-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 29 Jan 2021 22:59:51 -0800 Source: openldap Architecture: source Version: 2.4.57+dfsg-1~bpo10+1 Distribution: buster-backports Urgency: medium Maintainer: Debian OpenLDAP Maintainers <pkg-openldap-devel@lists.alioth.debian.org> Changed-By: Ryan Tandy <ryan@nardis.ca> Changes: openldap (2.4.57+dfsg-1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . openldap (2.4.57+dfsg-1) unstable; urgency=medium . * New upstream release. - Fixed slapd crashes in Certificate Exact Assertion processing (ITS#9404, ITS#9424) (CVE-2020-36221) - Fixed slapd assertion failures in saslAuthzTo validation (ITS#9406, ITS#9407) (CVE-2020-36222) - Fixed slapd crash in Values Return Filter control handling (ITS#9408) (CVE-2020-36223) - Fixed slapd crashes in saslAuthzTo processing (ITS#9409, ITS#9412, ITS#9413) (CVE-2020-36224, CVE-2020-36225, CVE-2020-36226) - Fixed slapd assertion failure in X.509 DN parsing (ITS#9423) (CVE-2020-36230) - Fixed slapd crash in X.509 DN parsing (ITS#9425) (CVE-2020-36229) - Fixed slapd crash in Certificate List Exact Assertion processing (ITS#9427) (CVE-2020-36228) - Fixed slapd infinite loop with Cancel operation (ITS#9428) (CVE-2020-36227) Checksums-Sha1: 82419bba20851aecb2db7d93269fc89c3c463482 3093 openldap_2.4.57+dfsg-1~bpo10+1.dsc 39696e5272cddb222a2082c8ff0cd176f5f7fffb 168172 openldap_2.4.57+dfsg-1~bpo10+1.debian.tar.xz Checksums-Sha256: 740077cbd35ad04aad7e6802cd70cb4d5d2c995d76ee08cd8bba36a4ebfca6e2 3093 openldap_2.4.57+dfsg-1~bpo10+1.dsc 7baf7be99cf3f2c59145892bb054c0677c38c7225a37fd8a5903bd70fac61601 168172 openldap_2.4.57+dfsg-1~bpo10+1.debian.tar.xz Files: 4f4a2f133f1fb4807df1de72fe89238a 3093 net optional openldap_2.4.57+dfsg-1~bpo10+1.dsc 754de63cf17e26e1c3254f1899e29e12 168172 net optional openldap_2.4.57+dfsg-1~bpo10+1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQJDBAEBCgAtFiEEPSfh0nqdQTd5kOFlIp/PEvXWa7YFAmAV6ukPHHJ5YW5AbmFy ZGlzLmNhAAoJECKfzxL11mu2MSwP/1hmsjzO/+rrXBKrno3aIyk7dJOuuwKsjn6R cav5X2VZZckvdUur44ZGKqJDHUdOijOhSB1a3mDwr5f46suR22+b6QTcDn3voTpJ WrSBnKnXGrfki8XvZGEH3tMqTj262TpQXgzxgymIxqyVjlChU0V72h6L2GY5Cx1y 0gFOMrkTWhPqvPvhQ/p/u45mWClVcAhi9j8D7NBOZFJDJ5uom/GKR4p/POqRiKhp sqUu8taAPCFeRGmtgRk0iAwdn/JiMOFpclNRvAVDqO2BA4y5Pb13MSmg8X3QS6uE 7Q4crmBbeWIWQH5x5sYdBkU9iocx2tQOH/VMOn2JJuco1o0HMbYGGDjO6USNhEM9 +/YT/1t8DPFq/UTmV5pctNR2LmpRmHn3xz2K+rveLTzNJ+94pjiBW3oRH/lvIgAt 1qRQ6pfVS4K5M48byhoO54EKVyvVlRKe0dkU8I49HvuJEuzfBkik7aysJmdaPYBs M23WRg+TvwVSXAnOaRLOu4aftw//pZkMpZ2U5AtkypnwhVDUk3aDYNPE+Yi8Ofdu 1qVHj8lxbY5hk61i/y2V9vfzt7ocBDs41DTcSRC4jA5vEDYl7Y+9WzEq4BvrLREk YiUND8ypIeCupsNSpYmbZ5fIM/7oqTpl+wY3rFDq0yJYi6XzcNdt/TQ2tfLwO9r/ f1q7n6cn =YSlu -----END PGP SIGNATURE-----