Format: 1.8 Date: Mon, 04 Jan 2021 14:18:11 -0500 Source: p11-kit Binary: libp11-kit-dev libp11-kit0 p11-kit p11-kit-modules Architecture: i386 i386_translations Version: 0.23.2-5~ubuntu16.04.2 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: libp11-kit-dev - library for loading and coordinating access to PKCS#11 modules - libp11-kit0 - library for loading and coordinating access to PKCS#11 modules - p11-kit - p11-glue utilities p11-kit-modules - p11-glue proxy and trust modules Changes: p11-kit (0.23.2-5~ubuntu16.04.2) xenial-security; urgency=medium . * SECURITY UPDATE: multiple integer overflows - debian/patches/CVE-2020-29361-1.patch: check for arithmetic overflows before allocating in p11-kit/iter.c, p11-kit/lists.c, p11-kit/proxy.c, p11-kit/rpc-message.c, p11-kit/rpc-message.h, p11-kit/rpc-server.c, trust/index.c. - debian/patches/CVE-2020-29361-2.patch: add reallocarray and follow-up to arithmetic overflow fix in common/compat.c, common/compat.h, p11-kit/rpc-message.c. - CVE-2020-29361 * SECURITY UPDATE: heap over-read in the RPC protocol - debian/patches/CVE-2020-29362.patch: fix bounds check in p11-kit/rpc-message.c. - CVE-2020-29362 Checksums-Sha1: 66efd4c2d471b2ff8b0cf5ca4e7813b52a32b280 56588 libp11-kit-dev_0.23.2-5~ubuntu16.04.2_i386.deb 801f9de5bc2017d1b620c7f5678dbdbdfa1852c6 185806 libp11-kit0-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb 23af0cd6c394bd18911b9dd7a13a5fd0d240bd72 109264 libp11-kit0_0.23.2-5~ubuntu16.04.2_i386.deb a9675adce6424c703711cd2a62492c12fc159c1b 112900 p11-kit-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb 850e1af2a9abb726b3d5efcb3f1fd7d092c40da7 114938 p11-kit-modules-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb c16311d12968b5aa4104c88117b4e3b34a8d6bdd 76248 p11-kit-modules_0.23.2-5~ubuntu16.04.2_i386.deb 84c98d913224ec0096478759900d97b9d200aa96 80270 p11-kit_0.23.2-5~ubuntu16.04.2_i386.deb a5c39d6c528c1995e1910b9f686b2dd2881e9740 104115 p11-kit_0.23.2-5~ubuntu16.04.2_i386_translations.tar.gz Checksums-Sha256: c1f536b39840e8901672750b6869222c822aa1a01eb9328c8b5d0bf5ff66c640 56588 libp11-kit-dev_0.23.2-5~ubuntu16.04.2_i386.deb 7c5391739a125c2133e5d8f8edd4730352896b92f1893ab0e796bb45c8d4603a 185806 libp11-kit0-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb 534e96a7830cc275bb8d06cd9b2251888940d96606b4acdea7a6924d991a5ae3 109264 libp11-kit0_0.23.2-5~ubuntu16.04.2_i386.deb e74053fe801c461b28d7fa6f2ac5ccf6a7f1778e600664c7fe228929196d562f 112900 p11-kit-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb ee6eaf1d4518d0ed8808abdd595c3beb89ff70d30c705a049b0d314ead29166f 114938 p11-kit-modules-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb 9f0ef2745b080363e82234ed75a596db067bc3261988fe8d252a07611daef57e 76248 p11-kit-modules_0.23.2-5~ubuntu16.04.2_i386.deb cb14f95a6b0ebafca33e711c979e862fc535f01222fda1fc0bec56f90e1b129b 80270 p11-kit_0.23.2-5~ubuntu16.04.2_i386.deb 336c9fbc8b491556f79de71fdc1281c3976f10aca8abb493a6bb0cd71dae3386 104115 p11-kit_0.23.2-5~ubuntu16.04.2_i386_translations.tar.gz Files: c69fad02e61a55cc20a2eaac10299184 56588 libdevel optional libp11-kit-dev_0.23.2-5~ubuntu16.04.2_i386.deb 7e71ebf5b8ed5c50dd6eb8ada710885d 185806 libs extra libp11-kit0-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb c119929a37853c03943a098c580c9dfe 109264 libs standard libp11-kit0_0.23.2-5~ubuntu16.04.2_i386.deb ce275ba0fe5e823019690e9c546aaa8b 112900 misc extra p11-kit-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb 8e1a8e7c29fa19864eedae1b1853e644 114938 misc extra p11-kit-modules-dbgsym_0.23.2-5~ubuntu16.04.2_i386.ddeb 2d542b81af121603ec171eee049d1261 76248 misc extra p11-kit-modules_0.23.2-5~ubuntu16.04.2_i386.deb f9fd0044878c5adbdf1cfefcb490cf07 80270 misc extra p11-kit_0.23.2-5~ubuntu16.04.2_i386.deb 36575b0b3e0b1bde46bef8ab485e1e6b 104115 raw-translations - p11-kit_0.23.2-5~ubuntu16.04.2_i386_translations.tar.gz Original-Maintainer: Debian GnuTLS Maintainers