-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 15 Jun 2024 13:22:35 +0200 Source: gnutls28 Binary: gnutls-bin gnutls-bin-dbgsym guile-gnutls guile-gnutls-dbgsym libgnutls-dane0 libgnutls-dane0-dbgsym libgnutls-openssl27 libgnutls-openssl27-dbgsym libgnutls28-dev libgnutls30 libgnutls30-dbgsym libgnutlsxx30 libgnutlsxx30-dbgsym Architecture: mipsel Version: 3.7.9-2+deb12u3 Distribution: bookworm Urgency: medium Maintainer: mipsel Build Daemon (mipsel-osuosl-04) Changed-By: Andreas Metzler Description: gnutls-bin - GNU TLS library - commandline utilities guile-gnutls - GNU TLS library - GNU Guile bindings libgnutls-dane0 - GNU TLS library - DANE security support libgnutls-openssl27 - GNU TLS library - OpenSSL wrapper libgnutls28-dev - GNU TLS library - development files libgnutls30 - GNU TLS library - main runtime library libgnutlsxx30 - GNU TLS library - C++ runtime library Closes: 1067463 1067464 Changes: gnutls28 (3.7.9-2+deb12u3) bookworm; urgency=medium . * Update to 3.7.11: + Replace 60-auth-rsa_psk-side-step-potential-side-channel.patch 61-x509-detect-loop-in-certificate-chain.patch 62-rsa-psk-minimize-branching-after-decryption.patch with versions from gnutls_3_7_x branch instead of manual backports from 3.8.x. + Add 53-fips-fix-checking-on-hash-algorithm-used-in-ECDSA.patch (Fix checking on hash algorithm used in ECDSA in FIPS mode) and 54-fips-mark-composite-signature-API-not-approved.patch (Mark composite signature API non-approved in FIPS mode.) to allow straight cherry-picking of later patches. + 63_01-gnutls_x509_trust_list_verify_crt2-remove-length-lim.patch libgnutls: Fixed a bug where certtool crashed when verifying a certificate chain with more than 16 certificates. Reported by William Woodruff (#1525) and yixiangzhike (#1527). [GNUTLS-SA-2024-01-23, CVSS: medium] [CVE-2024-28835] Closes: #1067463 + 63_02-nettle-avoid-normalization-of-mpz_t-in-deterministic.patch libgnutls: Fix side-channel in the deterministic ECDSA. Reported by George Pantelakis (#1516). [GNUTLS-SA-2023-12-04, CVSS: medium] [CVE-2024-28834] Closes: #1067464 + 63_03-serv-fix-memleak-when-a-connected-client-disappears.patch Fix a memleak in gnutls-serv when a connected client disappears. + 63_04-lib-fix-a-segfault-in-_gnutls13_recv_end_of_early_da.patch Fix a segfault in _gnutls13_recv_end_of_early_data(). + 63_05-lib-fix-a-potential-segfault-in-_gnutls13_recv_finis.patch Fix a potential segfault in _gnutls13_recv_finished(). Checksums-Sha1: 711a64ec53d4d2189fb0aab4c08586a286e129ae 856792 gnutls-bin-dbgsym_3.7.9-2+deb12u3_mipsel.deb