-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 05 Nov 2024 06:10:49 -0700 Source: edk2 Binary: ovmf ovmf-ia32 qemu-efi qemu-efi-aarch64 qemu-efi-arm Architecture: all Version: 2022.11-6+deb12u2 Distribution: bookworm Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-grnet-03) Changed-By: dann frazier Description: ovmf - UEFI firmware for 64-bit x86 virtual machines ovmf-ia32 - UEFI firmware for 32-bit x86 virtual machines qemu-efi - transitional dummy package qemu-efi-aarch64 - UEFI firmware for 64-bit ARM virtual machines qemu-efi-arm - UEFI firmware for 32-bit ARM virtual machines Closes: 1084055 Changes: edk2 (2022.11-6+deb12u2) bookworm; urgency=medium . * Fix overflow condition in PeCoffLoaderRelocateImage(), CVE-2024-38796: - d/p/0001-MdePkg-Fix-overflow-issue-in-BasePeCoffLib.patch - d/p/0002-MdePkg-Improving-readability-of-CVE-patch-for-PeCoff.patch (Closes: #1084055) * Fix potential UINT32 overflow in S3 ResumeCount. CVE-2024-1298: - d/p/MdeModulePkg-Potential-UINT32-overflow-in-S3-ResumeC.patch Checksums-Sha1: afc14efa5bc0fecedaf2c7a44f74329e375122b4 11218 edk2_2022.11-6+deb12u2_all-buildd.buildinfo 379bf363321ba86623dfcf59d1ff0df179a6f972 1525836 ovmf-ia32_2022.11-6+deb12u2_all.deb ab2784f53e1112077fab43a5f6be2b5d7a43b18a 7683456 ovmf_2022.11-6+deb12u2_all.deb 0cacb024cd8cae1f9d1615f39364cae52dcf0885 2538280 qemu-efi-aarch64_2022.11-6+deb12u2_all.deb f058fbd86dbb0958a2b894a34c3c25b886ec2399 1281716 qemu-efi-arm_2022.11-6+deb12u2_all.deb ce91536718db86e3204074b60395d7e0b7efab2a 14380 qemu-efi_2022.11-6+deb12u2_all.deb Checksums-Sha256: 5195e8379171a179c17311829bc7967ff5cb2f9c65afd110116674218f7c40a0 11218 edk2_2022.11-6+deb12u2_all-buildd.buildinfo 51ec2c7eb81e5684c25cde900d0f5942827daf08c1335587ceeb5866c968815b 1525836 ovmf-ia32_2022.11-6+deb12u2_all.deb e73d3d1a8799f7f6fc16b73501d913edcdd86237556fbff30693e747e6dc262e 7683456 ovmf_2022.11-6+deb12u2_all.deb 9a55c7b94fdf13a28928359a77d42e5364aa3ae2e558bd1fd5361955bf479d81 2538280 qemu-efi-aarch64_2022.11-6+deb12u2_all.deb 3c6981f1593edafc5560e0055425567926af7f2b6f9c6174c4f2b807dad4a654 1281716 qemu-efi-arm_2022.11-6+deb12u2_all.deb b549175ef755945e8e7ed4e67b604dda6455ff2d6062663c78480d9819aa68e8 14380 qemu-efi_2022.11-6+deb12u2_all.deb Files: ddc053055fae78458ead37fa4f37d189 11218 misc optional edk2_2022.11-6+deb12u2_all-buildd.buildinfo c2858fe71076157dc24eef8abefd36b5 1525836 misc optional ovmf-ia32_2022.11-6+deb12u2_all.deb 3005e0098e005c5f0ea8123f0e8ecbce 7683456 misc optional ovmf_2022.11-6+deb12u2_all.deb 74a94ea4921e10af26a3418ec0bc5f48 2538280 misc optional qemu-efi-aarch64_2022.11-6+deb12u2_all.deb 1de5142849a3c28ddb7e3596f6247c38 1281716 misc optional qemu-efi-arm_2022.11-6+deb12u2_all.deb 283a04d94e98e1a7e7ad57faabb7f038 14380 misc optional qemu-efi_2022.11-6+deb12u2_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEe8x49oT2k+seQstpgDm7h4zfCpIFAmfOVKwACgkQgDm7h4zf CpITIw/9FKKWe0oAjcwbJWdbBDbB/oAioJ9lfS9lleOpibQQnjtUczxNyv01vDbv Pnoye9V3dJdEdBUyJn+eSP78L0AqnEZxoCSAyfRNc+dLHjQA4MxTiPIaVBeHa9Kl eT2IpGZHxqVWpfVoRWW7X7k+AsCp023NpJMwsIFi4CkgkkEBeligjTGldNPiiEUE zIlrIJ84VR7iUOCAh2oLy7mo+xcgEeg0vRr3TXBevE6EYdS8nWR81bJugzg0ot8k rIiNh80dOoh9N22AciaIhOoML78QkPqiisN+czoYURaGC7Z6kkZHbnovc0n/9eH8 5QHbU79PmA+LYRThYkdw/DC5CX/2yb4bbMUJCSzzWkZlf/Vl6RJXmDEPdFhBJ/qz 8xIikiOcANwuHMmslPpTql4ln8QOe5/CvgsNpNyHuqLR6kUSG/qaH9ucFoSNy+ZZ N/L7jbVMamhT+dUqZkmmk38mWD+hwSe5uXXzZjR6Diz6RvoouHjzsH0MYvE2Ld8c DyUR+I0d98q/gikAkwc75EuFZbjVj0nBMu+KSdGZq5Rd9C1rA2RnY9/bWzLrJGo9 +Bg08xxg834NrjTQrYNrM/vEyG9R9hUGwwxDWBPdJrckmNf4Xjav0NkjIWwlQtnL kKKGmTU7OVqmOMMssabDkqD76psC04OcyIGW7zxWWALCmOWqf/Q= =EVRR -----END PGP SIGNATURE-----