Format: 1.8 Date: Tue, 02 Jan 2024 11:33:40 -0500 Source: openssh Binary: openssh-client openssh-server openssh-sftp-server openssh-tests ssh-askpass-gnome Built-For-Profiles: noudeb Architecture: s390x s390x_translations Version: 1:9.3p1-1ubuntu3.2 Distribution: mantic Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: openssh-client - secure shell (SSH) client, for secure access to remote machines openssh-server - secure shell (SSH) server, for secure access from remote machines openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot openssh-tests - OpenSSH regression tests ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad Changes: openssh (1:9.3p1-1ubuntu3.2) mantic-security; urgency=medium . * SECURITY UPDATE: incomplete PKCS#11 destination constraints - debian/patches/CVE-2023-51384.patch: apply destination constraints to all p11 keys in ssh-agent.c. - CVE-2023-51384 * SECURITY UPDATE: command injection via shell metacharacters - debian/patches/CVE-2023-51385.patch: ban user/hostnames with most shell metacharacters in ssh.c. - CVE-2023-51385 Checksums-Sha1: 4fa94598432461898e8c6e4027b522fa572c44c9 2659286 openssh-client-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 8c506fbba22fec56cb28ffbc612b27af2534f110 908024 openssh-client_9.3p1-1ubuntu3.2_s390x.deb 65ad4807a04ebafc8843ed50160ec84d2309e86c 972410 openssh-server-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb ca83628acf21022bab7f024e7d73ab57b67cd833 439608 openssh-server_9.3p1-1ubuntu3.2_s390x.deb 2fbda4fa58cbdf8997748a92a73abf6fcf91a9cd 102108 openssh-sftp-server-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 453ea98e939bb3d238567d645bb505bb79fea581 38444 openssh-sftp-server_9.3p1-1ubuntu3.2_s390x.deb 435bd1814fd82f4589fa733afa131f716de1a7ce 1274184 openssh-tests-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb e484abce176abf8976e11966c076baaa71476cdf 1392036 openssh-tests_9.3p1-1ubuntu3.2_s390x.deb ae7917c4146f1fafaefa2afdec7a1acf58dc27b7 18004 openssh_9.3p1-1ubuntu3.2_s390x.buildinfo db67ddef81676fd6e772b6c108e3cab0d8bd5b4b 9752 openssh_9.3p1-1ubuntu3.2_s390x_translations.tar.gz 41208008be0ef182236e900bceff201880cf3a60 17498 ssh-askpass-gnome-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 0dc92fff6aae6e76055b474de5b6879045e20903 18774 ssh-askpass-gnome_9.3p1-1ubuntu3.2_s390x.deb Checksums-Sha256: 6d8e34233d8b303dacfa63d0afb9fd2631355d79a7c8160098e8c7a5b0ef2cb5 2659286 openssh-client-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 59edf310845a560c244c0230a9392a0fe3aa85d2e5241425cdd3750e2f7bb45c 908024 openssh-client_9.3p1-1ubuntu3.2_s390x.deb 4fdd1f7db31e52769b271e889b41d09fdf091cb35fd9156e6e652be0ed1a381e 972410 openssh-server-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb b441217c26edec74367be7227433397e01cdd59003d52b7fddb2babfce40472a 439608 openssh-server_9.3p1-1ubuntu3.2_s390x.deb 097f352c9ef8773e383dfea2993e2af8f57366d4f8bc3068f66d060c80f32626 102108 openssh-sftp-server-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 2fc8be2e2ea95bb9c79fa795438f8b9214ce95f0025f26e110cc5f0e635d8d18 38444 openssh-sftp-server_9.3p1-1ubuntu3.2_s390x.deb be47b031dab8960054eb92abc2a19b0a55e0683d5c6ab4b95c5e9eeea11b46f5 1274184 openssh-tests-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 839c7799485dbb9aacf9a172ac0f4c28ccfcab91d8ecbaaaae53112711f82289 1392036 openssh-tests_9.3p1-1ubuntu3.2_s390x.deb 3e838b32d80fd68839f644f9b652e7b2be7bef9499e45e4cf220c72c687b9d2c 18004 openssh_9.3p1-1ubuntu3.2_s390x.buildinfo 098449b43124a58ca527ea4f80fdcfc8f0056ffe1caa6c975f51a992968151bc 9752 openssh_9.3p1-1ubuntu3.2_s390x_translations.tar.gz 230eb90acc33e4fd607c6a23b33db5149181a12103f3ea64ab9ccf06f24709b3 17498 ssh-askpass-gnome-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 22b351eff5be14b5c1af6b130a9cf64316593ff5adf28f21bde93f66b581dd5b 18774 ssh-askpass-gnome_9.3p1-1ubuntu3.2_s390x.deb Files: 5b8a2b3cdf519008fa2719a58fe9e8be 2659286 debug optional openssh-client-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 993ab67caf251c313aa050fa6da1751a 908024 net standard openssh-client_9.3p1-1ubuntu3.2_s390x.deb 690eb8f936bae5f520f6fa2a2f6fed69 972410 debug optional openssh-server-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 8bec3c0e25a1e814971328abe44b8af9 439608 net optional openssh-server_9.3p1-1ubuntu3.2_s390x.deb a55d7734fd0f9b11c92eb54998747657 102108 debug optional openssh-sftp-server-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb a0aad457dfd33de4508f5d3489b98045 38444 net optional openssh-sftp-server_9.3p1-1ubuntu3.2_s390x.deb a2c7e5d6e23f62254addd8cc4b540b7f 1274184 debug optional openssh-tests-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 17e841ada0d1cb2537d8712ed5354335 1392036 net optional openssh-tests_9.3p1-1ubuntu3.2_s390x.deb 9c704118f24f6772bb7e83575f9d1541 18004 net standard openssh_9.3p1-1ubuntu3.2_s390x.buildinfo ad5aa25dc72b45f360997807b946ade0 9752 raw-translations - openssh_9.3p1-1ubuntu3.2_s390x_translations.tar.gz 4ded36acbda61eb18ff6bc64e41fe270 17498 debug optional ssh-askpass-gnome-dbgsym_9.3p1-1ubuntu3.2_s390x.ddeb 5fa5eab47c971a65b670d8868c557d58 18774 gnome optional ssh-askpass-gnome_9.3p1-1ubuntu3.2_s390x.deb Original-Maintainer: Debian OpenSSH Maintainers