-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Jun 2024 13:22:35 +0200 Source: gnutls28 Binary: gnutls-bin gnutls-bin-dbgsym guile-gnutls guile-gnutls-dbgsym libgnutls-dane0 libgnutls-dane0-dbgsym libgnutls-openssl27 libgnutls-openssl27-dbgsym libgnutls28-dev libgnutls30 libgnutls30-dbgsym libgnutlsxx30 libgnutlsxx30-dbgsym Architecture: mips64el Version: 3.7.9-2+deb12u3 Distribution: bookworm Urgency: medium Maintainer: mipsel Build Daemon (mipsel-osuosl-03) Changed-By: Andreas Metzler Description: gnutls-bin - GNU TLS library - commandline utilities guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dane0 - GNU TLS library - DANE security support libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30 - GNU TLS library - main runtime library libgnutlsxx30 - GNU TLS library - C++ runtime library Closes: 1067463 1067464 Changes: gnutls28 (3.7.9-2+deb12u3) bookworm; urgency=medium . * Update to 3.7.11: + Replace 60-auth-rsa_psk-side-step-potential-side-channel.patch 61-x509-detect-loop-in-certificate-chain.patch 62-rsa-psk-minimize-branching-after-decryption.patch with versions from gnutls_3_7_x branch instead of manual backports from 3.8.x. + Add 53-fips-fix-checking-on-hash-algorithm-used-in-ECDSA.patch (Fix checking on hash algorithm used in ECDSA in FIPS mode) and 54-fips-mark-composite-signature-API-not-approved.patch (Mark composite signature API non-approved in FIPS mode.) to allow straight cherry-picking of later patches. + 63_01-gnutls_x509_trust_list_verify_crt2-remove-length-lim.patch libgnutls: Fixed a bug where certtool crashed when verifying a certificate chain with more than 16 certificates. Reported by William Woodruff (#1525) and yixiangzhike (#1527). [GNUTLS-SA-2024-01-23, CVSS: medium] [CVE-2024-28835] Closes: #1067463 + 63_02-nettle-avoid-normalization-of-mpz_t-in-deterministic.patch libgnutls: Fix side-channel in the deterministic ECDSA. Reported by George Pantelakis (#1516). [GNUTLS-SA-2023-12-04, CVSS: medium] [CVE-2024-28834] Closes: #1067464 + 63_03-serv-fix-memleak-when-a-connected-client-disappears.patch Fix a memleak in gnutls-serv when a connected client disappears. + 63_04-lib-fix-a-segfault-in-_gnutls13_recv_end_of_early_da.patch Fix a segfault in _gnutls13_recv_end_of_early_data(). + 63_05-lib-fix-a-potential-segfault-in-_gnutls13_recv_finis.patch Fix a potential segfault in _gnutls13_recv_finished(). Checksums-Sha1: 1c2de42b9bb7046bd531560c94e6532006bd392b 872500 gnutls-bin-dbgsym_3.7.9-2+deb12u3_mips64el.deb 906ee1280e37cb1c1d7e44416836a0f66a491149 619680 gnutls-bin_3.7.9-2+deb12u3_mips64el.deb 05e1b82c260b1a0c3ea4a44639a0c20a72d4710b 11172 gnutls28_3.7.9-2+deb12u3_mips64el-buildd.buildinfo c351d25e25952312d623762f04278d89a8afe12e 274120 guile-gnutls-dbgsym_3.7.9-2+deb12u3_mips64el.deb ca05e2fda0f6161695af8994c5dd567df3de9c28 450740 guile-gnutls_3.7.9-2+deb12u3_mips64el.deb 2111b214ce36de80b2b38ebe7ed43ea5cb9e9bf2 95196 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_mips64el.deb ce187d48903fabe5bfb3bd73e2b2e681d0bdfc58 403812 libgnutls-dane0_3.7.9-2+deb12u3_mips64el.deb b3ac5aa0a0aee571503f81051159cfa1acf3888e 96372 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_mips64el.deb 2e95e3a539f31ea07965667afc6286b7be5e0aec 403396 libgnutls-openssl27_3.7.9-2+deb12u3_mips64el.deb b2148b6334593468dfbcf21b62b332fcf5ce5662 1355872 libgnutls28-dev_3.7.9-2+deb12u3_mips64el.deb eef060bce65cbdaadc078ebc08b6b4f7237e0a37 2050464 libgnutls30-dbgsym_3.7.9-2+deb12u3_mips64el.deb 6c74a73d17797de7aaf73a852c4bbbc96c227c29 1229028 libgnutls30_3.7.9-2+deb12u3_mips64el.deb 8fdfc075e4fd237153f9a69bcaae3c145a39cdeb 49100 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_mips64el.deb 7f2755c677147ab0841a3d8e5058709ba7acc536 13124 libgnutlsxx30_3.7.9-2+deb12u3_mips64el.deb Checksums-Sha256: 0590aad573de4a9d4b555a5119b1d37c2a2e7da78e6dd233cb52b6613bc5e1e0 872500 gnutls-bin-dbgsym_3.7.9-2+deb12u3_mips64el.deb 