-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 29 Dec 2020 15:48:30 +0100 Source: p11-kit Binary: libp11-kit-dev libp11-kit0 libp11-kit0-dbgsym p11-kit p11-kit-dbgsym p11-kit-modules p11-kit-modules-dbgsym Architecture: s390x Version: 0.23.15-2+deb10u1 Distribution: buster-security Urgency: high Maintainer: s390x Build Daemon (zandonai) Changed-By: Salvatore Bonaccorso Description: libp11-kit-dev - library for loading and coordinating access to PKCS#11 modules - libp11-kit0 - library for loading and coordinating access to PKCS#11 modules - p11-kit - p11-glue utilities p11-kit-modules - p11-glue proxy and trust modules Changes: p11-kit (0.23.15-2+deb10u1) buster-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix bounds check in p11_rpc_buffer_get_byte_array (CVE-2020-29362) * Check attribute length against buffer size (CVE-2020-29363) * Check for arithmetic overflows before allocating (CVE-2020-29361) * Follow-up to arithmetic overflow fix (CVE-2020-29361) Checksums-Sha1: 684b956de54e332404386dfb9419dee26ce72420 195656 libp11-kit-dev_0.23.15-2+deb10u1_s390x.deb 875b78701bbab3cba191fb4671f6fcf28e858aa4 1473928 libp11-kit0-dbgsym_0.23.15-2+deb10u1_s390x.deb a570b7438ae744adf51f0e8fd591346448c6f13d 313944 libp11-kit0_0.23.15-2+deb10u1_s390x.deb 16fe40a480b9cffc5fb748fbbc25e0b25fdc9fcf 309716 p11-kit-dbgsym_0.23.15-2+deb10u1_s390x.deb 78d600c3d249ab34f88d60f1e05fff35f2adf419 1611484 p11-kit-modules-dbgsym_0.23.15-2+deb10u1_s390x.deb 0d0208a4cadd9a5cb5c06c20edeeb05eb9a04162 217468 p11-kit-modules_0.23.15-2+deb10u1_s390x.deb 23d1a95c41d24cb102e0ce2842c09f17f1390d29 8162 p11-kit_0.23.15-2+deb10u1_s390x-buildd.buildinfo 3123f3d589d88ecfb09591c5ab002b59140e3f73 262500 p11-kit_0.23.15-2+deb10u1_s390x.deb Checksums-Sha256: 1670aabc3ad891868f08dfd1adc3edcd7606ef2bb2070e7fa1f63f46d1fbbe5c 195656 libp11-kit-dev_0.23.15-2+deb10u1_s390x.deb 5c9fa75fafb39d7814b7ad37f40fffdbd8f9d61672982ec036e0cb3c3aedaaf1 1473928 libp11-kit0-dbgsym_0.23.15-2+deb10u1_s390x.deb ca2d52478513d5a8d12cf85154848dd2c485d8d2cad06d71a0272ca77e14b8c8 313944 libp11-kit0_0.23.15-2+deb10u1_s390x.deb afb36e548212d23e0bb10f8f0f3e866696a5c66ff285c71a2b99f4f08bd91619 309716 p11-kit-dbgsym_0.23.15-2+deb10u1_s390x.deb 2978c065436f85adaf8aa626b2df95d731c82dc2acf771c2457024498dc2426f 1611484 p11-kit-modules-dbgsym_0.23.15-2+deb10u1_s390x.deb a3a2f2d138404e6e9f8194b9a6cb3ebe23be4414e8b68f1b38485ae7d2c8eaef 217468 p11-kit-modules_0.23.15-2+deb10u1_s390x.deb 71cdc68d5e3811ca8e977248149ead07ade3f2bd2713b716775b0c584f83ce44 8162 p11-kit_0.23.15-2+deb10u1_s390x-buildd.buildinfo 9159151f5c78e63f22f7692c3d625c7eb66ccb1a23a7b965d92a86bc37dd1a53 262500 p11-kit_0.23.15-2+deb10u1_s390x.deb Files: d7394a7936b36ec7a5af380d9bd0a1a5 195656 libdevel optional libp11-kit-dev_0.23.15-2+deb10u1_s390x.deb e3465bfe215da0c1eb5a19ca4dd581e1 1473928 debug optional libp11-kit0-dbgsym_0.23.15-2+deb10u1_s390x.deb 47beb26ee7675c219fde892b3005c83c 313944 libs optional libp11-kit0_0.23.15-2+deb10u1_s390x.deb ead4daed67f9f0b8c057eff272893510 309716 debug optional p11-kit-dbgsym_0.23.15-2+deb10u1_s390x.deb f5b0795da950aa0d94f5b3fdf9d7b031 1611484 debug optional p11-kit-modules-dbgsym_0.23.15-2+deb10u1_s390x.deb 71b33d0086e80b38b263174e3de3b863 217468 misc optional p11-kit-modules_0.23.15-2+deb10u1_s390x.deb fd0e9e7d1981d1cd9b1f2adcbe887160 8162 libs optional p11-kit_0.23.15-2+deb10u1_s390x-buildd.buildinfo 51a837aef9213e974ea6cba07887e647 262500 misc optional p11-kit_0.23.15-2+deb10u1_s390x.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEFqa2gGJPuqUn28GPt7ZbF/TyQK4FAl/rRvgACgkQt7ZbF/Ty QK5mcw/6AyGkwIjQG3DOtC/bD5X01Dv1Io6y99RcC0aTSWfWsuG34fkzcTwa6DDv yww7pSYQB1TiZwDjTxslz5AVsPl06hBQOvyV7VeMSmSooF/r/n62+f9S2lTvv9rJ xd7qYuvNpxASIpihyA5jEW+xl8pvDQ+hwaXBelnFNuo6uSU46dyvuKtP3WZ+DbiA FeKnpF711ehnPiR7lSTWIkXOO7dhAHefzZJrv5pm3x2YBBOA/g+mk9yhwxsYSgLF NOpNsAqhaypx6NVJ8e5ot9rtYua9usT9oQDMcMOe68tG1Ctp/MTWVI1s55OasNTG 171IciHVlKMidoNKVkheb27PY+mI9oAI2cgB9nXFeC4+XQx4evmZ0obLlz3sWv56 Wn60DYaKOFtTM3BsL3QvfgrAywtPjgtLmLvdLG7Elgv9zfZmGrZJi+mMEcEXyuS2 U6cIm+7cApCVhhJYQCi7CCM2NRFlqVnwIZ8uDxVjoCvQACzZfnU4MWZrx5wRcOXG 82jsANkZDf8sP3+pknvqlHUxzVqzHTm9j7qSfd0v1xZuwKS+BuXTlpPjz7yI1s7I qF4XosNeW4s2khe+F1x6QfAWz8Qz/3qC0o7PVc3Wuvu0QHJY+sT15BwcTV/quuqM ndPoLnsoAA2/jpRnqIfFZar14GUS8OmK9yZFT7YTfBWFTrGXIK0= =d5Sh -----END PGP SIGNATURE-----