-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 15 Aug 2024 23:51:02 +0200 Source: openssl Binary: libcrypto3-udeb libssl-dev libssl3 libssl3-dbgsym libssl3-udeb openssl openssl-dbgsym Architecture: amd64 Version: 3.0.14-1~deb12u1 Distribution: bookworm Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-01) Changed-By: Sebastian Andrzej Siewior Description: libcrypto3-udeb - Secure Sockets Layer toolkit - libcrypto udeb (udeb) libssl-dev - Secure Sockets Layer toolkit - development files libssl3 - Secure Sockets Layer toolkit - shared libraries libssl3-udeb - ssl shared library - udeb (udeb) openssl - Secure Sockets Layer toolkit - cryptographic utility Closes: 1068658 1071972 1072113 Changes: openssl (3.0.14-1~deb12u1) bookworm; urgency=medium . * Import 3.0.14 - CVE-2024-2511 (Unbounded memory growth with session handling in TLSv1.3) (Closes: #1068658). - CVE-2024-4603 (Excessive time spent checking DSA keys and parameters) (Closes: #1071972). - CVE-2024-4741 (Use After Free with SSL_free_buffers) (Closes: #1072113). Checksums-Sha1: 14b59e02c47803ae0e31dc315b04c1410faee9f9 1524860 libcrypto3-udeb_3.0.14-1~deb12u1_amd64.udeb 874b90a973e985c475cbe7ca6169ed644533a294 2438476 libssl-dev_3.0.14-1~deb12u1_amd64.deb c65e4c42855a21d761e21fa349b74467c087fdfa 4773968 libssl3-dbgsym_3.0.14-1~deb12u1_amd64.deb b0e5e19cb2a6e9163184fb68521cc511471e3736 222080 libssl3-udeb_3.0.14-1~deb12u1_amd64.udeb c3412f42361e96b5d035dbadb58cbb774a0fd9aa 2023772 libssl3_3.0.14-1~deb12u1_amd64.deb 9f006afe2bb129796a03f802a47818f1af8cbf56 689740 openssl-dbgsym_3.0.14-1~deb12u1_amd64.deb 8d1d664dbb27d8828335c578ea8d98bc7290f7c4 7647 openssl_3.0.14-1~deb12u1_amd64-buildd.buildinfo 4da2388c574a9dbb9bfef32240d405bc33c28fe7 1422564 openssl_3.0.14-1~deb12u1_amd64.deb Checksums-Sha256: e1a55be762bd1a3829b1a0bababaa41de77830339cec9d5d43fff9bdb60cb3fa 1524860 libcrypto3-udeb_3.0.14-1~deb12u1_amd64.udeb 425da5f462d3363f529c89820ff0f8a1afdf735aec0bb841498cf5cd458bc67f 2438476 libssl-dev_3.0.14-1~deb12u1_amd64.deb c372670d450858485808c1d38d0305040a18d16dad177c71f7ee7e1d0b63df03 4773968 libssl3-dbgsym_3.0.14-1~deb12u1_amd64.deb 286ab33d5fe2f6a61c388e52af6334fd8c9a3762a4b004a8aaa6a602b9168b7b 222080 libssl3-udeb_3.0.14-1~deb12u1_amd64.udeb 808ed2385960ee7b3365d583680e2f7a700c410b0ab4f81cc63b8bd166f61bae 2023772 libssl3_3.0.14-1~deb12u1_amd64.deb d59fd86188e1cb0566aca36bc7f582c03eeb804525a1cd35324d29e729ba96a7 689740 openssl-dbgsym_3.0.14-1~deb12u1_amd64.deb c8c64ed5bbed8e8234d6b687e96d178148786f6bb0dffac132d0ce0ee909cff8 7647 openssl_3.0.14-1~deb12u1_amd64-buildd.buildinfo 6ddf252c45bca1e1b815d2e32a63e2b976b6bc9c86031c819b363907dd5045f4 1422564 openssl_3.0.14-1~deb12u1_amd64.deb Files: ca3b55cf9ef146ccdd544525f03339ab 1524860 debian-installer optional libcrypto3-udeb_3.0.14-1~deb12u1_amd64.udeb 7828d89688fbbb69d3e85871539ea004 2438476 libdevel optional libssl-dev_3.0.14-1~deb12u1_amd64.deb 0b9fbdec2187d78a20afa02827b85050 4773968 debug optional libssl3-dbgsym_3.0.14-1~deb12u1_amd64.deb a3dab83914f97891cb9750e2e23d11bf 222080 debian-installer optional libssl3-udeb_3.0.14-1~deb12u1_amd64.udeb cbd03903e10574d0627f9d9c1730441d 2023772 libs optional libssl3_3.0.14-1~deb12u1_amd64.deb ce838049d2cba1b60a2c9242c0fdff27 689740 debug optional openssl-dbgsym_3.0.14-1~deb12u1_amd64.deb 6f66c90cb216fd2febd24d3950b17fd4 7647 utils optional openssl_3.0.14-1~deb12u1_amd64-buildd.buildinfo f5eb7218ffe503f85229d92ebc9ffb63 1422564 utils optional openssl_3.0.14-1~deb12u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE4Unr4QHS5Yi4rr9Q3KGKEAtjIVgFAmbHbzkACgkQ3KGKEAtj IVjEcQ//YoKnwku6wGfBujInjX14jNtg9vo77iwAJVSCpU+ua0A9bYFeLjeyhgOB xmQpZ9fIsCH0wwjbeajQKqNrygqZBLtQ2rjgMoAjipjXRZQX9ZpFz4wnpV8ea9wP 6UrtTf1o3+z6rPDKJBPqDeaV61/tiepNJaxA/oekCcsz8fiN3RmG89ExwXA/onLD e9itbeG/ULtFnuHFb6wPURWqg5QLWsO7SkGG15qYA5spXu2B/kOLxu/4/4671cwM wUfv9NyajybrCQy1kgLa6ryHN+esEaaXX7lLgZG2gGEgv4OyYHLXyYWUM0UNaNPu 1iUHV5Q04mwaDD+GU+EcQrGkU76EJGK27lZ914BXbdz+EEJGeTAg0Fco2eCabjWf Wb75jJz79Fcwd2sf4/g7ifiy/uFJHRh6zFAkp9xfxrhOTr5iOcdfrlAl29rK/xAY u4XK2M6vLLi/t4PvLhgNBK9Vttx+7VrzbaKnF7oY1+cxJRF1RqxfcVhjzv1ekXYi t0amxWUG5Ql4J99+yBcA4/uW3OyPIyEFay66lHhy+/fkbEPXYbStGJ2+yb1XgcGO 6YCjbPCzxzasr8pMaJj1wI0ji6DKNJCQzirSthjBCArO6xUc56hgRZLGV8tLLhAc UX7aT3Jvtq8iFVpzyFRcDZ/AnHMbWszxuY3ZTSbeybTHaaCvq9w= =H+E3 -----END PGP SIGNATURE-----