-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Jun 2024 13:22:35 +0200 Source: gnutls28 Binary: gnutls-bin gnutls-bin-dbgsym guile-gnutls guile-gnutls-dbgsym libgnutls-dane0 libgnutls-dane0-dbgsym libgnutls-openssl27 libgnutls-openssl27-dbgsym libgnutls28-dev libgnutls30 libgnutls30-dbgsym libgnutlsxx30 libgnutlsxx30-dbgsym Architecture: armel Version: 3.7.9-2+deb12u3 Distribution: bookworm Urgency: medium Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Andreas Metzler Description: gnutls-bin - GNU TLS library - commandline utilities guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dane0 - GNU TLS library - DANE security support libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30 - GNU TLS library - main runtime library libgnutlsxx30 - GNU TLS library - C++ runtime library Closes: 1067463 1067464 Changes: gnutls28 (3.7.9-2+deb12u3) bookworm; urgency=medium . * Update to 3.7.11: + Replace 60-auth-rsa_psk-side-step-potential-side-channel.patch 61-x509-detect-loop-in-certificate-chain.patch 62-rsa-psk-minimize-branching-after-decryption.patch with versions from gnutls_3_7_x branch instead of manual backports from 3.8.x. + Add 53-fips-fix-checking-on-hash-algorithm-used-in-ECDSA.patch (Fix checking on hash algorithm used in ECDSA in FIPS mode) and 54-fips-mark-composite-signature-API-not-approved.patch (Mark composite signature API non-approved in FIPS mode.) to allow straight cherry-picking of later patches. + 63_01-gnutls_x509_trust_list_verify_crt2-remove-length-lim.patch libgnutls: Fixed a bug where certtool crashed when verifying a certificate chain with more than 16 certificates. Reported by William Woodruff (#1525) and yixiangzhike (#1527). [GNUTLS-SA-2024-01-23, CVSS: medium] [CVE-2024-28835] Closes: #1067463 + 63_02-nettle-avoid-normalization-of-mpz_t-in-deterministic.patch libgnutls: Fix side-channel in the deterministic ECDSA. Reported by George Pantelakis (#1516). [GNUTLS-SA-2023-12-04, CVSS: medium] [CVE-2024-28834] Closes: #1067464 + 63_03-serv-fix-memleak-when-a-connected-client-disappears.patch Fix a memleak in gnutls-serv when a connected client disappears. + 63_04-lib-fix-a-segfault-in-_gnutls13_recv_end_of_early_da.patch Fix a segfault in _gnutls13_recv_end_of_early_data(). + 63_05-lib-fix-a-potential-segfault-in-_gnutls13_recv_finis.patch Fix a potential segfault in _gnutls13_recv_finished(). Checksums-Sha1: f6aa969a522c489364915c841b2da4e065144a3c 831784 gnutls-bin-dbgsym_3.7.9-2+deb12u3_armel.deb a99a819278f17482b1b483fc03ee6a67cba4645e 608684 gnutls-bin_3.7.9-2+deb12u3_armel.deb 80d7fbdb49fa5cf133dcfbcebc43fbe898385e42 11094 gnutls28_3.7.9-2+deb12u3_armel-buildd.buildinfo 4b76921203540922ad0a99547b4b7427fc83ecf8 258212 guile-gnutls-dbgsym_3.7.9-2+deb12u3_armel.deb f26f3220a1093a25a04f04577f3fc4af1e84d0e5 454936 guile-gnutls_3.7.9-2+deb12u3_armel.deb c25b6b60362854ef600d56fe305376e1c69d1d04 89272 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_armel.deb c5ce893701473d551807a7c43eb534f0e38a9e96 401876 libgnutls-dane0_3.7.9-2+deb12u3_armel.deb d794c0869e18fb6a5bf9d6a058e6f6fd7cb0d485 90896 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_armel.deb bd233b423c2a4e91706552b8d96d75cc84c2d9d2 401660 libgnutls-openssl27_3.7.9-2+deb12u3_armel.deb b8506e47389a7c7860e07c785ea0c1534144b2f1 1278776 libgnutls28-dev_3.7.9-2+deb12u3_armel.deb fe1bdaa2a70a09e997ea76d2f992f51291be8762 2000616 libgnutls30-dbgsym_3.7.9-2+deb12u3_armel.deb 8d717bbd69deaf6ed100cb485cc58fe7721da8c2 1308624 libgnutls30_3.7.9-2+deb12u3_armel.deb aa45cfa43cca5290210af14606f06ddfbeab94c2 49068 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_armel.deb fb080404bfc1a7362362b5cc118161f8d664a2ec 12004 libgnutlsxx30_3.7.9-2+deb12u3_armel.deb Checksums-Sha256: f19874fe8fd57759512a5163f6033d6dcc98d03d88e56ac3dd5a7fdb07bc2f32 831784 gnutls-bin-dbgsym_3.7.9-2+deb12u3_armel.deb 