Format: 1.8 Date: Mon, 04 Jan 2021 14:08:12 -0500 Source: p11-kit Binary: libp11-kit-dev libp11-kit0 p11-kit p11-kit-modules Architecture: i386 i386_translations Version: 0.23.9-2ubuntu0.1 Distribution: bionic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libp11-kit-dev - library for loading and coordinating access to PKCS#11 modules - libp11-kit0 - library for loading and coordinating access to PKCS#11 modules - p11-kit - p11-glue utilities p11-kit-modules - p11-glue proxy and trust modules Changes: p11-kit (0.23.9-2ubuntu0.1) bionic-security; urgency=medium . * SECURITY UPDATE: multiple integer overflows - debian/patches/CVE-2020-29361-1.patch: check for arithmetic overflows before allocating in p11-kit/iter.c, p11-kit/lists.c, p11-kit/proxy.c, p11-kit/rpc-message.c, p11-kit/rpc-message.h, p11-kit/rpc-server.c, trust/index.c. - debian/patches/CVE-2020-29361-2.patch: follow-up to arithmetic overflow fix in common/compat.c, p11-kit/rpc-message.c. - CVE-2020-29361 * SECURITY UPDATE: heap over-read in the RPC protocol - debian/patches/CVE-2020-29362.patch: fix bounds check in p11-kit/rpc-message.c. - CVE-2020-29362 * SECURITY UPDATE: heap overflow in RPC protocol - debian/patches/CVE-2020-29363.patch: check attribute length against buffer size in p11-kit/rpc-message.c. - CVE-2020-29363 Checksums-Sha1: 2d9a9d93b64050d2e1717ea47687e37d735c5be0 60936 libp11-kit-dev_0.23.9-2ubuntu0.1_i386.deb 14b2244c65e135efc07971bcd8c2a5a9ec99e3d3 768556 libp11-kit0-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb e4af6453ae71e6755bb7ff521080a79829912de4 186288 libp11-kit0_0.23.9-2ubuntu0.1_i386.deb 644613c6b2b5640ae163080bbc08e63aa83658cf 225320 p11-kit-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb eed990ddecc862567fa19ec400055121f55d9c70 897676 p11-kit-modules-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb 761c33e240b37b747661e076a8a9f36ef46056a7 226188 p11-kit-modules_0.23.9-2ubuntu0.1_i386.deb 34499df7289606b08e38ff97887222d67acbd4bf 8363 p11-kit_0.23.9-2ubuntu0.1_i386.buildinfo e57a4b92e12ddf79ccee3e5b89fa768fd77adcca 96144 p11-kit_0.23.9-2ubuntu0.1_i386.deb 0e3b81c055d029392a06b8966b7ddb4caf6ccf94 104072 p11-kit_0.23.9-2ubuntu0.1_i386_translations.tar.gz Checksums-Sha256: 41e39b58b1e04636988c3ce7ef77cf04dc62e74c50119f59737fcab23111daa0 60936 libp11-kit-dev_0.23.9-2ubuntu0.1_i386.deb 6c84adaf9c48d575ef4c5ade9c801189d942c9ceddc1eacba6479bda5b6a4e0e 768556 libp11-kit0-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb f15cd29b8b5df7863d6704f817437e47eb3eb790a42c19f924469ee014ee83be 186288 libp11-kit0_0.23.9-2ubuntu0.1_i386.deb 2496faec6d776ca10f2f4ccba681a6066aec77ca0f35c25fb4f66d5882d423e6 225320 p11-kit-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb aedefabc51a518cc19e43d1a7b91b98a7c4364b32d6b9f8770acfc8d26df805b 897676 p11-kit-modules-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb 110c5a96ce366d49d4a75e8221d0574ba31c2ff077fd7cb302992b36f67ff51c 226188 p11-kit-modules_0.23.9-2ubuntu0.1_i386.deb 95a7bb414260ea94d64ae755cedb0fb8f80244aa95a42f1231fce62313b3d705 8363 p11-kit_0.23.9-2ubuntu0.1_i386.buildinfo 7f13a5f4b6e9018adb1f266595a132554e4760d71047bfc9c39d12f83719edb8 96144 p11-kit_0.23.9-2ubuntu0.1_i386.deb 25a09fe0b563846bebb2c8905cc8fed1e9a265c3d30441e60b34d15510cfb3c0 104072 p11-kit_0.23.9-2ubuntu0.1_i386_translations.tar.gz Files: 96bbfdddbf45f9c46e4424c5ae19326e 60936 libdevel optional libp11-kit-dev_0.23.9-2ubuntu0.1_i386.deb 9781624290a6830e1decfeade5c6bed1 768556 debug optional libp11-kit0-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb e53bbf2dc6f5db7742f9cfdbd3ca89c1 186288 libs standard libp11-kit0_0.23.9-2ubuntu0.1_i386.deb 6acd3665fdf0248304dee0424bcf82f2 225320 debug optional p11-kit-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb d21bf3b3707f515299c28ecfa38caa9b 897676 debug optional p11-kit-modules-dbgsym_0.23.9-2ubuntu0.1_i386.ddeb 0bf90bebcf2b175026a3bd147223061e 226188 misc optional p11-kit-modules_0.23.9-2ubuntu0.1_i386.deb 87272b858c4b6ead4ab43d4eb0eeb9d7 8363 libs optional p11-kit_0.23.9-2ubuntu0.1_i386.buildinfo bf1ac25ffcede895ca00d78a2607868c 96144 misc optional p11-kit_0.23.9-2ubuntu0.1_i386.deb 4e3b42bd07f1b700cdb1a27dc064ca26 104072 raw-translations - p11-kit_0.23.9-2ubuntu0.1_i386_translations.tar.gz Original-Maintainer: Debian GnuTLS Maintainers