls-dbgsym_3.7.9-2+deb12u3_armhf.deb 6afc6a30582a004cd02d89bf76515c65 453688 lisp optional guile-gnutls_3.7.9-2+deb12u3_armhf.deb 2cba1cfd8d48db3bf2ecd9f8fe8856af 90364 debug optional libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_armhf.deb f954200d6567c3e2fae0fb41242e2e97 399776 libs optional libgnutls-dane0_3.7.9-2+deb12u3_armhf.deb d7003415121420acd84a8e12e0ab313b 91636 debug optional libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_armhf.deb 620e32bc364266e9ce6cfe99240c46b7 399624 libs optional libgnutls-openssl27_3.7.9-2+deb12u3_armhf.deb 50f49b07b4aa14e62dc29cf556378517 1286368 libdevel optional libgnutls28-dev_3.7.9-2+deb12u3_armhf.deb 39a1d68bf172e2c98ba1d72805d8402d 2026120 debug optional libgnutls30-dbgsym_3.7.9-2+deb12u3_armhf.deb 56fc689d175746728378976ea95a93e4 1320396 libs optional libgnutls30_3.7.9-2+deb12u3_armhf.deb 852ab03116dd5ac853ae8b12c2bf09d0 49336 debug optional libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_armhf.deb 43a8062944617edca9d6e738df9b07d8 12188 libs optional libgnutlsxx30_3.7.9-2+deb12u3_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEELfAsbDZr65zRgOsKct6XE2dptMYFAmZvV2UACgkQct6XE2dp tMZLag//T/xR7OSMoSoumKD0D+goJFqlghRFCL/jUPBDQCtH4DUlFykX1LsYT6ro dfZwgzScvQceyjHedc18JdMHRfVKir/IE5nCqYiUBONnqPsFNTqBoaZKs+4RFaCv gURK57uaw1AicdOY4+YORON6R0dtBYa+ozheNgGn644eqw8BvXc+QaDi8SQNIlub Ire4/zhRp5xPPGc9DLCPw57Hv5/MmzhQk/RNcgyOOdDX/6gcbIgwspuXS3UfkGHK YGAc3QloMTDFzohitlGlq1uEp6adm/P9B9+LxcBcJYm+q3pDXQRmvXYz4RWTUs/I oi2q5Jl3evHDJTQoBLNe4LcPugbwSK+ZHsdID9Pm9e1IQYyUQMMv29YdJQ2Ot+sh B60x7WXHN51uHxI5ftd4AIj/MpCS0QtvN02tdXTdNqJv2N+Mm0h++povnSvaTOBU 4SlN2f6+twPlVXBTJlaqZeo5ji8Ts3MQ7IADhUH7Gv9kYWq4wxdOxYv31+Kz/A4C iOrdhDxCEQMats9mSRCfgcWFPbpifkEUYEKOx6KfZLuTxHJrYdsCl0hjoyWjgHuC WnTpElSk0Nkm/1Z7lTWl6iR/hoCd97qpvvsbA1JL+jPyhLT6czRpMgsd5If6G0O3 0XQoKwriNsf7CLDd6FZwCGEA28oAdKkKG4VvhOXMelG6xhIhtGU= =zb51 -----END PGP SIGNATURE-----