Format: 1.8 Date: Wed, 01 Mar 2023 18:23:14 -0300 Source: libtpms Binary: libtpms-dev libtpms0 Built-For-Profiles: noudeb Architecture: armhf Version: 0.9.3-0ubuntu2 Distribution: lunar-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Rodrigo Figueiredo Zaiden Description: libtpms-dev - libtpms header files and man pages libtpms0 - TPM emulation library Changes: libtpms (0.9.3-0ubuntu2) lunar; urgency=medium . * SECURITY UPDATE: out-of-bounds read/write - debian/patches/CVE-2023-1017_1018.patch: add a buffer size check and properly reduce bufferSize variable by the number of bytes that make up the cipherSize in CryptParameterDecryption() in src/tpm2/CryptUtil.c - CVE-2023-1017 - CVE-2023-1018 * SECURITY UPDATE: out-of-bounds read - debian/patches/tpm2-Check-size-of-TPM2B_NAME.patch: add a buffer size check in TPM2_PolicyAuthorize() in src/tpm2/EACommands.c. - No CVE number Checksums-Sha1: 61a782869da9d04aee4070ee5f0b0fb05fed145a 451670 libtpms-dev_0.9.3-0ubuntu2_armhf.deb bc58c105486523b50c40bd1decfdaf4272c585a7 957368 libtpms0-dbgsym_0.9.3-0ubuntu2_armhf.ddeb bb811105fd6cc49cbaf846adf043b141e148215b 293810 libtpms0_0.9.3-0ubuntu2_armhf.deb 1a998576e9b9dfa752cf5e0377563def9e001a5b 6118 libtpms_0.9.3-0ubuntu2_armhf.buildinfo Checksums-Sha256: 11db270490a83c549e1d49cee603aa872d8cf21ebae82ba938bd83a8d0eef76a 451670 libtpms-dev_0.9.3-0ubuntu2_armhf.deb b84b85debe3c31b9bc88378c7e3b2294b38de166213d1df415c31e665bcffddd 957368 libtpms0-dbgsym_0.9.3-0ubuntu2_armhf.ddeb 1ad5898bc85c128b67cbeda803326f2a081490c584a179a2fedb08caef6d8cb2 293810 libtpms0_0.9.3-0ubuntu2_armhf.deb bd4b4a7da337af011e8f87ebfb27a526d6e1b43cdeaf95c4bb5ec5a6ec7e2e8b 6118 libtpms_0.9.3-0ubuntu2_armhf.buildinfo Files: 12d0c2dfd7c7b5dde861760e765c5658 451670 libdevel optional libtpms-dev_0.9.3-0ubuntu2_armhf.deb 0a5252c53942fce1172273e4574d277c 957368 debug optional libtpms0-dbgsym_0.9.3-0ubuntu2_armhf.ddeb fd1777642df09acc35bfd7dcdd6144d9 293810 libs optional libtpms0_0.9.3-0ubuntu2_armhf.deb a135be2434f953cc9cf75a6fb4ba57b2 6118 libs optional libtpms_0.9.3-0ubuntu2_armhf.buildinfo Original-Maintainer: Seunghun Han