-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 14 Oct 2021 22:36:24 +0200 Source: strongswan Architecture: source Version: 5.9.1-1+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: strongSwan Maintainers <pkg-swan-devel@lists.alioth.debian.org> Changed-By: Yves-Alexis Perez <corsac@debian.org> Changes: strongswan (5.9.1-1+deb11u1) bullseye-security; urgency=medium . * Reject RSASSA-PSS params with negative salt length - fix remote denial of service (CVE-2021-41990) * Prevent crash due to integer overflow / sign change - fix remote denial of service (CVE-2021-41991) * d/gpp.conf: track bullseye branches Checksums-Sha1: 0aef35db03429c35e3772ade47976de95ce7cdcd 3269 strongswan_5.9.1-1+deb11u1.dsc dc6486571982ae5ce2ff26d3fc94443be1962f2e 4590867 strongswan_5.9.1.orig.tar.bz2 677e84ecbc0592d1d9d73b2755fdbb3792fe16eb 648 strongswan_5.9.1.orig.tar.bz2.asc 98403775bf47f71ba76a1706e48a89294ff1bc0c 118076 strongswan_5.9.1-1+deb11u1.debian.tar.xz 9c12787966d834fc0dc0908614782a0c4bfd89ef 17868 strongswan_5.9.1-1+deb11u1_amd64.buildinfo Checksums-Sha256: 115ab4f20447caf91bdd952420d714a5dcf7c0f74869c4d3adfe001e32d5d8a1 3269 strongswan_5.9.1-1+deb11u1.dsc a337c9fb63d973b8440827755c784031648bf423b7114a04918b0b00fd42cafb 4590867 strongswan_5.9.1.orig.tar.bz2 1ace47734b67260ece386d9f8b2ac8833e9653149af08e87e23df6b7476cf409 648 strongswan_5.9.1.orig.tar.bz2.asc 2c9138d88d826bcdb6286d3397af042130c00208aed1d1b38fa5ed7262ec05d6 118076 strongswan_5.9.1-1+deb11u1.debian.tar.xz 058e5c9d853de59cf633464846ed51d7310fdf836a171ccdda1c71669034e00e 17868 strongswan_5.9.1-1+deb11u1_amd64.buildinfo Files: 1f46ac722a894e425f0fa0ae6ef47f19 3269 net optional strongswan_5.9.1-1+deb11u1.dsc 1f4db969d072e120dc12d1c116a0f658 4590867 net optional strongswan_5.9.1.orig.tar.bz2 78c643de42d150448942834502fcbe6b 648 net optional strongswan_5.9.1.orig.tar.bz2.asc 18dccced1d12befc93994bfb9ee06330 118076 net optional strongswan_5.9.1-1+deb11u1.debian.tar.xz 35372e10cda00dbcb7bfc75924307def 17868 net optional strongswan_5.9.1-1+deb11u1_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEE8vi34Qgfo83x35gF3rYcyPpXRFsFAmFpnB8ACgkQ3rYcyPpX RFvW/Qf/bzsa6mo2rp4BeRJ4Cb9LGN9jT6purS40ZjbPb/u/ECi+uV7kSTw1MQj4 H7eP5ve+3XY3/1U3TBR2ZaK9MW2oq9glm2i+HeT3zHwdx5VfCRer04ALFOg9T55n P6A8RRPYGBoe/JgokCFOZusmRWHJpaD9nqkKr+fihvXCqF+Tw0NDxu51RQyzWIPX LcRjqnwjNBJcEThHE02+fIL1nWA3g5JqZOj8xJCV+dVUPTJXCzJinRbD8yfJme9o NOSmwFP480pebUvlUP74ElkQ11I6Gyl4ORk4IcAO8Ny3rTYMJMjG8OCTa/bwL9SA I4B18ajfRKokAq6kxQ16Fc/fCh1avA== =3TAx -----END PGP SIGNATURE-----