-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 29 Dec 2020 15:48:30 +0100 Source: p11-kit Binary: libp11-kit-dev libp11-kit0 libp11-kit0-dbgsym p11-kit p11-kit-dbgsym p11-kit-modules p11-kit-modules-dbgsym Architecture: armel Version: 0.23.15-2+deb10u1 Distribution: buster-security Urgency: high Maintainer: armel Build Daemon (henze) Changed-By: Salvatore Bonaccorso Description: libp11-kit-dev - library for loading and coordinating access to PKCS#11 modules - libp11-kit0 - library for loading and coordinating access to PKCS#11 modules - p11-kit - p11-glue utilities p11-kit-modules - p11-glue proxy and trust modules Changes: p11-kit (0.23.15-2+deb10u1) buster-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix bounds check in p11_rpc_buffer_get_byte_array (CVE-2020-29362) * Check attribute length against buffer size (CVE-2020-29363) * Check for arithmetic overflows before allocating (CVE-2020-29361) * Follow-up to arithmetic overflow fix (CVE-2020-29361) Checksums-Sha1: 1bbcce6342871bd288c0671fdc215255159e7dea 195664 libp11-kit-dev_0.23.15-2+deb10u1_armel.deb b9f6c8ed5af4ec13482b9b22c1fb575f61a2e2a9 1194692 libp11-kit0-dbgsym_0.23.15-2+deb10u1_armel.deb 51cd439b452b0079c4da710a0ad3f4c99b3f1f16 296296 libp11-kit0_0.23.15-2+deb10u1_armel.deb 91ed5d84cf2fe177e63499f92873620366a71e87 295048 p11-kit-dbgsym_0.23.15-2+deb10u1_armel.deb ffe137067d9514a40e828931b0f87d91a57f5afe 1327744 p11-kit-modules-dbgsym_0.23.15-2+deb10u1_armel.deb c02d07b42d224cb98e2b5b0a5e6aed83ab276fa9 193956 p11-kit-modules_0.23.15-2+deb10u1_armel.deb 1b1f8fff49c9a4a4102c0e032b96a90a9f7923af 8142 p11-kit_0.23.15-2+deb10u1_armel-buildd.buildinfo b94251221f6da0990747670c176c75dd074520ae 254592 p11-kit_0.23.15-2+deb10u1_armel.deb Checksums-Sha256: 67fbbbabac48c6ac67b4ef12dae958d6f27687f4288f00114ca56231c145a9a2 195664 libp11-kit-dev_0.23.15-2+deb10u1_armel.deb aae926bea4f1913d78f6caf6a0af663dae139593cdcc33fba9ad4a7e3e0f702d 1194692 libp11-kit0-dbgsym_0.23.15-2+deb10u1_armel.deb 92dcfe15fbb015fcfdb062f1cf054ecb9d684288b556886826ca8877f7e38a56 296296 libp11-kit0_0.23.15-2+deb10u1_armel.deb 6881e943e138bede7b74c3317a5f1b6948e628966a4e7408cad30ab1225681e5 295048 p11-kit-dbgsym_0.23.15-2+deb10u1_armel.deb b259d3d083fa6cc3dbd36f8e665b01f4f4a9b0c75937b2c22486eb3cdcc056f6 1327744 p11-kit-modules-dbgsym_0.23.15-2+deb10u1_armel.deb c7850423311d7e0dd9882f837ea9779fcec537b358f6848dbef2e079ea52c866 193956 p11-kit-modules_0.23.15-2+deb10u1_armel.deb 1bf51980818dd2b663fa3749c959d2ad6ff9dbd0f4a3b3e434e5a04bf5ad784f 8142 p11-kit_0.23.15-2+deb10u1_armel-buildd.buildinfo 85e2892d845eeb9951d3e6106fd39961ee38e47a705bec151d4e0a65fd317116 254592 p11-kit_0.23.15-2+deb10u1_armel.deb Files: 931b51defc72720b4e8737ff3d57c51b 195664 libdevel optional libp11-kit-dev_0.23.15-2+deb10u1_armel.deb 601885092415dc955cf52e92d96d034a 1194692 debug optional libp11-kit0-dbgsym_0.23.15-2+deb10u1_armel.deb c675c1c0047cb2e62c0f0fd182e5001e 296296 libs optional libp11-kit0_0.23.15-2+deb10u1_armel.deb f7049e63717974366c73b2d66a8310e4 295048 debug optional p11-kit-dbgsym_0.23.15-2+deb10u1_armel.deb 9a6ea4aea152835224d0af3c64b52a1c 1327744 debug optional p11-kit-modules-dbgsym_0.23.15-2+deb10u1_armel.deb 753128f325cc87075f2dc95841a6e26e 193956 misc optional p11-kit-modules_0.23.15-2+deb10u1_armel.deb de0a35745d4ec60d62ed4d82181f5d79 8142 libs optional p11-kit_0.23.15-2+deb10u1_armel-buildd.buildinfo 2e525eb9b8ac1f63afa53e2146ebf2c6 254592 misc optional p11-kit_0.23.15-2+deb10u1_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEKAwT/5vje5woIwiZ0XMSYkpNX2oFAl/rSOEACgkQ0XMSYkpN X2qFdA//W0ySo8nyaHNWeeVznlmk2bgomLCiEc7wsMRNDlNwADoUTDMc5JjKcwC7 591SJlI9bnZydy/2AJIgdWLaC8NX81TzT4BA2CUIeDOx1F0sHpPqE8QvDeAtdZ1D jbTigy3smfHxhXen/G+wF+0Pd37jtCrOcMHufoJHkwCXYHj9oIMkHm3NCJ/Oz06+ Y8kclredjuzzt2I5Bn1eFdCLOctEttRTiNh1VbVbMr3tE2GNttDeSmzwXLWQXEOR tG/H5BBPwt9bBqR9cAY7cEJUoiVGoGStZsOaySBV+vfKUTO98KpeT+q9kP50kQt1 u/5GwdHytNvxrsLWcsRCmLHcoQXMSII4ltQRbUjSXW+BaDYTxta7LPMFNvOyTMrE TXx0Luc9S2iAOp7t4dFYF8emJPDICz2RK+2mkeEetnVyNdNXYzfllIRdZEaz3U/I tUcDVNkfz1UGP1SOW2xiBkK9UqEvQwCZYTu+o+Kie+KCiXmJJvcvn3algVw/ewLr Ezl0J1wn0Hw80MWFIlcKeGH/EInFc3GxFueXrp4Qeu7V3hka5qrLSE2/EEMYxdh9 ypQuPleshukIpiUed+YCsWfeAyKR1dey8VkMnxQgieX9vd1WHUfYnkP43NBwvQPc ZFUX5w7Q09vRhOdK0HtpEwFZ88Fmls2B/CD4SZk+JhPJG64hVNw= =X4qc -----END PGP SIGNATURE-----