cfd383667e28d5dee6bf9ed7c30a38833c99854c 623824 gnutls-bin_3.7.9-2+deb12u3_mipsel.deb c475b57f645112135800cb52d9118d555644d619 11083 gnutls28_3.7.9-2+deb12u3_mipsel-buildd.buildinfo 98a1bedca877f57e4247840356361c5061c17e5a 267440 guile-gnutls-dbgsym_3.7.9-2+deb12u3_mipsel.deb 299c095682a4ecadd716f2d70e3c6021ce976f7a 448396 guile-gnutls_3.7.9-2+deb12u3_mipsel.deb f7fd455ce8fbbd2cde679fb5198e387e000784d4 93000 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_mipsel.deb 6c7f87d17f17b387c97e3903eb3b1b9144518915 402476 libgnutls-dane0_3.7.9-2+deb12u3_mipsel.deb 4836b44f93af8c964123aede5a98b2fa60582b40 94040 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_mipsel.deb a5e79efd65c29538de16f8958823e60c4954b31f 402200 libgnutls-openssl27_3.7.9-2+deb12u3_mipsel.deb f8c54b14866de394138c25d870017006f1abd9a4 1354144 libgnutls28-dev_3.7.9-2+deb12u3_mipsel.deb 399f5d994ec7dc1531c22cf4a2d90f9f53cdeb02 2007252 libgnutls30-dbgsym_3.7.9-2+deb12u3_mipsel.deb 512a7fdfe3c74cac225a3c0bf1c1aa0215b867a0 1231120 libgnutls30_3.7.9-2+deb12u3_mipsel.deb 2c8822efc7d217cffcb68ba0105d20ae61563aae 48068 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_mipsel.deb 8a0089e3f4b6c2ae0fb415a432a39b6f9cf25668 12968 libgnutlsxx30_3.7.9-2+deb12u3_mipsel.deb Checksums-Sha256: 23ca4e45aa8198ea5782a917787d2e5f11cf206854edb430137c837388504217 856792 gnutls-bin-dbgsym_3.7.9-2+deb12u3_mipsel.deb caf62b6407244bbee05df6b2bf38611e9a8789ba696e97233821420022791093 623824 gnutls-bin_3.7.9-2+deb12u3_mipsel.deb 659355fa82c556b765bf368ed55a825510f8a8c079c7ba29530d0f82b7e9da1b 11083 gnutls28_3.7.9-2+deb12u3_mipsel-buildd.buildinfo 8480b8bfc1d9f9eadcdd08a931a75031ee2eccac13ae0c0b015e27a989ec5b0c 267440 guile-gnutls-dbgsym_3.7.9-2+deb12u3_mipsel.deb f4b0cd5b3d8ecfd20139f247efc6c9232f8bf083b92923af698a378dd9fe800f 448396 guile-gnutls_3.7.9-2+deb12u3_mipsel.deb 3efee74606d80d7574df5ebb80c7abe62000e2b5574443b0cd48797cfa432181 93000 libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_mipsel.deb f4879d9e699aa1e09f998c0512aa42d0169cb5ba64d9a0120572ba017efce695 402476 libgnutls-dane0_3.7.9-2+deb12u3_mipsel.deb b864287e9534bc1dd06b0c5b4a9e79067b0e0dd8ee4616599c23d5b547a67013 94040 libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_mipsel.deb b08801e7ee2419bb2522bb4b23dc782369c6ea72cd138752a53c9ea65ea2e22f 402200 libgnutls-openssl27_3.7.9-2+deb12u3_mipsel.deb fcbe4657295ff5e57fb55f889d34267709f54f6a275e0d19d23de4c0b815a0d5 1354144 libgnutls28-dev_3.7.9-2+deb12u3_mipsel.deb 95425c64f60ab0381212ca410ea7f6bd06bd9417028082ebaa8e7aca0430465e 2007252 libgnutls30-dbgsym_3.7.9-2+deb12u3_mipsel.deb