51487bc0a1cb8ed85e38d89591ec44c3ec39445ea42b19e1d521f0a3192e3e91 608684 gnutls-bin_3.7.9-2+deb12u3_armel.deb 278c312cf6d2f18773e4aee5dc1e8126fcd1fb699c30cd42c14e3f2cce7e0334 11094 gnutls28_3.7.9-2+deb12u3_armel-buildd.buildinfo 48d1dd62631d2783877e277060afe0f476b705e8f6801811e98ea1072d78c124 258212 guile-gnutls-dbgsym_3.7.9-2+deb12u3_armel.deb 71ad8422ead685a981f1074111154a17823ae67dc23604d8ebe697e43bc63963 454936 guile-gnutls_3.7.9-2+deb12u3_armel.deb a321a3b31400efc18c2251eed740d28fe66c0c07ebde3ea0a6c46a4aca6c3175 89272 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_armel.deb a6443d003724fe3b50d7dd5b1cc8d597a169723f1645d95f8d492fbb71a6e2c3 401876 libgnutls-dane0_3.7.9-2+deb12u3_armel.deb 1c9c3e2afd2926562dd4d4b25abfae756e6930b7e7b990975a77dc3d4a5fb12b 90896 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_armel.deb ad3874310d51c8d048a967edc1cb8d0021d7e220536114b7e3df5f918e271859 401660 libgnutls-openssl27_3.7.9-2+deb12u3_armel.deb 215e7a51192791260eef86776f95df53e7fbbeeaeba5babfdc438b45693a1567 1278776 libgnutls28-dev_3.7.9-2+deb12u3_armel.deb ed35afa4f8a53f1147fe1b8ddd236acc2a560f3dde1b78099d0e36c13e4d2aec 2000616 libgnutls30-dbgsym_3.7.9-2+deb12u3_armel.deb 27235bf45636f46683b0602a0a529945d177a86bc375b33895b888db212e3945 1308624 libgnutls30_3.7.9-2+deb12u3_armel.deb 4d941d57ec0a7ae46468e509b832d0a2defc07fe6a90e21b6568e88425df3416 49068 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_armel.deb 77a8068926ca8e8f88d21dc6d29401e52da86549c532c4c7d314a49c3aa0a882 12004 libgnutlsxx30_3.7.9-2+deb12u3_armel.deb Files: 20de33a212441abfe8abc93f14894dec 831784 debug optional gnutls-bin-dbgsym_3.7.9-2+deb12u3_armel.deb 67df1ece9bec76566bfb21593d405220 608684 net optional gnutls-bin_3.7.9-2+deb12u3_armel.deb fb4689f5cd31e55fd8913711eb013c54 11094 libs optional gnutls28_3.7.9-2+deb12u3_armel-buildd.buildinfo a165166669f18b97e87520e268c8f885 258212 debug optional guile-gnutls-dbgsym_3.7.9-2+deb12u3_armel.deb 12a05b7a204cc427335630a89c120277 454936 lisp optional guile-gnutls_3.7.9-2+deb12u3_armel.deb 14bf670050a9ba38db973384b98ac4c1 89272 debug optional libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_armel.deb dbc245ea3b16d50deca562d8e297dc5a 401876 libs optional libgnutls-dane0_3.7.9-2+deb12u3_armel.deb 81e3ed82beed3aa047c5f749cf4de606 90896 debug optional libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_armel.deb 7bc7c84b14696803a2ccea061f5b1662 401660 libs optional libgnutls-openssl27_3.7.9-2+deb12u3_armel.deb 005cc890d2f0be3601ce91f1af870795 1278776 libdevel optional libgnutls28-dev_3.7.9-2+deb12u3_armel.deb cc63b0954484e9aae5b4cf65061a0f3e 2000616 debug optional libgnutls30-dbgsym_3.7.9-2+deb12u3_armel.deb 670945ce858604d88e6b62aa5677653f 1308624 libs optional libgnutls30_3.7.9-2+deb12u3_armel.deb b081a79d9bc2641f478204a809351580 49068 debug optional libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_armel.deb c6a5d9a4bc3f4b14218e3c6cd2e64fec 12004 libs optional libgnutlsxx30_3.7.9-2+deb12u3_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEBv+o19JDIRm4yIQ5CeROIpkCGwcFAmZvVikACgkQCeROIpkC GweL6g//e3A2EULscpTH4QSMp30W4czoLbzjVT5bcgvpJscv+UcSjv+SbSH0fq9I gjLLq3v6/58gcVZooALKyT2wpDHMGLvWYCqzOW/fUVdEyUhLp1WRpCYdi1QLmJSe oYRSHVmFlBUR2CzYp19/rZFu6W8Um+HCapyio7UO1dD7IWJAzUU6MTjJX4NoxmKw XnlmWpposRxK07PjyaRt6eHoYQT0nr0GS4LmZDUAkvP3wzkk9wAf3sLVx2T4HOrE Oj+USFnbaNdF4xVVGQ0PQaVvpGZRWz+Qs5a9ozEmJboYl6T2LCcK3tCfQZXef5AG zZw8xLfVTRVNOwY0aPEbNr4nSHpM0tRHRBtc8D8r/wflUPwBEEGWHC9njB9G1wo9 bH7SnauZQaDXxrOleTMB9pqZthau6ghjlgd47sJK+I0Y1IBmPF4fWYWjC9wIxBTA 0P9/ZKhvM+bhJzKn3H2H72X+J/a+NtN05v5rkauGFUAzGEpWs/+EXqx72ymodTsD BovrXrgcFrHebE0vB5cHHNDn7yViPFUWnNmjeq112TGGHJff823suxorqoJN1/uL MkchCdC+0MVj9JPL9ZHH2RgBSifNtojAGKwS8INlM4uV1r9IRv3lCSFrMLrPuPJX RG+Sdlup9/vAXfADYsvxu1MijZbXg80L+8kmbSBtVCBmcC+O1T4= =3Doc -----END PGP SIGNATURE-----