-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 28 Mar 2021 10:35:25 +0200 Source: ldb Architecture: source Version: 2:1.5.1+really1.4.6-3+deb10u1 Distribution: buster-security Urgency: high Maintainer: Debian Samba Maintainers <pkg-samba-maint@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 985935 985936 Changes: ldb (2:1.5.1+really1.4.6-3+deb10u1) buster-security; urgency=high . * Non-maintainer upload by the Security Team. * lib ldb: Check if ldb_lock_backend_callback called twice (CVE-2020-10730) * ldb_dn: avoid head corruption in ldb_dn_explode (CVE-2020-27840) (Closes: #985936) * ldb/attrib_handlers casefold: stay in bounds (CVE-2021-20277) (Closes: #985935) Checksums-Sha1: d4be8ebbe6058a671962ea9d7541db0f37c00fe0 2735 ldb_1.5.1+really1.4.6-3+deb10u1.dsc 7563ec51c1621c8b72a579c5550ef2cce8edd8ab 1431798 ldb_1.5.1+really1.4.6.orig.tar.gz 33374bb929ad70faa0bf8a060de29c29ba4c4263 21232 ldb_1.5.1+really1.4.6-3+deb10u1.debian.tar.xz Checksums-Sha256: b4571fafe2adce13583526ab34cfae7f5188e2ab5a39db53d5d72e75663703f9 2735 ldb_1.5.1+really1.4.6-3+deb10u1.dsc a7d008244d95ae8afbff9a843cd3282e92f71d3748e0fd93e3d1b81bd5985983 1431798 ldb_1.5.1+really1.4.6.orig.tar.gz 23ebc07f65f0f8371f5962adb13477616fc16e454a1e9242a545b5e5127e3e16 21232 ldb_1.5.1+really1.4.6-3+deb10u1.debian.tar.xz Files: 4b2cb3a48bb5fbc15fc93690e7216203 2735 devel optional ldb_1.5.1+really1.4.6-3+deb10u1.dsc 3951773a4fed1b3ae27af24972c2ac50 1431798 devel optional ldb_1.5.1+really1.4.6.orig.tar.gz e1fb8be8ebd5268da447e7a65845d28c 21232 devel optional ldb_1.5.1+really1.4.6-3+deb10u1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmBgUrBfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89ELR8P/0TU5wWptYuOheMEVnJ94eNx+d8Klydu d4ijTcifA4fJL0ExGb69dRPpduiAPuJ/Y1RamKqLlxq5iG+7DYHoUD145mUrFD4o zdUSDpo9/fv1hn2GyOCI/Fm5il5JkDUG7s95PVGRTtABqKbXhItFTll9d9Az5Mu+ jbSpjQ70tsgO2CNPSB+pkpRbmtftn8KFT94k/9v0l1eF64QymfWKkS921D2bwpOV BpdfrWNuEBCnNrusvLC4MkT2dhpd6VQreU83fSjXZul6TgcgZTyqnFJGKU6d0SDn z2fBIO+lwCpSrWe47+cwnnkEJAUoOjDZSX0C0ZCRmdLj76E8mJTwxNMwsIjVTaWv HS+EWt1x/boCDASW10tdJuQQ8ebRJ+wX/Aguh8xl3mIdOD2HtuNS1JdUTSnh6M+2 W9c/VVYXcvtTDaqUteUq4T/5t/ZGQk6ElMKPN71Ug1U9o5lAiQHVWA7EZNcbEQyN R9KMjby6AqUK4BGiJc23HY+Oh5DltV5ja2NtgvUFhfR54JJDs6zyjaUkrqFj5570 Pk9Vum4JaJF9MqnQowojsKm4Igxb81oAp2K8m+NANA3g/hKQs7pCdIu+vWDE226d uU4l9F966c/9L5pnR8nBV+cASZV64OoFWlZTizXZtS0qHsJPz09wAohMzCz67Tov 4QdO5ilIpRqc =Uy9E -----END PGP SIGNATURE-----