Format: 1.8 Date: Tue, 02 Jan 2024 11:54:04 -0500 Source: openssh Binary: openssh-client openssh-server openssh-sftp-server openssh-tests ssh-askpass-gnome Built-For-Profiles: noudeb Architecture: arm64 arm64_translations Version: 1:8.9p1-3ubuntu0.6 Distribution: jammy Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: openssh-client - secure shell (SSH) client, for secure access to remote machines openssh-server - secure shell (SSH) server, for secure access from remote machines openssh-sftp-server - secure shell (SSH) sftp server module, for SFTP access from remot openssh-tests - OpenSSH regression tests ssh-askpass-gnome - interactive X program to prompt users for a passphrase for ssh-ad Changes: openssh (1:8.9p1-3ubuntu0.6) jammy-security; urgency=medium . * SECURITY UPDATE: incomplete PKCS#11 destination constraints - debian/patches/CVE-2023-51384.patch: apply destination constraints to all p11 keys in ssh-agent.c. - CVE-2023-51384 * SECURITY UPDATE: command injection via shell metacharacters - debian/patches/CVE-2023-51385.patch: ban user/hostnames with most shell metacharacters in ssh.c. - CVE-2023-51385 Checksums-Sha1: 79378f5c1f5982782dc41b80b2b1850a3b563842 2977060 openssh-client-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb ded5b990c9025b355f8e599031e4fd58d4f50baf 863540 openssh-client_8.9p1-3ubuntu0.6_arm64.deb 176048bccc3e4f71cd08952cafa8a7686d7897a4 960110 openssh-server-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 672071a6dab376a77f3376fed3b2f1b9c515f314 414018 openssh-server_8.9p1-3ubuntu0.6_arm64.deb eb3f97aed0c90dea4aa104a2f0a6cdca13d2997f 108996 openssh-sftp-server-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 2a24a59f13978f1c612b3e5919c6cb8729e8f344 36834 openssh-sftp-server_8.9p1-3ubuntu0.6_arm64.deb a6340a14d0edc361b08c05c921277c7e60323151 1521796 openssh-tests-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb e3d7d7021476db0bb0a3777b1203aa8b9a3fddd8 1409550 openssh-tests_8.9p1-3ubuntu0.6_arm64.deb 8f7357f0df8b9bd23aa9ef9e2540a99f72d0829a 18911 openssh_8.9p1-3ubuntu0.6_arm64.buildinfo 89a6dcd9c641feac6db5a94d2d8db5a52647d77b 8516 openssh_8.9p1-3ubuntu0.6_arm64_translations.tar.gz 68b6af9e153b499342f4a509de6d6acba388880f 17270 ssh-askpass-gnome-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 97564ed1f5f18a35dd5f6ce8ebb9d3554e7eed39 17574 ssh-askpass-gnome_8.9p1-3ubuntu0.6_arm64.deb Checksums-Sha256: b307b78b1c415d1934f7e6c606c4d3c16ce1d1c7707cca43cfeb5e7eece1e78e 2977060 openssh-client-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb aec00d6a2d56c309dcf865c682330c484dd8e16762c9a461653dd2b4378da380 863540 openssh-client_8.9p1-3ubuntu0.6_arm64.deb f71effe9c805767f64ea923a771e2c0901df6c343e1ba955dadc99b12661dfa2 960110 openssh-server-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 8204484e99141283cbf8a22c4361d147b38ab7e0953284158dd3bc6e9d0271c2 414018 openssh-server_8.9p1-3ubuntu0.6_arm64.deb ea74024d05e5ab4958d88d72c7c9b4d56b9d51e464ba0a22ce9628b688ccd8aa 108996 openssh-sftp-server-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb fd384891fbcf71aeedf9b635f89cf11a28f760f69f3c2c99c428c099e6b28189 36834 openssh-sftp-server_8.9p1-3ubuntu0.6_arm64.deb 1879facc8c13d9662d2c28b7ae1efcbaa448a287dfed4851486d5e8d15bc7198 1521796 openssh-tests-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb a0f4d8028b1217209eeeee7d57c29dce46b62046fe212b70638562fa991676ba 1409550 openssh-tests_8.9p1-3ubuntu0.6_arm64.deb d362eec301524b6cd6a1b00e28d056dd96eb60f638b4aeb253a388053e96116a 18911 openssh_8.9p1-3ubuntu0.6_arm64.buildinfo f4eb5aef5c27ee90303745de5179945f7ba291037431c92faa3d8c8408b4b95f 8516 openssh_8.9p1-3ubuntu0.6_arm64_translations.tar.gz 7415b29737c30fcc56dad653bfd1a025bbe18f7c6cf5c4d0ab1e676bd2178421 17270 ssh-askpass-gnome-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 136e21612ac22c7bb2cb4c7062fb0ef2e4662715a6db3de001f386c49982782d 17574 ssh-askpass-gnome_8.9p1-3ubuntu0.6_arm64.deb Files: fa797a89059a3a446afc23daa00829b1 2977060 debug optional openssh-client-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb fe7d8bf8aa41e36f882a9646a4c45afd 863540 net standard openssh-client_8.9p1-3ubuntu0.6_arm64.deb 1fdcbb8aeac79a04c55c3129664cd878 960110 debug optional openssh-server-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb ac56fba708997632d65b7da00fa86755 414018 net optional openssh-server_8.9p1-3ubuntu0.6_arm64.deb 0899073e71aa868a44b8bb13d6cc72ec 108996 debug optional openssh-sftp-server-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 8e12dfe11c8633c074a172aa5102cc6a 36834 net optional openssh-sftp-server_8.9p1-3ubuntu0.6_arm64.deb 77aa4eb6ec8424844ec87c59b69812b5 1521796 debug optional openssh-tests-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb 3f2299646d99cdf594c0db45f9af106d 1409550 net optional openssh-tests_8.9p1-3ubuntu0.6_arm64.deb 1dbb4c0cd0666f27ff383959a59aeed0 18911 net standard openssh_8.9p1-3ubuntu0.6_arm64.buildinfo 074838ddcc368b9c5007b2b3c3e63087 8516 raw-translations - openssh_8.9p1-3ubuntu0.6_arm64_translations.tar.gz 6ce76772b1167b61d212777878b9d7e4 17270 debug optional ssh-askpass-gnome-dbgsym_8.9p1-3ubuntu0.6_arm64.ddeb abde53e5f3bebe7fc8fba5eb36e27c7c 17574 gnome optional ssh-askpass-gnome_8.9p1-3ubuntu0.6_arm64.deb Original-Maintainer: Debian OpenSSH Maintainers