Format: 1.8 Date: Fri, 27 Oct 2023 07:38:17 -0400 Source: open-vm-tools Binary: open-vm-tools open-vm-tools-containerinfo open-vm-tools-desktop open-vm-tools-dev open-vm-tools-sdmp Built-For-Profiles: noudeb Architecture: arm64 Version: 2:12.1.5-3~ubuntu0.22.04.4 Distribution: jammy Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: open-vm-tools - Open VMware Tools for virtual machines hosted on VMware (CLI) open-vm-tools-containerinfo - Open VMware Tools for VMs hosted on VMware (Service Discovery Plu open-vm-tools-desktop - Open VMware Tools for virtual machines hosted on VMware (GUI) open-vm-tools-dev - Open VMware Tools for virtual machines hosted on VMware (developm open-vm-tools-sdmp - Open VMware Tools for VMs hosted on VMware (Service Discovery Plu Changes: open-vm-tools (2:12.1.5-3~ubuntu0.22.04.4) jammy-security; urgency=medium . * SECURITY UPDATE: SAML Bypass - debian/patches/CVE-2023-34058.patch: don't accept tokens with unrelated certs in open-vm-tools/vgauth/common/certverify.c, open-vm-tools/vgauth/common/certverify.h, open-vm-tools/vgauth/common/prefs.h, open-vm-tools/vgauth/serviceImpl/saml-xmlsec1.c. - CVE-2023-34058 * SECURITY UPDATE: file descriptor hijack - debian/patches/CVE-2023-34059.patch: change privilege dropping order in open-vm-tools/services/vmtoolsd/mainPosix.c, open-vm-tools/vmware-user-suid-wrapper/main.c. - CVE-2023-34059 Checksums-Sha1: 0269b1710bdd791f402c1d58637a59d6caf1b399 3074326 open-vm-tools-containerinfo-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 6c8c4d4cc24cbe4b6790fe49ea508907302373c9 178796 open-vm-tools-containerinfo_12.1.5-3~ubuntu0.22.04.4_arm64.deb 8cfd065712cd24f4fb21904982205543dfb58c48 2387516 open-vm-tools-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 47fb90c934cd9911d0df4039a159aebe689a94b1 1291514 open-vm-tools-desktop-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 88d287ff9d3950913e1abff30ae47df3d06e140b 131332 open-vm-tools-desktop_12.1.5-3~ubuntu0.22.04.4_arm64.deb 3fc64d57487bf81a919cb7a36f9be3a5d4c7c97c 544100 open-vm-tools-dev_12.1.5-3~ubuntu0.22.04.4_arm64.deb 97fc0ffe5b2e43c9549b6b2ada64cec9edb72491 24086 open-vm-tools-sdmp-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb ac66e5730eecec7dfd866c89a62a0979175d5b7f 17124 open-vm-tools-sdmp_12.1.5-3~ubuntu0.22.04.4_arm64.deb 9407f94f8491dbae1b08809554aa3f7c1945c880 21057 open-vm-tools_12.1.5-3~ubuntu0.22.04.4_arm64.buildinfo a81007564b2849aa47e9f13b1dfb492fb3c8923a 730490 open-vm-tools_12.1.5-3~ubuntu0.22.04.4_arm64.deb Checksums-Sha256: 45909cab1119b4d41d44fdd9ddd21f8c810babbc2a452eb3e402dcdb8e4ccdcc 3074326 open-vm-tools-containerinfo-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 8bbc2d3a131b8f1d56fa788b8314ea567cc48bcacc14310e0062978909ae2318 178796 open-vm-tools-containerinfo_12.1.5-3~ubuntu0.22.04.4_arm64.deb 79df1fbd5c4cd56cd8e0ce6724845ad37b394adf7c651a36e1e8d5083aca0808 2387516 open-vm-tools-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb ac60c90be924ce950eb6ba92072de6248c9e60b25a72fc2db52a41a7704a9430 1291514 open-vm-tools-desktop-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb a286812f66e7c7f468280fa63a1baa88ed29e73ee0d19b82a6a351f6275a3a3d 131332 open-vm-tools-desktop_12.1.5-3~ubuntu0.22.04.4_arm64.deb dd99080b9b7a6a76ae1953fc1a989ab8fdea7e433e3b8b4713e1990236c83548 544100 open-vm-tools-dev_12.1.5-3~ubuntu0.22.04.4_arm64.deb fa4c3a89eae3945fded799717a6db9680e9ee877172e3d5aa45d2fbcb740e9fe 24086 open-vm-tools-sdmp-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb c008ed2f47de3ab1edea0be4529f0a9e3a3e12b7cc342799653642c93007fe4b 17124 open-vm-tools-sdmp_12.1.5-3~ubuntu0.22.04.4_arm64.deb eb6c395fc49f18db284d53480b54e81f3912b7d6271098cc4c9ed78700fc11e0 21057 open-vm-tools_12.1.5-3~ubuntu0.22.04.4_arm64.buildinfo aced0cef9c4a8edb824ddcc94c16a03a6f5e9a44baacb1a4f53b5258b117c0ff 730490 open-vm-tools_12.1.5-3~ubuntu0.22.04.4_arm64.deb Files: b13d75b9a594b4f615219f7d381cc20d 3074326 debug optional open-vm-tools-containerinfo-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 5e25811f182ce4e91278f75ebdc5c564 178796 admin optional open-vm-tools-containerinfo_12.1.5-3~ubuntu0.22.04.4_arm64.deb 7fde45bf112f29f453734b436bf3ad00 2387516 debug optional open-vm-tools-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 07a33d4d2118f64ec4e256fb63331087 1291514 debug optional open-vm-tools-desktop-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 1c199327bb3e8cb734ca33c669d2ab71 131332 admin optional open-vm-tools-desktop_12.1.5-3~ubuntu0.22.04.4_arm64.deb 254f531c59811559ed66d4ff078c2b28 544100 devel optional open-vm-tools-dev_12.1.5-3~ubuntu0.22.04.4_arm64.deb 05fb67a5e605623c8abd61b9564343bd 24086 debug optional open-vm-tools-sdmp-dbgsym_12.1.5-3~ubuntu0.22.04.4_arm64.ddeb 9448df141bf7d29e1b507e80feb82d2b 17124 admin optional open-vm-tools-sdmp_12.1.5-3~ubuntu0.22.04.4_arm64.deb 990f0e46fb85a31da4579f80d5b0f9f8 21057 admin optional open-vm-tools_12.1.5-3~ubuntu0.22.04.4_arm64.buildinfo 109e2e0fd98c4d17a1f0bec520e88432 730490 admin optional open-vm-tools_12.1.5-3~ubuntu0.22.04.4_arm64.deb Original-Maintainer: Bernd Zeimetz