-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 02 Apr 2024 20:02:10 -0300 Source: curl Binary: curl curl-dbgsym libcurl3-gnutls libcurl3-gnutls-dbgsym libcurl3-nss libcurl3-nss-dbgsym libcurl4 libcurl4-dbgsym libcurl4-gnutls-dev libcurl4-nss-dev libcurl4-openssl-dev Architecture: mips64el Version: 7.88.1-10+deb12u6 Distribution: bookworm Urgency: medium Maintainer: mipsel Build Daemon (mipsel-osuosl-03) Changed-By: Guilherme Puida Moreira Description: curl - command line tool for transferring data with URL syntax libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Closes: 1053643 Changes: curl (7.88.1-10+deb12u6) bookworm; urgency=medium . * Team upload. . [ Sergio Durigan Junior ] * d/p/openldap-create-ldap-URLs-correctly-for-IPv6-addresses.patch: (Closes: #1053643) . [ Guilherme Puida Moreira ] * Add patches to fix CVE-2024-2004 and CVE-2024-2398. - CVE-2024-2004: When a protocol selection parameter disables all protocols without adding any then the default set of protocols would remain in the allowed set due to an error in the logic for removing protocols. - CVE-2024-2398: When an application tells libcurl it wants to allow HTTP/2 server push and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push and leaks the memory allocated for the previously allocated headers. * d/p/openldap-create-ldap-URLs-correctly-for-IPv6-addresses.patch: Refresh patch. Checksums-Sha1: 7decda490ae49a494e805f04596cc156dfa0cd6a 165772 curl-dbgsym_7.88.1-10+deb12u6_mips64el.deb e3d8d524ffe45467e139a48b3a6ab9ec3a8f9abe 12901 curl_7.88.1-10+deb12u6_mips64el-buildd.buildinfo 16d158662daae756862b024322e954ae5f6e3fb5 308204 curl_7.88.1-10+deb12u6_mips64el.deb 61711b5142b1e61f9d26da276a9ff1022968fff5 1060128 libcurl3-gnutls-dbgsym_7.88.1-10+deb12u6_mips64el.deb 32714180d18ae33ebbdfbc9838134bef08ad7417 355120 libcurl3-gnutls_7.88.1-10+deb12u6_mips64el.deb 3ef2dbaf72cdffd74b87643a6defd75103d4ec25 1106548 libcurl3-nss-dbgsym_7.88.1-10+deb12u6_mips64el.deb e2209a8bfe4f3c087acdb13dfd59842f5c6070ee 363156 libcurl3-nss_7.88.1-10+deb12u6_mips64el.deb 4f390f12fe75636319bf95d62348de63fbe3552c 1090176 libcurl4-dbgsym_7.88.1-10+deb12u6_mips64el.deb 4fda9e07d099a291016f25dc7ed1b16ac9dccf1e 499124 libcurl4-gnutls-dev_7.88.1-10+deb12u6_mips64el.deb e9ad4d60f6a1def14bbe6666dd6e9056a26e0f27 508036 libcurl4-nss-dev_7.88.1-10+deb12u6_mips64el.deb ef9f6aef9bb65d97a4987e4104fa700c2f201d90 504604 libcurl4-openssl-dev_7.88.1-10+deb12u6_mips64el.deb 078047126687c8355c6e9c5eea2a5abd8db9b3eb 359644 libcurl4_7.88.1-10+deb12u6_mips64el.deb Checksums-Sha256: bff37eb1108902ed0cc6009b90a78f8fe23be187af82b5d2f0632247f1d787f9 165772 curl-dbgsym_7.88.1-10+deb12u6_mips64el.deb a8aee14b74c6a3748d0e28451b61a437d5f118fa829f8689bc07e4ea5110057c 12901 curl_7.88.1-10+deb12u6_mips64el-buildd.buildinfo 0695eda1d21722d9c6c95949df69ac54071a06e958bbc58022f0c6e393eb2a04 308204 curl_7.88.1-10+deb12u6_mips64el.deb ecd9bd08b0482b63fe998284949515503165f27bf54fcbbf2fea29c970f33a46 1060128 libcurl3-gnutls-dbgsym_7.88.1-10+deb12u6_mips64el.deb