b8c3b459f9ac58a180c91c26c0011d92608a00218dbc5f32225ce3489032cb25 1231120 libgnutls30_3.7.9-2+deb12u3_mipsel.deb 201dfb64fe5da78cf3eac51b0290e308630843c27252dc70b6d75cf5de0fe82f 48068 libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_mipsel.deb 5d1fb193be88d1697318da777e14de6a1309aa7de1cf4c9aa4bf000cb466c33e 12968 libgnutlsxx30_3.7.9-2+deb12u3_mipsel.deb Files: 3a4efc9d853c6eae3c65cbb8e33ab713 856792 debug optional gnutls-bin-dbgsym_3.7.9-2+deb12u3_mipsel.deb be4dd86e4aa89651f8904dbcb6b4e648 623824 net optional gnutls-bin_3.7.9-2+deb12u3_mipsel.deb d0b8b065dc70c59346bf501112962d22 11083 libs optional gnutls28_3.7.9-2+deb12u3_mipsel-buildd.buildinfo 940faf17bfc35d46c82746a1a41690bc 267440 debug optional guile-gnutls-dbgsym_3.7.9-2+deb12u3_mipsel.deb 4f2f77ec788ecbd67e776a038f18aa84 448396 lisp optional guile-gnutls_3.7.9-2+deb12u3_mipsel.deb bde60a30c553b013f8e281425917b4e8 93000 debug optional libgnutls-dane0-dbgsym_3.7.9-2+deb12u3_mipsel.deb 547d28ac932ccf4f5af55d2904fc054a 402476 libs optional libgnutls-dane0_3.7.9-2+deb12u3_mipsel.deb 1b65c1ec0edde6d889f6931e6f7901c6 94040 debug optional libgnutls-openssl27-dbgsym_3.7.9-2+deb12u3_mipsel.deb 9bb3cd46249f4b9706d5a57d7a8d5780 402200 libs optional libgnutls-openssl27_3.7.9-2+deb12u3_mipsel.deb a48b45177efcde74cf6553eed1a88bf8 1354144 libdevel optional libgnutls28-dev_3.7.9-2+deb12u3_mipsel.deb 632396770d8a2249760c02b9c7e1d050 2007252 debug optional libgnutls30-dbgsym_3.7.9-2+deb12u3_mipsel.deb 4365772eaa2b2f57950dac03f469c1d9 1231120 libs optional libgnutls30_3.7.9-2+deb12u3_mipsel.deb 059ed430b1a40e04241d2ff82464770a 48068 debug optional libgnutlsxx30-dbgsym_3.7.9-2+deb12u3_mipsel.deb e617df2cb49eb8c8cfdd53f99d26ed4b 12968 libs optional libgnutlsxx30_3.7.9-2+deb12u3_mipsel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEEmZlxOBLdXDBxnwAL00bee7O74EFAmZvbAcACgkQL00bee7O 74GYPhAAhxZB/Ix3aXQx1EOCWf60Ena3pGUEcqGkmahyOVIwJ2q9fs832BzPqfSI rEsZt93x67VkgXJUQyIFJegjphWFD2ifVAs8qZz9w589nGFLZcd1wCbNQiHVjJsm WdzEtw1uV60ForJDEBIHESvJg9ps4wbaURua/VqNMbNCFN9x188cCkbIPSJYA66O UmWikf3rVGPBQkoZppLm5sghtclKt0MdwVXYqFs/OJ8Zzvj2iI0g2a3fxjVs/e// WjOKJlW4YP0KqKMFuUwSOp+2/Yx7rK/UGkjYiveFBXD2dXlngMl9xOncazNMW+CK T87PysHTUJOJu5Kdy7OP9g5CEsgfcIMUgszJxQBu7xc4yRJe5IwDKZDHo1/z2EKG Lr4SQ/gqtclQpmttZVmap4AMGWm9tnRCdZMp8NKhZ7pUiQXhzjFIMnANZt8LeAKF +nCApGo3ZDq1Q1XTmC6Dl8GVmQTRn4blATWh0AT0HOnoM5LOwWLVGcjqzu0kund/ XxSQIlMtMbVwLauoCxPuf1fHWaUeR1eA+Iuc2soDiVPrWKNw9iAwadzGkOjVlCfs faY7sy0fW8uwv7kd+l3uH+XeOmPRlNgQdL5uCH5z3c4PNNkCqbNnIO1G9p4H6hFE ynA/vm7++4F40UQUMpKGmWgOEsB+vu4wfd7cmJbgXQM24VgewvY= =SSYq -----END PGP SIGNATURE-----