-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 28 Jun 2021 16:24:37 +0200 Source: klibc Binary: libklibc-dev libklibc klibc-utils Architecture: source Version: 2.0.4-9+deb9u1 Distribution: stretch-security Urgency: high Maintainer: maximilian attems <maks@debian.org> Changed-By: Ben Hutchings <benh@debian.org> Description: klibc-utils - small utilities built with klibc for early boot libklibc - minimal libc subset for use with initramfs libklibc-dev - kernel headers used during the build of klibc Closes: 989505 Changes: klibc (2.0.4-9+deb9u1) stretch-security; urgency=high . * Never clean files in quilt status directory * debian/rules: Use $(MAKE) for recursive make * debian/rules: Change override_dh_auto_test rule to actually run tests * Apply security fixes from 2.0.9 (Closes: #989505): - malloc: Set errno on failure - malloc: Fail if requested size > PTRDIFF_MAX (CVE-2021-31873) - calloc: Fail if multiplication overflows (CVE-2021-31870) - cpio: Fix possible integer overflow on 32-bit systems (CVE-2021-31872) - cpio: Fix possible crash on 64-bit systems (CVE-2021-31871) Checksums-Sha1: e5b35f36cf0a1549ecaac62133db0b8d3a610e2e 2066 klibc_2.0.4-9+deb9u1.dsc 250be6a2f365601fcbe86004673e6b6508984fe6 623576 klibc_2.0.4.orig.tar.gz 179d7b3c65f2bab4d34dfca313d5fa19227c5360 31636 klibc_2.0.4-9+deb9u1.debian.tar.xz b22f83550e549daf02472f62a5b088280830951f 5657 klibc_2.0.4-9+deb9u1_source.buildinfo Checksums-Sha256: 885339596012e5bc06b5bc1e1a3154c12b2473a9cf5e18a86161f78dc31b279d 2066 klibc_2.0.4-9+deb9u1.dsc 8c083b259ba3cf52f9ef0c82bfee84ea5ac1c8b60e4b25366970051e1e8771fa 623576 klibc_2.0.4.orig.tar.gz 10ce60738c066a584eaa8964bd84783cc08242a0ded7a629884cada0d6e53720 31636 klibc_2.0.4-9+deb9u1.debian.tar.xz 4ab233c9b36d26f62af8438be97894b4879ba058eaf908525a6f55148eff5d99 5657 klibc_2.0.4-9+deb9u1_source.buildinfo Files: 8ea1ca51d0d2541e60c7d990257a0d1f 2066 libs optional klibc_2.0.4-9+deb9u1.dsc fbe1af284a2a22c39e9daa5dd65f9133 623576 libs optional klibc_2.0.4.orig.tar.gz 03e6e1eee0c9177d32935a816e839a04 31636 libs optional klibc_2.0.4-9+deb9u1.debian.tar.xz 3f24ac16b96d0c62aff8f2a77388dc78 5657 libs optional klibc_2.0.4-9+deb9u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEErCspvTSmr92z9o8157/I7JWGEQkFAmDZ8WcACgkQ57/I7JWG EQm+6w/+Ig9Oi3/bXUmgjg/F2+b28zrmdM9w16nZxunlR6MALR8iWxgLNky+YaS4 3/UHdWfqr7K8nbQj8ZrYqovSyndV+4K4z5aY30P51G4eZnJYPsMJC9Ag4JqB5FeH b0reOReTmyERtiKYfe+/KqBgeHcnzeZaxsI80LAfAPXhDlRu3wqUxls8OARDNQNQ dU/jJwHe7nL72V7qzXaEJC+0DPM7ShocEvLlxBUI4k2C6Jb5WW+sneJ3cDztXFyj 80WliOS29yBb2zs3xq6x70x0PN6kZOd7b7vp4X2/u+HYgsm3FspwjahZOQcfj1d3 /na4Yey72t7UZr5LfVFFg7RRo6bCxVgM9lGaydkZ9ZbXBDS1dN3Pj/6Z7VixAgxR 9IlEJxst1DdwJeOb2Gq1COyjtmvY9Ze34rDVmH2F/2uvP/ftg8ufvqkK1zl8ODoZ GltoufsYM7dOWviAEBioSZiIuaBqqDW1ZKP67OQPfi0fxKQx4VcEvkntpm8xtnJ9 N8WwQ1nWhT80yGDiahuv1q6/mlyA/ZXPGwhA8Dg2oB+zv5vrRNjAPC/Ub5X1ErqZ Q0hjlZL52kTuUk+KjAChhLXsH3a/h5aRtfoJtQFnwTNRwrzDmFXsOV4yrDgia4lQ XRSX06DmKoqD+0O5aHr56EDMQFAlQZltYGpQsEdhI+q0WJ0vleI= =ZIy0 -----END PGP SIGNATURE-----