-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 23 Jan 2024 21:57:06 +0100 Source: glibc Architecture: source Version: 2.36-9+deb12u4 Distribution: bookworm-security Urgency: medium Maintainer: GNU Libc Maintainers <debian-glibc@lists.debian.org> Changed-By: Aurelien Jarno <aurel32@debian.org> Changes: glibc (2.36-9+deb12u4) bookworm-security; urgency=medium . * debian/patches/any/local-CVE-2023-6246.patch: Fix a heap buffer overflow in __vsyslog_internal (CVE-2023-6246). * debian/patches/any/local-CVE-2023-6779.patch: Fix an off-by-one heap buffer overflow in __vsyslog_internal (CVE-2023-6779). * debian/patches/any/local-CVE-2023-6780.patch: Fix an integer overflow in __vsyslog_internal (CVE-2023-6780). * debian/patches/any/local-qsort-memory-corruption.patch: Fix a memory corruption in qsort() when using nontransitive comparison functions. Checksums-Sha1: fd0a00980ed101793543d0add5a65e28c0c3de70 9761 glibc_2.36-9+deb12u4.dsc 5176893fae2fe55f6f4e2acb9fbc301176805f0b 862120 glibc_2.36-9+deb12u4.debian.tar.xz 473acf011a52c9352aaf2a8a1702e2ceedf189df 9681 glibc_2.36-9+deb12u4_source.buildinfo Checksums-Sha256: 9bb617509a73c40b9885fc543e6b7a2b064b0c1e93043fba763a55c0a05a2f38 9761 glibc_2.36-9+deb12u4.dsc b650ed666dd8388b576c8b298abe26cfd0a0c548314e4d29674bd19b48e7b4b4 862120 glibc_2.36-9+deb12u4.debian.tar.xz 2c70daf1754654a09d1fc4efcbb676b2c1f4c26c89279ee9a49df611a43d21e8 9681 glibc_2.36-9+deb12u4_source.buildinfo Files: 609653fb3acbc08809636e95f192eaa5 9761 libs required glibc_2.36-9+deb12u4.dsc bef06cf1608c3514da2ccc16c3cf385d 862120 libs required glibc_2.36-9+deb12u4.debian.tar.xz f01cdf8092592a638be41acf7cb09197 9681 libs required glibc_2.36-9+deb12u4_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEUryGlb40+QrX1Ay4E4jA+JnoM2sFAmWwKJYACgkQE4jA+Jno M2toSA//VZztWgemjpO14toyyozuPdJBjmE33kyZKLJu8/xAW7uRb0HJhhlwC1Dc meln9rHE1Et5vA2Vb+7Mx8+4PslXTbl/LQrU9X6Oe7aH85FMBtmGQeTc9XKJvAL6 VjpUj6a+oKRKJPSbSQXhz2qyGP8dT7GBlma2qBfFZ0pehMNhQoOzpunKjz/hHIqB CtDt05yNDiXwnIq9rM13yFi/z/i3p6yUzcInV685TjtEIzm1z6HVXBPNkF2lddEU oG8CVAO8Smiw95IMbxyHB1sVveEdcz1mwPhohjGuPzRtnzKd1v/BiiDunmeoKH88 1CNc6hPXOEWcjPU/6k1BmPEqNd0USZkSSNVGV4yo7g9ohJDoGcyke1fcm3wsxh6O oRsuSiETT4xyE5pyJhDGMPzmRktiHYiFhivCj9MQGAppCx0A8+oeqPUNoeu5/N9t nVxld7RpQrYolHDyITuVkHWKO9LwpdjQi7zRdDG8r39jXgQBFVlZO18XHjFxN9oq xsmNiiclxRT0gferZuUhr/DDLQDGDry9T8l7YlqIdJL8LjzNF884owZq723EiglU JGzqjYHL+rTNbfeFruw7J3Me0v/DVLGPCbmVa24YdhVTGHkBQ6+tz7vAD6OATt2b oX9hwquBm8b9c4iqvBuMQenE/8/kDot9IDjFQp22wqPmHc7pVGM= =eXi9 -----END PGP SIGNATURE-----