e9101a51192f46b8340fdf000756da203d7e9cae38201ed7035107ac36cbb4d7 355120 libcurl3-gnutls_7.88.1-10+deb12u6_mips64el.deb 95b6047c9e8d97da2691dae25c796ee95a2fbac97677b010deb648dfd7e6261e 1106548 libcurl3-nss-dbgsym_7.88.1-10+deb12u6_mips64el.deb e5d39a88a070486ee4641fd90ab90bc885fda8a374fe4e9c416f3b8aeaca4fff 363156 libcurl3-nss_7.88.1-10+deb12u6_mips64el.deb 88811805630c8fc1766faf48ece269d1ef2ca7bd9d9e25e401672c29501c0409 1090176 libcurl4-dbgsym_7.88.1-10+deb12u6_mips64el.deb fa430c0ba1e19e9558149dfa5c849507e66ea574d7a8fed60f68e8b9cc46f3c6 499124 libcurl4-gnutls-dev_7.88.1-10+deb12u6_mips64el.deb 846ef308a949103996b6af934ed2b6451262ee80a71a3ba40b2c9c55991ed51b 508036 libcurl4-nss-dev_7.88.1-10+deb12u6_mips64el.deb e07288c9960244257550cbfbc7bfc3d0701a0c1eed8c0751cf89016cdcf49f85 504604 libcurl4-openssl-dev_7.88.1-10+deb12u6_mips64el.deb 6cd4520c4d31a39933b6c15a8272778947b255abf8d2471ddd536490f655dc56 359644 libcurl4_7.88.1-10+deb12u6_mips64el.deb Files: c1713a5b497bbedb155c6346a46886ab 165772 debug optional curl-dbgsym_7.88.1-10+deb12u6_mips64el.deb 1e923f32b52100439c5843c8e8e10288 12901 web optional curl_7.88.1-10+deb12u6_mips64el-buildd.buildinfo 219188450f9fec061b29a61e112f5995 308204 web optional curl_7.88.1-10+deb12u6_mips64el.deb 56452218d07b6a40747d2074179f28f5 1060128 debug optional libcurl3-gnutls-dbgsym_7.88.1-10+deb12u6_mips64el.deb 4044baf8d4f6ce407d8cb51d53d6b6fe 355120 libs optional libcurl3-gnutls_7.88.1-10+deb12u6_mips64el.deb 0e7969df4a2e6cd5e54a21789afeb65a 1106548 debug optional libcurl3-nss-dbgsym_7.88.1-10+deb12u6_mips64el.deb 1227ea6b3a76bfe3742cc4e68bc8cdba 363156 libs optional libcurl3-nss_7.88.1-10+deb12u6_mips64el.deb 580b4cdbd845a65d4f3fa3a67b97b6d5 1090176 debug optional libcurl4-dbgsym_7.88.1-10+deb12u6_mips64el.deb 5569dd92aa1f58ae75e93f8d815705f7 499124 libdevel optional libcurl4-gnutls-dev_7.88.1-10+deb12u6_mips64el.deb 59cc429a53771f703b2d6287eac1f821 508036 libdevel optional libcurl4-nss-dev_7.88.1-10+deb12u6_mips64el.deb d359b087ecaaa0a76b117aa784b660c8 504604 libdevel optional libcurl4-openssl-dev_7.88.1-10+deb12u6_mips64el.deb 5e4f62ef9dcc42675d8a82b7df00f9ef 359644 libs optional libcurl4_7.88.1-10+deb12u6_mips64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEunmvxaaGKuI+hxxClmZGXOM83t8FAmYVgDoACgkQlmZGXOM8 3t8GkQ//YfcBGt6wDcw6IOBovl7FuAprV8zR+F4yYzHSpjwahZIyzXV8c9bAQ3WJ 6VgBbn0H2mhe+SufnDvx0atkgjRBfwkv9Amf56M0BxQFfF61xG5YC/3UPdpm3ehv zi7b601lVRmqXb06od/CZ/qk4BaKHNH8XHJEouKh8lPmnx1zkrR0mlsK6UCZ/2sb LkaQ+1C1R8Ab3G1jsk2yLCOtBBR5vRRs4SobjcvvvAI6tZ3oQQprBupSaic3KrBH iynJ7QpyfcVGffz8DYXs9K3R8vgK3EVlC1uXJ7+ReORwdticxN8yG2PKJ7HIhENe Xh9cy0Q48WCsgbrtHOcjkHQ1iqcpWsKPFs+LOHQce+xrNeceQmo0JFghfk5HGOoa 4b03asaYmk15QYa1P6ASN0CQRQ59ofqcpYaimsDK+EkBHwhQeLi5dKSgx8gqHIKI Noh51AyDJ0hH8ynZQ/03PEATcaVtP4ZYli6FltsUBhoPse0LfKfEbtETtzSgHowo YKgOTsW9z1pgpip9AQewnX/KXpGwHwRtQY6IIgA0Q71pXqcndqHcwIeI766yhry5 0a9fRpdshYSC5paf5EaEbPnJNv2dZNh7vEPee0MGaNrd8T5KW35rjXqPeoJF5XNp 4two6SW4ooYV+N9WkCkR0n8sDjAmA3qZwHnHzadfKbb/FnRFDJk= =Mw2u -----END PGP SIGNATURE-----