-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sat, 24 Dec 2022 15:42:41 CET Source: libksba Architecture: source Version: 1.3.5-2+deb10u2 Distribution: buster-security Urgency: high Maintainer: Debian GnuTLS Maintainers <pkg-gnutls-maint@lists.alioth.debian.org> Changed-By: Markus Koschany <apo@debian.org> Checksums-Sha1: 7ba9db66fba4a2a53b46be7bdc86d64eda542b36 2741 libksba_1.3.5-2+deb10u2.dsc e4144279fbd10e7044b4c21229fb290f367252f6 14948 libksba_1.3.5-2+deb10u2.debian.tar.xz 621416179fc8f02ece4184e16374e83b65f274f3 7216 libksba_1.3.5-2+deb10u2_amd64.buildinfo Checksums-Sha256: 5224c0002e08ea18a6ad8da4bfb064c5e887c0e7ea0fbef2e229f740efb0c021 2741 libksba_1.3.5-2+deb10u2.dsc 914841ff8d892ba2c7ed8ceb09d04edaafd17595ca859fe6ac8d6b5438c3410b 14948 libksba_1.3.5-2+deb10u2.debian.tar.xz 563dbf6c38a06b063bbe0fe1bc6e51f53c3df9ffb43511eb7c9671f29343659f 7216 libksba_1.3.5-2+deb10u2_amd64.buildinfo Changes: libksba (1.3.5-2+deb10u2) buster-security; urgency=high . * Non-maintainer upload by the LTS team. * Fix CVE-2022-47629: An integer overflow flaw was discovered in the CRL signature parser in libksba, an X.509 and CMS support library, which could result in denial of service or the execution of arbitrary code. Files: 7e2ed2543d58e486e96a6f411f7a19bf 2741 libs optional libksba_1.3.5-2+deb10u2.dsc 95193263b04c26b971ce47288fc151ad 14948 libs optional libksba_1.3.5-2+deb10u2.debian.tar.xz 43d1993029b28fe659fd0da814440ac5 7216 libs optional libksba_1.3.5-2+deb10u2_amd64.buildinfo -----BEGIN PGP SIGNATURE----- iQKjBAEBCgCNFiEErPPQiO8y7e9qGoNf2a0UuVE7UeQFAmOnEAhfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldEFD RjNEMDg4RUYzMkVERUY2QTFBODM1RkQ5QUQxNEI5NTEzQjUxRTQPHGFwb0BkZWJp YW4ub3JnAAoJENmtFLlRO1HkOxoQAJ6GYQQU/g8jB2EqQ2z3P33P22pYvCrFQiOW HcmKU5U6+NWq3oYTYL5UaW/EaaAfUyogzT7ls/K0g6xIv7lLzuBFYlVnSbiw0lY/ JH3ogcZSPqPv0gBRHfGA2/i6n3qEBC6gjJK2QscPN0FVKSKgLpiCh2SkKkZAEEf2 V8PnfoX3j4uzLOvutcpzZSgXmnZCpglDb8a9qfwb+W8mzbyQTDkrK/qzrBZVuYGk nh7D+I7L3lgVFCXM5qMUe/jMy1WT6PwoGiRKsNeR8eSD449Es0rNmYb17TZfTlN0 Jts6XkLEhgrv1yzTASuDRbytKqCETgixeqHoDymBkZnbOBsDtMd/xWC2b8rPo92k 9AE3gq+TBs7vtbgJWQCpkvD+gMJT/QXx5BnB4RiCzwNYX17iv0jM9srVqo+Iz4fi IYXaZ8i/denOAnzF154BxkcuDOXikLqhLjUIkwWz7rPsD/uxiR0tgtxORNypn1iK rHEDBDPYCHqKSMJbhVTib98bSrdtUJ8OhRsR5mLLG8AwLaMXFV5e8NsDcMFRV3fX TBh4T/sGZmsUj1vuPCfuWJYq5NzDc9AvK8SQ2AgaY0JZ86nkojnJ8YEGz3F7GZ9P 9IR8Wj2zg2Bfr+iKbo4k3/WZXLns0eTpH0jPqUYuVVm0boof5M/dKq5QT3aX+hxs AYSoj29R =Bt06 -----END PGP SIGNATURE-----