24cbf44866e2760de5609399c36396a5a6582d2d0ce289cfdd305c3ffd0be803 619680 gnutls-bin_3.7.9-2+deb12u3_mips64el.deb c8eb5ce07461322285faa6e7faacd8a74df8b1fea94e71d03be0787e913b96e0 11172 gnutls28_3.7.9-2+deb12u3_mips64el-buildd.buildinfo 1df1313b56a592ce94865e54c127ee1586d4311b15cf3cc617d70916d8d7a4f4 274120 guile-gnutls-dbgsym_3.7.9-2+deb12u3_mips64el.deb caff1068695125444bde5459e82675df205c973c564b4e1df516c482d19f2c53 450740 guile-gnutls_3.7.9-2+deb12u3_mips64el.deb 5c0884590b0251917868bf4e2dc0cc3d30792f0ae55aca9056c5a7e319b2e5e7 95196 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_mips64el.deb 3cf667c9a7de77cc128f9f55cc956a04f01aca7643deb1ecedcc782919f4eec9 403812 libgnutls-dane0_3.7.9-2+deb12u3_mips64el.deb 786d4d72d67beadf216890ea90ea3fc684c2b1439408bcdb95f044610c79e3bf 96372 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_mips64el.deb ad05664f95628dcb930bfd03a3175185d64e66b4eb807cbbb98d79a88a79f3b8 403396 libgnutls-openssl27_3.7.9-2+deb12u3_mips64el.deb 131f48e17a8a73676aa04da373fed5e61dbaab38ac06968c297951bc178708b1 1355872 libgnutls28-dev_3.7.9-2+deb12u3_mips64el.deb 5750ae1624e3218e6551e207d0628befd038facb938948429e34f12f469d3d06 2050464 libgnutls30-dbgsym_3.7.9-2+deb12u3_mips64el.deb 15258f93853a154ceca9123315cd06860cac28e20ef445c8113979388b235210 1229028 libgnutls30_3.7.9-2+deb12u3_mips64el.deb b7586dd62ed6f29068115515607788b1fd90b5a85d2604daa6f32ec84d88b96c 49100 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_mips64el.deb b6bdbe152202a36457bd73efc08f3016d3766c810a75b2ca3b7251c567b0f6cb 13124 libgnutlsxx30_3.7.9-2+deb12u3_mips64el.deb Files: b836810049541dc513814bf2c07fbf5a 872500 debug optional gnutls-bin-dbgsym_3.7.9-2+deb12u3_mips64el.deb 5ad5ed5d1fd332dafea8897c18edf8c5 619680 net optional gnutls-bin_3.7.9-2+deb12u3_mips64el.deb cbdc7c3117e439c9556c3fdc65c3218b 11172 libs optional gnutls28_3.7.9-2+deb12u3_mips64el-buildd.buildinfo d4d9edb81bf64b83785ce569a687678a 274120 debug optional guile-gnutls-dbgsym_3.7.9-2+deb12u3_mips64el.deb 683d24980ec76c356232730552c7742a 450740 lisp optional guile-gnutls_3.7.9-2+deb12u3_mips64el.deb 57dae0e6bcfe2902723c247db0df244c 95196 debug optional libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_mips64el.deb 870be211578d0fb7de4ea635a489909c 403812 libs optional libgnutls-dane0_3.7.9-2+deb12u3_mips64el.deb a12a89348de7678feb6487dbb1a1a187 96372 debug optional libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_mips64el.deb 5cd76e7fe4d2974a598c223e82a57ceb 403396 libs optional libgnutls-openssl27_3.7.9-2+deb12u3_mips64el.deb 0a0eb28852012d676e0811eff0a42711 1355872 libdevel optional libgnutls28-dev_3.7.9-2+deb12u3_mips64el.deb 182f70cd8c05990dd06b08485b0cdbf4 2050464 debug optional libgnutls30-dbgsym_3.7.9-2+deb12u3_mips64el.deb 95b758179258ce790ed55372e68ff489 1229028 libs optional libgnutls30_3.7.9-2+deb12u3_mips64el.deb 24746d496c27fa91557e31aaba128436 49100 debug optional libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_mips64el.deb 7c376e764230480b1b9100b73b9eeea3 13124 libs optional libgnutlsxx30_3.7.9-2+deb12u3_mips64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEunmvxaaGKuI+hxxClmZGXOM83t8FAmZvXTwACgkQlmZGXOM8 3t8EExAAzOdWhC+N24bQ42ovr1Bbg65cLW5sTBEkV/ddset0gUU7pOjYAvGcUxZ4 5PTBw7ldUJ1WIDHtABu9IPIjdX27tJqJLdF1SGzpWZNtkg8PciOaYCjvPlgt8GcF KSht3NXpQKOjtQ9xIkOJcDxP/3q1F5b4TmSKqmhiNM48BwVQQtrKuATpu341saa5 4TFJOlcc/6FTDMwwgyVN+gIZ6NYAr4ha7PV9LVNAMmoCo4Rrq5h7LlAqOaWPKBNg sjU8g1nyfdrWZTT7pQ3Skk0b3aF3h92xxiNOwvt/bm6St0NWW5uTngYIVGIa2B1J JNQFCFvony1Z1VJxSBE1KPZWZ84DriX9VaD8gV8BLfhKSyRi+aOsIaQoQRsAQEQW zh7v0MgB4fBO1LCTBeEdJeHbizpgN2zKVOwmsmaMley+EeaMefZl6zmiLpA3Ra9E TTfGPdPnNFZBlJqA44PKr9eBayDBbZgt2isUs5BSxf4Idnz/02BOlLm4MuHe0/Yt Gq6D/xI6qaAzdGvgDyMlJhWv6D88yb64FP+/f1fCS9ju9IWdFLN1wGiFdWfeTov7 DIRn7so7slKA38bZswvqbjLt3Lgw14Xi9gpyJkFGIE0NFGSTEa+0IVDx2HhOalO/ YOZfWyZtzCHQfO9s8H3T+/5kH/G/JzTj22Ak6JE0q0M/lTO/X7Q= =HOsw -----END PGP SIGNATURE-----